
PHP Server Info Security & Risk Analysis
wordpress.org/plugins/php-server-infoA very simple plugin for displaying full PHP Info from within the WordPress Admin menu.
Is PHP Server Info Safe to Use in 2026?
Generally Safe
Score 85/100PHP Server Info has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "php-server-info" v1.0 plugin exhibits a strong security posture with respect to its attack surface and vulnerability history. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly limits potential entry points. Furthermore, the plugin has no known CVEs, which indicates a history of stability and proactive security. The static analysis also shows a positive sign with 100% of SQL queries using prepared statements, and the presence of capability checks suggests some level of access control is considered. However, a critical concern arises from the "Output escaping" metric, which shows 0% properly escaped outputs. This means that any data rendered by the plugin, even if not directly user-controllable, could potentially be vulnerable to cross-site scripting (XSS) attacks if the rendered data contains malicious script tags. The lack of taint analysis and absence of dangerous functions are positive indicators, but the unescaped output presents a tangible risk that needs immediate attention.
Key Concerns
- 0% properly escaped outputs
PHP Server Info Security Vulnerabilities
PHP Server Info Release Timeline
PHP Server Info Code Analysis
Output Escaping
PHP Server Info Attack Surface
WordPress Hooks 1
Maintenance & Trust
PHP Server Info Maintenance & Trust
Maintenance Signals
Community Trust
PHP Server Info Alternatives
phpinfo() WP
phpinfo-wp
A simple plugin to look up server info and manage server configuration of wordpress site
Server Info for Debugging
server-info-for-debugging
Displays server stats and WordPress system information for debugging purposes.
Display Server Info
display-server-info
Displays server, PHP, and database info in the dashboard, admin bar, and footer, with shortcode and multilingual support.
Web Server Information
wpheka-web-server-information
Web Server Information plugin will give you detailed information about your hosting server's configuration and installed modules.
WP Tech Lookup
wp-tech-lookup
WP Tech Lookup plugin is to see all the necessary information about server at one place.
PHP Server Info Developer Profile
6 plugins · 390 total installs
How We Detect PHP Server Info
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/php-server-info/php-logo.pngHTML / DOM Fingerprints
php-info-wrapper