
PowerPress GetID3 1.9.3 add-on Security & Risk Analysis
wordpress.org/plugins/powerpress-getid3Replaces the GetID3 library used in PowerPress with an older version 1.9.3.
Is PowerPress GetID3 1.9.3 add-on Safe to Use in 2026?
Generally Safe
Score 85/100PowerPress GetID3 1.9.3 add-on has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The powerpress-getid3 plugin, version 1.0.1, exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points indicates a minimal attack surface. Furthermore, the code signals reveal excellent security practices, including 100% of SQL queries using prepared statements and a very high percentage of properly escaped output. The lack of dangerous functions and external HTTP requests also contributes positively to its security profile.
The vulnerability history is also clean, with no recorded CVEs or common vulnerability types. This suggests a well-maintained and secure codebase over time, or at least a lack of publicly disclosed vulnerabilities. The taint analysis showing zero flows with unsanitized paths reinforces the impression of a secure implementation.
Overall, this plugin appears to be very secure. The primary potential area for concern, though not directly identified as a flaw in this analysis, is the lack of any explicit capability or nonce checks on the entry points. While there are no entry points identified in this analysis, if any were to be introduced in future versions without proper checks, it could create vulnerabilities. However, based solely on the provided data, the plugin demonstrates a commendable commitment to security best practices.
Key Concerns
- No capability checks detected
- No nonce checks detected
PowerPress GetID3 1.9.3 add-on Security Vulnerabilities
PowerPress GetID3 1.9.3 add-on Code Analysis
Output Escaping
PowerPress GetID3 1.9.3 add-on Attack Surface
Maintenance & Trust
PowerPress GetID3 1.9.3 add-on Maintenance & Trust
Maintenance Signals
Community Trust
PowerPress GetID3 1.9.3 add-on Alternatives
EZ powerPress/podPress Addon Widget
podpress-addons
This plugin is an Addon for powerPress or podPress that gives you a Widget to lists your podCasts and links to the popout player.
Remove Query Arg from Media URLs ?_=1
remove-query-arg-from-media
Remove the query string ?_=1 added by WordPress adds to media URLs in HTML5 audio and video mediaelement.js players.
WP Kill In Feed
wp-kill-in-feed
Super-simple shortcodes to control what's in your RSS feed.
PowerPress GetID3 1.9.3 add-on Developer Profile
7 plugins · 10K total installs
How We Detect PowerPress GetID3 1.9.3 add-on
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/powerpress-getid3/getid3-1.9.3/getid3.php/wp-content/plugins/powerpress-getid3/getid3-1.9.3/module.audio.mp3.php/wp-content/plugins/powerpress-getid3/getid3-1.9.3/module.audio-video.quicktime.phppowerpress-getid3/getid3-1.9.3/getid3.php?ver=powerpress-getid3/getid3-1.9.3/module.audio.mp3.php?ver=powerpress-getid3/getid3-1.9.3/module.audio-video.quicktime.php?ver=HTML / DOM Fingerprints
GETID3_INCLUDEPATH