
PR Checker Security & Risk Analysis
wordpress.org/plugins/pr-checkerPR Checker makes link list building easier than ever.
Is PR Checker Safe to Use in 2026?
Generally Safe
Score 85/100PR Checker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'pr-checker' plugin v1.1 exhibits a mixed security posture. On the positive side, the plugin has no known CVEs and a clean vulnerability history, suggesting it has been maintained with security in mind or has not been a significant target. Furthermore, the attack surface appears to be non-existent according to the static analysis, with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed. This significantly limits the immediate avenues for exploitation.
However, significant concerns arise from the code signals. A striking 100% of detected output operations are not properly escaped, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. While SQL queries predominantly use prepared statements (90%), the remaining 10% could still be a vector if they handle user input. The taint analysis revealing two flows with unsanitized paths, even without a critical or high severity rating, is a direct indicator of potential vulnerabilities where user-supplied data could influence program execution, especially in conjunction with the file operations. The complete absence of nonce and capability checks is also a critical oversight, as it means any entry point, even if not immediately obvious, could be abused without proper authorization or verification.
In conclusion, while the plugin has a positive track record regarding known vulnerabilities and a seemingly small attack surface, the critical flaws in output escaping, potential unsanitized data flows, and the complete lack of authorization checks present substantial security risks. These findings necessitate immediate attention and remediation to secure the plugin against potential exploitation, particularly XSS and unauthorized actions.
Key Concerns
- 0% output escaping
- 2 unsanitized taint flows
- 0 Nonce checks
- 0 Capability checks
- 10% SQL without prepared statements
PR Checker Security Vulnerabilities
PR Checker Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
PR Checker Attack Surface
WordPress Hooks 3
Maintenance & Trust
PR Checker Maintenance & Trust
Maintenance Signals
Community Trust
PR Checker Alternatives
Page Rank Stats for Alexa Google
page-rank-stats-for-alexa-google
Show Alexa Page Rank and/or Google PageRank of your website or any other webpage.
Dashboard Google Page Rank
dashboard-google-pagerank
This plugin shows your websites google page rank
Google PageRank Display
google-pagerank-display
Check your site free google pagerank value with more than 130 pagerank buttons and badges
PageRank Checker
pagerank-checker
Check pagerank of your blog pages automatically,show your real pagerank.
Web Rank Get
web-rank-get
This plugin will collect Google Page Rank and Alexa Rank and display it in the footer of your blog.
PR Checker Developer Profile
4 plugins · 50 total installs
How We Detect PR Checker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pr-checker/images/google.jpg/wp-content/plugins/pr-checker/images/alexa.jpg/wp-content/plugins/pr-checker/images/technorati.jpg/wp-content/plugins/pr-checker/images/feedburner.jpgHTML / DOM Fingerprints
prchecker_dataonetworel<div class="prchecker_data">