
Indeed Apply Shortcode Security & Risk Analysis
wordpress.org/plugins/indeed-apply-shortcodeEasily accept job applications from any device, including mobile.
Is Indeed Apply Shortcode Safe to Use in 2026?
Generally Safe
Score 85/100Indeed Apply Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "indeed-apply-shortcode" v1.6 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any known CVEs, critical taint flows, raw SQL queries, or dangerous function usage is a significant positive. Furthermore, the presence of capability checks on its entry points, the shortcodes, suggests an intent to enforce access control. The complete lack of file operations and external HTTP requests also reduces the attack surface in those common areas.
However, there are notable areas for improvement. A significant concern is the low percentage (43%) of properly escaped outputs. This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, especially since the taint analysis did not cover any flows, which might miss subtle XSS vectors. The absence of nonce checks, even on shortcodes, leaves the plugin susceptible to Cross-Site Request Forgery (CSRF) attacks if any actions performed by the shortcodes can be manipulated by an attacker.
Overall, while the plugin is free of known critical vulnerabilities and demonstrates good practices in areas like SQL handling, the unescaped output and lack of nonce checks represent real, albeit potentially lower-severity, risks. The history of zero vulnerabilities is encouraging but should not be a reason to neglect diligent security practices, especially in areas with identified weaknesses.
Key Concerns
- Low percentage of properly escaped outputs
- Missing nonce checks
Indeed Apply Shortcode Security Vulnerabilities
Indeed Apply Shortcode Release Timeline
Indeed Apply Shortcode Code Analysis
Output Escaping
Indeed Apply Shortcode Attack Surface
Shortcodes 2
WordPress Hooks 6
Maintenance & Trust
Indeed Apply Shortcode Maintenance & Trust
Maintenance Signals
Community Trust
Indeed Apply Shortcode Alternatives
Indeed Jobs Shortcode
indeed-jobs-shortcode
This plugin allows users to add shortcode for indeed job API.
Jobs Ajax Feed Widget
jobs-ajax-feed-widget
Display job listings in an Ajax-powered RSS feed widget.
Service Tracker
service-tracker
A simple plugin and mobile application designed for business or organisations to add service requests, link the work to a customer, assign a worker or …
Simple Indeed Jobroll Widget
simple-indeed-jobroll-widget
Simple Indeed Jobroll Widget
Zij Indeed Jobs
zij-indeed-jobs
Zij indeed jobs. Let you show the indeed jobs into your wordpress installation easily.
Indeed Apply Shortcode Developer Profile
1 plugin · 100 total installs
How We Detect Indeed Apply Shortcode
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/indeed-apply-shortcode/indeed-apply-shortcode.php/wp-content/plugins/indeed-apply-shortcode/includes/padCrypt.php/wp-content/plugins/indeed-apply-shortcode/includes/AES_Encryption.phpindeed-apply-shortcode/style.css?ver=indeed-apply-shortcode/js/script.js?ver=HTML / DOM Fingerprints
indeed-apply-widgetdata-indeed-apply-apiTokendata-indeed-apply-jobUrldata-indeed-apply-allow-apply-on-indeeddata-indeed-apply-jobMetadata-indeed-apply-jobTitledata-indeed-apply-email+5 more<span class="indeed-apply-widget" data-indeed-apply-apiToken=" data-indeed-apply-jobUrl=" data-indeed-apply-allow-apply-on-indeed="0" data-indeed-apply-jobMeta="WordPress"