
WP Easy BreakingNews Security & Risk Analysis
wordpress.org/plugins/my-wp-easy-breakingnewsThis plugin will enable WP Easy BreakingNews in your wordpress site. You can use regular wordpress shortcode, just you have to add "easy" before the shortcode. Easy, right?
Is WP Easy BreakingNews Safe to Use in 2026?
Generally Safe
Score 85/100WP Easy BreakingNews has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "my-wp-easy-breakingnews" v1.1 plugin exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices regarding SQL queries, exclusively using prepared statements, and shows no recorded history of known vulnerabilities (CVEs) or dangerous function usage. It also has no external HTTP requests or file operations, which reduces certain attack vectors. However, a significant concern arises from the lack of any output escaping. With 43 total outputs and 0% properly escaped, this presents a high risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the absence of nonce checks and capability checks across all entry points, including shortcodes, leaves these functionalities susceptible to unauthorized actions or data manipulation if they can be triggered by malicious input. The lack of taint analysis data for flows is also noteworthy, though the absence of specific flows doesn't guarantee safety. The limited attack surface of 4 shortcodes is a positive, but their lack of protection amplifies the risk associated with the unescaped output.
Key Concerns
- 0% output escaping
- 0 nonce checks
- 0 capability checks
WP Easy BreakingNews Security Vulnerabilities
WP Easy BreakingNews Code Analysis
Output Escaping
WP Easy BreakingNews Attack Surface
Shortcodes 4
WordPress Hooks 6
Maintenance & Trust
WP Easy BreakingNews Maintenance & Trust
Maintenance Signals
Community Trust
WP Easy BreakingNews Alternatives
No alternatives data available yet.
WP Easy BreakingNews Developer Profile
10 plugins · 190 total installs
How We Detect WP Easy BreakingNews
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/my-wp-easy-breakingnews/css/style.css/wp-content/plugins/my-wp-easy-breakingnews/css/BreakingNews.css/wp-content/plugins/my-wp-easy-breakingnews/js/demo.js/wp-content/plugins/my-wp-easy-breakingnews/js/BreakingNews.js/wp-content/plugins/my-wp-easy-breakingnews/js/florida-custom.js/wp-content/plugins/my-wp-easy-breakingnews/js/admin_tab.js/wp-content/plugins/my-wp-easy-breakingnews/inc/color-pickr.js/wp-content/plugins/my-wp-easy-breakingnews/js/BreakingNews.js/wp-content/plugins/my-wp-easy-breakingnews/js/florida-custom.js/wp-content/plugins/my-wp-easy-breakingnews/js/admin_tab.js/wp-content/plugins/my-wp-easy-breakingnews/js/demo.jsHTML / DOM Fingerprints
BreakingNewsStylebn-titlebreakingnews_testbn-arrowsbn-arrows-leftbn-arrows-right<div class="BreakingNewsStyle easing<ul><marquee scrollamount="5"><div class="bn-title"></div><li class="breakingnews_test"><a href="