One Meta Description Security & Risk Analysis

wordpress.org/plugins/one-meta-description

Show meta description in your homepage single post and page. (Wordpress Simple SEO - Meta Description).

10 active installs v1.3.0 PHP + WP + Updated Jan 10, 2019
descriptionmetasearch-engineseoserp
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is One Meta Description Safe to Use in 2026?

Generally Safe

Score 85/100

One Meta Description has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "one-meta-description" v1.3.0 plugin exhibits a very strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events suggests a minimal attack surface. Crucially, there are no identified dangerous functions, file operations, or external HTTP requests, which significantly reduces the potential for common web vulnerabilities. The fact that all SQL queries, albeit none were found, would use prepared statements, and the high percentage of properly escaped output (60%) are positive indicators of good coding practices in the areas that were analyzed. The plugin also has no known vulnerability history, further reinforcing its current secure state. However, the analysis reveals a complete lack of nonce checks and capability checks. While the current attack surface is zero, any future expansion of functionality, particularly if it involves user interaction or data modification, could introduce significant risks if these security mechanisms are not implemented. The 40% of unescaped output, while not critical given the current lack of attack vectors, represents a potential XSS risk should an entry point be introduced.

Key Concerns

  • 40% of output not properly escaped
  • 0 capability checks
  • 0 nonce checks
Vulnerabilities
None known

One Meta Description Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

One Meta Description Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

60% escaped5 total outputs
Attack Surface

One Meta Description Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionwp_headone-meta-description.php:21
actionadmin_menuone-meta-description.php:49
actionadmin_initone-meta-description.php:57
Maintenance & Trust

One Meta Description Maintenance & Trust

Maintenance Signals

WordPress version tested5.0.25
Last updatedJan 10, 2019
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

One Meta Description Developer Profile

Aby Rafa

4 plugins · 2K total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect One Meta Description

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
wrapmetabox-holderpostbox-containermeta-box-sortablespostboxhndleinsiderss-widget+1 more
Data Attributes
name="one_meta_description"id="character"
FAQ

Frequently Asked Questions about One Meta Description