
Nike+ iPod Stats Security & Risk Analysis
wordpress.org/plugins/nike-ipodAllows you to display Nike+ iPod running data on your wordpress blog.
Is Nike+ iPod Stats Safe to Use in 2026?
Generally Safe
Score 85/100Nike+ iPod Stats has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "nike-ipod" v1.4.4 plugin exhibits a concerning security posture, despite the absence of known CVEs. The static analysis reveals significant weaknesses, particularly in output escaping, where 100% of outputs are not properly escaped. This creates a high risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into pages rendered by this plugin. Additionally, the plugin performs several file operations and makes external HTTP requests, which, without proper sanitization and validation, could be exploited for directory traversal or arbitrary file reads/writes, and for making unintended external connections. The lack of nonce checks and capability checks on any identified entry points (though none were found) is also a critical oversight, as it implies that any potential future entry points would be unprotected by standard WordPress security measures.
Key Concerns
- All outputs are unescaped
- No nonce checks
- No capability checks
- Unsanitized paths in taint analysis
- File operations present
- External HTTP requests present
Nike+ iPod Stats Security Vulnerabilities
Nike+ iPod Stats Release Timeline
Nike+ iPod Stats Code Analysis
Output Escaping
Data Flow Analysis
Nike+ iPod Stats Attack Surface
WordPress Hooks 2
Maintenance & Trust
Nike+ iPod Stats Maintenance & Trust
Maintenance Signals
Community Trust
Nike+ iPod Stats Alternatives
Marquee Running Text
marquee-running-text
Display eye-catching running text in your site's header effortlessly with the Marquee Running Text plugin.
iWPhone
iwphone
The iWPhone Plugin & Theme automatically reformats your blog's content for optimized viewing on the iPhone/iPod touch (Android too.)
Run Log
run-log
Add running diary capabilities - log your sport activities, track and display: distance, duration, gear (e.g. shoes), elevation gain, calories, etc.
Epingle Un Dossard
agenda-running
Ce plugin gère votre calendrier de course, les résultats et vos RP.
AppStore Links
appstore
Plugin for easy linking to (Mac) AppStore Apps. You can use the PGH-ID for automatically creating Affiliate-Links
Nike+ iPod Stats Developer Profile
3 plugins · 30 total installs
How We Detect Nike+ iPod Stats
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nike-ipod/style.cssnike-ipod/style.css?ver=HTML / DOM Fingerprints
nikePlusDisplay<!-- Using cached data /--><!-- Using retrieved data /--><!-- Nike+ stats generated by NikePlus wordpress plugin by Mark Rickert. http://www.ear-fung.us/apps/nikeplus/ /-->