
Random Content Security & Risk Analysis
wordpress.org/plugins/random-contentDisplay random content anywhere on your WordPress site. Rotate testimonials, banners, CTAs, and more with a simple shortcode or widget.
Is Random Content Safe to Use in 2026?
Generally Safe
Score 100/100Random Content has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "random-content" plugin v1.6.4 exhibits a mixed security posture. While it demonstrates good practices in several areas, such as the absence of dangerous functions, file operations, and external HTTP requests, and a decent output escaping rate of 74%, there are significant concerns regarding its attack surface and SQL query handling. The presence of one unprotected REST API route presents a direct entry point for potential exploitation without proper authorization checks. Furthermore, 100% of its SQL queries are not using prepared statements, which is a critical vulnerability that could lead to SQL injection attacks if any data from user input is incorporated into these queries. The plugin's vulnerability history is clean, with no recorded CVEs, suggesting it may have been developed with security in mind or has not yet been a target. However, the static analysis findings highlight potential weaknesses that could be exploited regardless of past vulnerability records.
Key Concerns
- REST API route without permission callback
- 100% of SQL queries use no prepared statements
Random Content Security Vulnerabilities
Random Content Code Analysis
SQL Query Safety
Output Escaping
Random Content Attack Surface
AJAX Handlers 1
REST API Routes 1
Shortcodes 2
WordPress Hooks 16
Maintenance & Trust
Random Content Maintenance & Trust
Maintenance Signals
Community Trust
Random Content Alternatives
Content Randomizer – Rotate Any Block
blocks-randomizer
Rotate and display random content blocks on every page load. Perfect for testimonials, CTAs, and dynamic content. Works with any block type.
Cycle Block
ghostlabs-cycle-block-lite
Cycle Block is a lightweight and powerful Gutenberg block plugin that lets you display different content on each page load.
Reviews Feed – Add Testimonials and Customer Reviews From Google Reviews, Yelp, TripAdvisor, and More
reviews-feed
No API key required. Display Yelp and Google reviews for any business in a clean, customizable feed on your site.
Rich Showcase for Google Reviews
widget-google-reviews
Display up to 10 Google reviews in less than a minute. Continue collecting new reviews. No limits on connected places, widgets, shortcodes and blocks.
Strong Testimonials
strong-testimonials
An easy-to-use testimonial plugin to collect and show customer feedback in WordPress
Random Content Developer Profile
4 plugins · 3K total installs
How We Detect Random Content
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/random-content/js/random-content.js/wp-content/plugins/random-content/js/random-content.jsrandom-content/js/random-content.js?ver=HTML / DOM Fingerprints
rcData/wp-json/random-content/v1/posts