
Latest Canadian Healthcare Jobs sidebar widget Security & Risk Analysis
wordpress.org/plugins/latest-canadian-healthcare-jobs-sidebar-widgetDisplays a live map of Canada showing the latest jobs posted on the Hospital.ca medical job listing service
Is Latest Canadian Healthcare Jobs sidebar widget Safe to Use in 2026?
Generally Safe
Score 85/100Latest Canadian Healthcare Jobs sidebar widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "latest-canadian-healthcare-jobs-sidebar-widget" plugin, in version 1.00, exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by not containing any recorded CVEs, indicating a history of relative security or diligent patching by developers. Furthermore, all SQL queries are properly prepared, and there are no file operations or external HTTP requests, which are common vectors for vulnerabilities.
However, significant concerns arise from the static analysis. The presence of the `create_function` dangerous function is a critical red flag, as it can be exploited to execute arbitrary PHP code under certain circumstances. Compounding this, a staggering 100% of output is unescaped, meaning any data processed or displayed by the widget is vulnerable to Cross-Site Scripting (XSS) attacks. The lack of nonce checks and capability checks, coupled with zero known vulnerabilities historically, could suggest either an absence of exploitable flaws so far or a lack of rigorous testing. The zero attack surface reported is also peculiar given the presence of dangerous functions and unescaped output.
In conclusion, while the plugin has a clean vulnerability history and implements secure SQL practices, the identified `create_function` usage and extensive unescaped output present a substantial risk of arbitrary code execution and XSS vulnerabilities. These are critical issues that require immediate attention.
Key Concerns
- Dangerous function detected (create_function)
- 100% of outputs are not properly escaped
- No nonce checks implemented
- No capability checks implemented
Latest Canadian Healthcare Jobs sidebar widget Security Vulnerabilities
Latest Canadian Healthcare Jobs sidebar widget Code Analysis
Dangerous Functions Found
Output Escaping
Latest Canadian Healthcare Jobs sidebar widget Attack Surface
WordPress Hooks 1
Maintenance & Trust
Latest Canadian Healthcare Jobs sidebar widget Maintenance & Trust
Maintenance Signals
Community Trust
Latest Canadian Healthcare Jobs sidebar widget Alternatives
Job Listings – Job Alerts
job-listings-job-alert
Fast, Powerful, Flexible solution for real estate agents using WordPress. Built-in responsive design and works for any theme.
Job Listings – Resume
job-listings-resume
Fast, Powerful, Flexible solution for real estate agents using WordPress. Built-in responsive design and works for any theme.
Ediug Jobs Finder
ediug-jobs-finder
This plugin provides you facility to search jobs from all over the World.
Job Listings – Bookmark
job-listings-bookmark
Fast, Powerful, Flexible solution for real estate agents using WordPress. Built-in responsive design and works for any theme.
Job Listings – Package
job-listings-package
Fast, Powerful, Flexible solution for real estate agents using WordPress. Built-in responsive design and works for any theme.
Latest Canadian Healthcare Jobs sidebar widget Developer Profile
1 plugin · 10 total installs
How We Detect Latest Canadian Healthcare Jobs sidebar widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
latest-canadian-healthcare-jobs-sidebar-widget/style.css?ver=HTML / DOM Fingerprints
HospitalCA_latestjobs_widgetname="HospitalCA-LatestJobMap"<iframe src="http://www.hospital.ca/data/map_latestjobs<a href="http://www.hospital.ca" title="Canadian healthcare and medical job listings"