
Khattat – Arabic Fonts Security & Risk Analysis
wordpress.org/plugins/khattat-arabic-fontsChoose a beautiful Arabic font for your site from over 110 stunning fonts to enhance user experience.
Is Khattat – Arabic Fonts Safe to Use in 2026?
Generally Safe
Score 100/100Khattat – Arabic Fonts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "khattat-arabic-fonts" plugin v2.6.0 exhibits a generally strong security posture based on the static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points significantly reduces the potential attack surface. Furthermore, the code signals indicate a positive approach to security, with no dangerous functions, no raw SQL queries (all using prepared statements), no file operations, and no external HTTP requests. The lack of known vulnerabilities in its history is also a favorable indicator.
However, a significant concern arises from the output escaping. With 38% properly escaped outputs out of 8 total, there's a notable portion that remains unescaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is directly reflected in the output without proper sanitization. The absence of nonce checks and capability checks, while not immediately indicative of a vulnerability without identified entry points, represents a missed opportunity for hardening and could become a risk if future versions introduce new entry points without these essential security measures. The bundled Select2 library, while common, should be monitored for known vulnerabilities in its specific version.
Key Concerns
- Unescaped output detected
- Missing nonce checks
- Missing capability checks
- Bundled library (Select2) might be outdated
Khattat – Arabic Fonts Security Vulnerabilities
Khattat – Arabic Fonts Code Analysis
Bundled Libraries
Output Escaping
Khattat – Arabic Fonts Attack Surface
WordPress Hooks 6
Maintenance & Trust
Khattat – Arabic Fonts Maintenance & Trust
Maintenance Signals
Community Trust
Khattat – Arabic Fonts Alternatives
Arabic Fonts
fonts-arabic
A simple fonts pack for styling rtl sites
RH Devnia Webfonts
rh-devnia-webfonts
this plugin is change your body font with devnia web fonts service if yout site was in arabic language.
Custom Fonts – Host Your Fonts Locally
custom-fonts
Custom Fonts is a powerful WordPress plugin that allows you to upload your own custom fonts or choose from a vast collection of Google Fonts, all host …
OMGF | GDPR/DSGVO Compliant, Faster Google Fonts. Easy.
host-webfonts-local
OMGF automagically caches the Google Fonts used by your theme/plugins locally. No configuration (or brains) required!
Fonts Plugin | Use Google Fonts, Adobe Fonts or Upload Fonts
olympus-google-fonts
The easiest to customize fonts in WordPress. Optimized for Speed. 1000+ font choices. Supports Google Fonts, Adobe Fonts and Upload Fonts.
Khattat – Arabic Fonts Developer Profile
4 plugins · 1K total installs
How We Detect Khattat – Arabic Fonts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/khattat-arabic-fonts/css/khattat-arabic-fonts.css/wp-content/plugins/khattat-arabic-fonts/admin/css/customizer.css/wp-content/plugins/khattat-arabic-fonts/js/khattat-arabic-fonts.js/wp-content/plugins/khattat-arabic-fonts/js/khattat-arabic-fonts.jskhattat-arabic-fonts/css/khattat-arabic-fonts.css?ver=khattat-arabic-fonts/admin/css/customizer.css?ver=khattat-arabic-fonts/js/khattat-arabic-fonts.js?ver=HTML / DOM Fingerprints
khattat-arabic-fonts-section