Livejournal Crossposter Remix Rus translate Security & Risk Analysis

wordpress.org/plugins/livejournal-crossposter-remix-rus

Пильгуй Анатолий

10 active installs v3.4 PHP + WP 2.8+ Updated Aug 19, 2011
livejournalljpostrsstext
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Livejournal Crossposter Remix Rus translate Safe to Use in 2026?

Generally Safe

Score 85/100

Livejournal Crossposter Remix Rus translate has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 14yr ago
Risk Assessment

The 'livejournal-crossposter-remix-rus' plugin v3.4 exhibits a mixed security posture. While it boasts a seemingly small attack surface with no reported CVEs, the static analysis reveals several concerning code signals. The presence of dangerous functions like `set_time_limit` and `create_function` is a significant red flag, as these can be exploited under certain circumstances. More importantly, the taint analysis indicates one flow with an unsanitized path, suggesting a potential vulnerability if this path is exposed to user input. Furthermore, a concerning 0% of outputs are properly escaped, which is a common vector for cross-site scripting (XSS) vulnerabilities, especially when combined with unsanitized data. The absence of nonce checks and the limited capability checks are also weaknesses that could be leveraged by attackers. The plugin's vulnerability history being completely clean is a positive indicator, suggesting a history of stable and secure development, but it doesn't negate the risks identified in the current static analysis. Overall, the lack of known vulnerabilities is good, but the presence of dangerous functions, unsanitized paths, and unescaped output represents significant potential risks that need to be addressed.

Key Concerns

  • Unsanitized path in taint flow
  • Unescaped output found
  • Dangerous function 'set_time_limit' used
  • Dangerous function 'create_function' used
  • No nonce checks
  • Limited capability checks
Vulnerabilities
None known

Livejournal Crossposter Remix Rus translate Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Livejournal Crossposter Remix Rus translate Release Timeline

v3.2
v3.1
v3.0
v2.9
v2.8
v2.7
Code Analysis
Analyzed Apr 16, 2026

Livejournal Crossposter Remix Rus translate Code Analysis

Dangerous Functions
3
Raw SQL Queries
0
7 prepared
Unescaped Output
8
0 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
1

Dangerous Functions Found

set_time_limit@set_time_limit(0);livejournal-crossposter-remix.php:334
set_time_limit@set_time_limit(0);livejournal-crossposter-remix.php:344
create_function$modify = create_function('$f, $n, $obj', 'global $$f; $p = &$$f; unset($p[$n]); $p[$obj->term_id] =livejournal-crossposter-remix.php:1060

Bundled Libraries

TinyMCE

SQL Query Safety

100% prepared7 total queries

Output Escaping

0% escaped8 total outputs
Data Flows · Security
1 unsanitized

Data Flow Analysis

2 flows1 with unsanitized paths
ljxp_display_options (livejournal-crossposter-remix.php:116)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Livejournal Crossposter Remix Rus translate Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionadmin_menulivejournal-crossposter-remix.php:1816
actionpublish_postlivejournal-crossposter-remix.php:1820
actionpublish_future_postlivejournal-crossposter-remix.php:1822
actionedit_postlivejournal-crossposter-remix.php:1824
actiondelete_postlivejournal-crossposter-remix.php:1826
actiondbx_post_sidebarlivejournal-crossposter-remix.php:1828
actionpublish_postlivejournal-crossposter-remix.php:1830
actionsave_postlivejournal-crossposter-remix.php:1832
actionedit_postlivejournal-crossposter-remix.php:1834
filterthe_contentlivejournal-crossposter-remix.php:1839
actionadmin_headlivejournal-crossposter-remix.php:1851
actioninitlivejournal-crossposter-remix.php:1874
filtermce_external_pluginslivejournal-crossposter-remix.php:1881
filtermce_buttonslivejournal-crossposter-remix.php:1882
filtermce_pluginslivejournal-crossposter-remix.php:1884
actiontinymce_before_initlivejournal-crossposter-remix.php:1885
Maintenance & Trust

Livejournal Crossposter Remix Rus translate Maintenance & Trust

Maintenance Signals

WordPress version tested3.2.1
Last updatedAug 19, 2011
PHP min version
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Livejournal Crossposter Remix Rus translate Developer Profile

barstyle

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Livejournal Crossposter Remix Rus translate

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/livejournal-crossposter-remix-rus/ljxp_admin.css/wp-content/plugins/livejournal-crossposter-remix-rus/ljxp_admin.js

HTML / DOM Fingerprints

HTML Comments
<!-- Original plugin Arsenuy Ivanov, Evan Broder. --><!-- Translate by Pilguy A. http://вблокноте.рф/ 2011 --><!-- This is kinda harsh, I guess --><!-- Warning. This is rather UNSAFE code. The only reason for it to remain unchanged so far is that it is inside a protected area. -- FreeAtNet+3 more
Data Attributes
name="host"id="host"name="username"id="username"name="ljxp_custom_name_on"id="ljxp_custom_name_on"+19 more
FAQ

Frequently Asked Questions about Livejournal Crossposter Remix Rus translate