
Leartes TRY Exchange Rates Security & Risk Analysis
wordpress.org/plugins/leartes-try-exchange-ratesGets TRY Exchange Rates from TCMB (Turkish Central Bank). Use as widget or Shortcode
Is Leartes TRY Exchange Rates Safe to Use in 2026?
Use With Caution
Score 64/100Leartes TRY Exchange Rates has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "leartes-try-exchange-rates" v2.1 plugin exhibits a mixed security posture. While the static analysis shows a small attack surface and good practices in SQL query handling, significant concerns arise from the low rate of output escaping (9%) and the complete absence of nonce and capability checks. This suggests a high potential for Cross-Site Scripting (XSS) vulnerabilities, where user-supplied data might be rendered without proper sanitization, allowing attackers to inject malicious scripts. The vulnerability history further amplifies these concerns, with a known medium-severity XSS vulnerability that is currently unpatched. This indicates a pattern of security weaknesses that are not being adequately addressed, posing a tangible risk to websites using this plugin. Despite the positive aspects like the lack of critical taint flows and dangerous functions, the prevalent output escaping issue combined with the unpatched vulnerability strongly advises caution. Users should consider this plugin to have a moderate to high risk due to the ease with which XSS attacks could be executed and the lack of remediation for past flaws.
Key Concerns
- Unpatched medium CVE
- Low output escaping rate (9%)
- No nonce checks
- No capability checks
Leartes TRY Exchange Rates Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Leartes TRY Exchange Rates <= 2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting
Leartes TRY Exchange Rates Code Analysis
Output Escaping
Leartes TRY Exchange Rates Attack Surface
Shortcodes 1
WordPress Hooks 11
Maintenance & Trust
Leartes TRY Exchange Rates Maintenance & Trust
Maintenance Signals
Community Trust
Leartes TRY Exchange Rates Alternatives
Cotação Moedas
cotacao-moedas-hoje
Cotação do Dólar, Euro e Iene em relação ao Real (R$). Todos os dados são buscados do Banco Central do Brasil diariamente pelo Web Service.
Ninja Araçlar
ninja-araclar
Ninja Araçlar eklentisi, genel anlamda temalarına Süperlig, Burçlar, Döviz ve Hava Durumu eklemek isteyenler için geliştirilmiştir.
AboveWP Bulgarian Eurozone
abovewp-bulgarian-eurozone
Display WooCommerce prices in both Bulgarian Lev (BGN) and Euro (EUR) bidirectionally as Bulgaria prepares to join the Eurozone.
Cartograf Cookie filter
cartograf-cookie-filter
Prevents the installation of tracking cookies without the informed consent of the visitor. This plugin was specifically designed to be Spanish Cookie …
Indicadores Económicos Chile
indicadores-economicos-chile
Muestra mediante un shortcode los Indicadores económicos actualizados en Chile.
Leartes TRY Exchange Rates Developer Profile
1 plugin · 600 total installs
How We Detect Leartes TRY Exchange Rates
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/leartes-try-exchange-rates/assets/css/leartes-try-exchange-rates.css/wp-content/plugins/leartes-try-exchange-rates/assets/js/leartes-try-exchange-rates.js/wp-content/plugins/leartes-try-exchange-rates/assets/js/leartes-try-exchange-rates.js/wp-content/plugins/leartes-try-exchange-rates/assets/css/leartes-try-exchange-rates.css?ver=/wp-content/plugins/leartes-try-exchange-rates/assets/js/leartes-try-exchange-rates.js?ver=HTML / DOM Fingerprints
currency-wraps-widgetcurrency-wraps-shortcodelbi-currenciesc-header-topc-ratecrbanknoteforex+15 moredata-currencydata-unitdata-captiondata-flagdata-flag_pathdata-fb+8 morewindow.lbi_exch_currencies<div class="currency-wraps-<h3><span><div class="lbi-currencies"><div class="c-header-top">