
Widget para añadir la IP Pública de nuestros visitantes Security & Risk Analysis
wordpress.org/plugins/mostrar-ip-publica-widget-textoEste Plugin nos muestra en cualquier lugar que se pueda añadir un Widget de texto la IP de nuestros visitantes.
Is Widget para añadir la IP Pública de nuestros visitantes Safe to Use in 2026?
Generally Safe
Score 85/100Widget para añadir la IP Pública de nuestros visitantes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "mostrar-ip-publica-widget-texto" v1.0 plugin exhibits a mixed security posture. On one hand, it demonstrates strong practices in handling SQL queries, exclusively using prepared statements, and has no recorded vulnerability history, suggesting a generally stable codebase. It also lacks any reported CVEs, which is a positive sign. However, the static analysis reveals significant concerns. The presence of the `create_function` is a critical security risk due to its ability to execute arbitrary code. Furthermore, a substantial portion of output (83%) is not properly escaped, creating a high risk of Cross-Site Scripting (XSS) vulnerabilities, especially considering the absence of nonce checks or capability checks on any entry points, although the attack surface is currently reported as zero. The lack of taint analysis data could also mask potential vulnerabilities if the plugin were to evolve and introduce more dynamic inputs. The complete absence of nonces and capability checks on any potential entry points, coupled with the unescaped output, presents a significant risk, even with a reported zero attack surface.
Overall, while the plugin benefits from a clean vulnerability history and secure SQL practices, the identified code signals, particularly `create_function` and the high rate of unescaped output, introduce severe risks. The lack of defensive checks like nonces and capability checks further exacerbates these risks, leaving it vulnerable to code execution and XSS attacks if new entry points are introduced or if existing, undetected entry points exist. The current security posture is concerning due to these fundamental flaws.
Key Concerns
- Dangerous function create_function used
- High percentage of unescaped output (83%)
- Missing nonce checks
- Missing capability checks
Widget para añadir la IP Pública de nuestros visitantes Security Vulnerabilities
Widget para añadir la IP Pública de nuestros visitantes Release Timeline
Widget para añadir la IP Pública de nuestros visitantes Code Analysis
Dangerous Functions Found
Output Escaping
Widget para añadir la IP Pública de nuestros visitantes Attack Surface
WordPress Hooks 1
Maintenance & Trust
Widget para añadir la IP Pública de nuestros visitantes Maintenance & Trust
Maintenance Signals
Community Trust
Widget para añadir la IP Pública de nuestros visitantes Alternatives
Widget para añadir los iconos de validación de W3C Validator
anadir-iconos-validacion-w3c-validator
Este Plugin nos muestra en cualquier lugar que se pueda añadir un Widget de texto los distintivos de validación de W3C Validator.
Classic Editor +
classic-editor-addon
The "Classic Editor +" plugin disables the block editor, removes enqueued scripts/styles and brings back classic Widgets.
Rich Contact Widget
rich-contact-widget
A simple contact widget enhanced with microdatas & microformats tags for your local SEO
WP Subscribe
wp-subscribe
WP Subscribe is a simple but powerful subscription plugin which supports MailChimp, Aweber and Feedburner.
ProfileGrid – User Profiles, Groups and Communities
profilegrid-user-profiles-groups-and-communities
Custom user profiles plugin ❤ with paid memberships, groups, communities, content restriction, user registration, messaging, WooCommerce memberships, …
Widget para añadir la IP Pública de nuestros visitantes Developer Profile
2 plugins · 20 total installs
How We Detect Widget para añadir la IP Pública de nuestros visitantes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
vdd_IP_publica_Widgetid="vdd_IP_publica_Widget"id="vdd_IP_publica_Widget-title"name="vdd_IP_publica_Widget-title"id="vdd_IP_publica_Widget-showlink"name="vdd_IP_publica_Widget-showlink"Mas servicios en MavkSoft