
One-liners Security & Risk Analysis
wordpress.org/plugins/one-linersCustom post type for short oneliners, including a widget and shortcode.
Is One-liners Safe to Use in 2026?
Generally Safe
Score 85/100One-liners has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'one-liners' plugin version 3.1.0 exhibits a generally good security posture based on the static analysis and vulnerability history provided. The absence of dangerous functions, SQL injection vulnerabilities, file operations, and external HTTP requests is a strong indicator of secure coding practices. Furthermore, the plugin has no recorded CVEs, suggesting a history of stable and secure releases, which is a significant strength.
However, there are a few areas that warrant attention. The most notable concern is the low percentage of properly escaped output. With 14 total outputs and only 2% properly escaped, this indicates a significant risk of Cross-Site Scripting (XSS) vulnerabilities. Attackers could potentially inject malicious scripts through user-supplied input that is not adequately sanitized before being displayed on the frontend. Additionally, the lack of nonce checks and capability checks, while not directly flagged as issues in the limited attack surface, could become a weakness if the plugin's functionality expands or if new entry points are introduced in future versions.
In conclusion, while the 'one-liners' plugin has a clean vulnerability history and avoids many common pitfalls, the poor output escaping is a critical weakness that needs to be addressed immediately. The plugin's strengths lie in its clean code regarding database interactions and external communications. The primary weakness lies in its handling of output, which could lead to severe XSS flaws.
Key Concerns
- Low percentage of properly escaped output
- Missing nonce checks
- Missing capability checks
One-liners Security Vulnerabilities
One-liners Code Analysis
Output Escaping
One-liners Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
One-liners Maintenance & Trust
Maintenance Signals
Community Trust
One-liners Alternatives
R12Themes Quotes
r12themes-quotes
It displays random qoutes on your sidebar or on your page depending where you want to be shown.
Apollo13 Framework Extensions
apollo13-framework-extensions
Adds custom post types, shortcodes and some features that are used in themes built on Apollo13 Framework.
Weaver Xtreme Theme Support
weaverx-theme-support
A useful shortcode and widget collection for Weaver Xtreme
Popularis Extra
popularis-extra
Popularis Extra add extra features to Popularis theme like demo import, widgets, shortcodes or Elementor widgets.
Series
series
Plugin that allows you to collect posts in a series.
One-liners Developer Profile
2 plugins · 30 total installs
How We Detect One-liners
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/one-liners/widget.phpHTML / DOM Fingerprints
onelinername='thebrent_oneliners_options[slug]'<span class="oneliner">