
Ogp Plus Security & Risk Analysis
wordpress.org/plugins/ogp-plusAdd OGP tags.
Is Ogp Plus Safe to Use in 2026?
Generally Safe
Score 100/100Ogp Plus has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ogp-plus" v1.10 plugin demonstrates a strong security posture based on the provided static analysis. There are no identified dangerous functions, file operations, or external HTTP requests. The absence of any identified vulnerabilities in its history, including critical or high severity ones, is a significant positive indicator. Furthermore, all analyzed outputs are properly escaped, which is crucial for preventing cross-site scripting (XSS) vulnerabilities.
However, the analysis also reveals some areas for concern. The complete lack of AJAX handlers, REST API routes, shortcodes, or cron events, while seemingly reducing the attack surface, also means there are zero entry points analyzed for security. This could indicate that the plugin might not have any user-facing features that require interaction, or it could be that the static analysis tools were unable to identify them. More critically, the presence of a single SQL query that does not use prepared statements is a significant risk. This pattern, while minor in this instance (1 query), can be a gateway to SQL injection vulnerabilities if not properly handled, especially as the plugin evolves.
In conclusion, "ogp-plus" v1.10 benefits from a clean vulnerability history and good output escaping practices. The lack of identified critical or high-risk code signals is reassuring. The primary weakness lies in the single, unparameterized SQL query, which, though isolated, represents a potential point of exploitation. The very limited attack surface analysis, with zero entry points detected, warrants further investigation to ensure all functionalities are adequately secured.
Key Concerns
- SQL queries without prepared statements
Ogp Plus Security Vulnerabilities
Ogp Plus Release Timeline
Ogp Plus Code Analysis
SQL Query Safety
Ogp Plus Attack Surface
Maintenance & Trust
Ogp Plus Maintenance & Trust
Maintenance Signals
Community Trust
Ogp Plus Alternatives
Open Graph Protocol Framework
open-graph-protocol-framework
The Open Graph Protocol enables any web page to become a rich object in a social graph. This plugin renders meta tags within an extension framework.
Meta pixel for WordPress
official-facebook-pixel
Grow your business with Meta for WordPress!
Insert Headers And Footers
wp-headers-and-footers
Include inline javascript, stylesheets, CSS code or anything you want in Header and Footer areas of your WordPress with ease.
Nextend Social Login and Register
nextend-facebook-connect
One click registration & login plugin for Facebook, Google, X (formerly Twitter) and more. Quick setup and easy configuration.
Pixel Manager for WooCommerce – Conversion Tracking, Google Ads, GA4, TikTok, Dynamic Remarketing
woocommerce-google-adwords-conversion-tracking-tag
Conversion tracking for WooCommerce. Google Ads, GA4, Meta/Facebook Pixel, TikTok & more. Recover 30% more conversions with server-side tracking!
Ogp Plus Developer Profile
54 plugins · 56K total installs
How We Detect Ogp Plus
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ogp-plus/css/style.css/wp-content/plugins/ogp-plus/js/script.js/wp-content/plugins/ogp-plus/js/script.jsogp-plus/css/style.css?ver=ogp-plus/js/script.js?ver=