
Pro Text Widget Security & Risk Analysis
wordpress.org/plugins/pro-text-widgetPro Text Widget plugin.You have choice to text widget show only specific Post/category/Page.
Is Pro Text Widget Safe to Use in 2026?
Generally Safe
Score 85/100Pro Text Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'pro-text-widget' v1.1 plugin exhibits a generally good security posture based on the static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant strength. Furthermore, all SQL queries utilize prepared statements, and there are no file operations or external HTTP requests, which are excellent practices for minimizing attack vectors. The plugin also has a clean vulnerability history with no known CVEs, suggesting a history of secure development. However, the static analysis does reveal some concerning areas. The presence of the `create_function` dangerous function is a significant red flag, as this function can be a source of code injection vulnerabilities if not handled with extreme care. Additionally, the low percentage of properly escaped output (11%) indicates a high risk of Cross-Site Scripting (XSS) vulnerabilities, where user-supplied data displayed on the frontend might not be sanitized, allowing malicious scripts to be executed in the user's browser. The lack of nonce checks also presents a potential weakness for any future or hidden entry points that might be introduced.
Key Concerns
- Dangerous function create_function used
- Low percentage of output escaping
- No nonce checks found
Pro Text Widget Security Vulnerabilities
Pro Text Widget Code Analysis
Dangerous Functions Found
Output Escaping
Pro Text Widget Attack Surface
WordPress Hooks 1
Maintenance & Trust
Pro Text Widget Maintenance & Trust
Maintenance Signals
Community Trust
Pro Text Widget Alternatives
Custom Class on Text Widgets
custom-class-text-widget
Custom Class Text Widgets is a multi text widget that allows you to also define a custom class for the widget meaning you have better control over the …
xBooster Advanced Text Widget
xbooster-advanced-text-widget
Easy to use Advanced Text Widget. It is possible to show/hide widget on any pages/posts/categories you want including homepage.
Classic Text Widget
classic-text-widget
The classic pre-WordPress version 4.8 text widget
Gabfire Widget Pack
gabfire-widget-pack
The Gabfire Widget Pack contains over a dozen useful widgets to extend your WordPress site. It is a free plugin that will work with ANY theme.
Call to Action Widget
call-to-action-widget
A simple text widget with Title, Image URL, A text/html area, Link Text and Link URL. This simple widget is often used for a call to action widget.
Pro Text Widget Developer Profile
7 plugins · 3K total installs
How We Detect Pro Text Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
widget_textid="pro_text_widget"name="pro_text_widget"