
Mortgage Rates Security & Risk Analysis
wordpress.org/plugins/mortgage-ratesMortgage rates widget for your blog. Free.
Is Mortgage Rates Safe to Use in 2026?
Generally Safe
Score 92/100Mortgage Rates has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'mortgage-rates' plugin v1.3.11 exhibits a generally strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, cron events, file operations, and external HTTP requests significantly limits the potential attack surface. Furthermore, the complete reliance on prepared statements for all SQL queries is a commendable security practice. However, a notable weakness lies in the low percentage of properly escaped output (9%). This indicates a risk of Cross-Site Scripting (XSS) vulnerabilities, where user-supplied data might be rendered without proper sanitization, allowing malicious scripts to be injected into the website.
The plugin's vulnerability history is clean, with no recorded CVEs. This, combined with the absence of critical taint flows and dangerous functions in the static analysis, suggests a history of secure development. Despite the positive indicators, the unescaped output remains a concern. While the plugin has no apparent critical vulnerabilities from this analysis, the lack of proper output escaping could be exploited in certain scenarios. It is recommended to address the output escaping issue to further harden the plugin's security.
Key Concerns
- Low percentage of properly escaped output
Mortgage Rates Security Vulnerabilities
Mortgage Rates Release Timeline
Mortgage Rates Code Analysis
Output Escaping
Mortgage Rates Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Mortgage Rates Maintenance & Trust
Maintenance Signals
Community Trust
Mortgage Rates Alternatives
Easy Mortgage Rates
easy-mortgage-rates
This plugin will allow you to use [easy_mortgage_rates_table] as a template tag to insert a table of common real estate loan program interest rates in …
Exchange Rates Widget
exchange-rates-widget
❤️ Is a magic and easy-to-use with beautiful UI widget. Included 190+ world currencies with popular cryptocurrencies.
CC Canadian Mortgage Calculator
cc-canadian-mortgage-calculator
Add a free simple customizable Canadian mortgage calculator to your web site.
CC Mortgage Calculator
cc-mortgage-calculator
Add a free simple customizable mortgage calculator to your web site.
theFinancials Market Widgets
thefinancials-market-widgets
Embed free interest rate widgets, market data widgets, financial tickers and charts in WordPress. 50+ free, live-updating widgets from theFinancials.
Mortgage Rates Developer Profile
2 plugins · 7K total installs
How We Detect Mortgage Rates
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mortgage-rates/css/style.css/wp-content/plugins/mortgage-rates/js/rates.js/wp-content/plugins/mortgage-rates/js/rates.jsmortgage-rates/css/style.css?ver=mortgage-rates/js/rates.js?ver=HTML / DOM Fingerprints
mlcalc-rates-widget<!-- Mortgage Rates Widget -->data-state-urlmlcalc_rates[mortgage-rates-widget]