Remove Script & Stylesheet Versions Security & Risk Analysis

wordpress.org/plugins/remove-script-stylesheet-versions

Removes the ?ver= parameter from enqueued scripts and stylesheets URLs.

100 active installs v1.0 PHP + WP 3.0+ Updated Feb 25, 2011
scriptstylesheetsversion
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Remove Script & Stylesheet Versions Safe to Use in 2026?

Generally Safe

Score 85/100

Remove Script & Stylesheet Versions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 15yr ago
Risk Assessment

The 'remove-script-stylesheet-versions' plugin, at version 1.0, exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or vulnerability history is a significant positive. Furthermore, the plugin has no apparent attack surface, meaning there are no discoverable entry points like AJAX handlers, REST API routes, shortcodes, or cron events that could be exploited. This lack of exposure, combined with the clean code signals, suggests the plugin is well-written and adheres to secure coding principles.

However, the complete absence of nonce checks and capability checks across all potential (though currently non-existent) entry points is notable. While the current lack of an attack surface mitigates the immediate risk, it implies that if functionality were to be added in the future, these crucial security mechanisms might be overlooked. The plugin's history is also completely clean, with no recorded vulnerabilities, which is an excellent indicator of its current safety. Overall, the plugin appears to be very secure in its current state, with the only potential area for future concern being the established pattern of not implementing authorization checks.

Vulnerabilities
None known

Remove Script & Stylesheet Versions Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Remove Script & Stylesheet Versions Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Remove Script & Stylesheet Versions Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionwp_print_scriptsremove-script-style-versions.php:25
actionwp_print_footer_scriptsremove-script-style-versions.php:26
actionadmin_print_stylesremove-script-style-versions.php:28
actionwp_print_stylesremove-script-style-versions.php:29
Maintenance & Trust

Remove Script & Stylesheet Versions Maintenance & Trust

Maintenance Signals

WordPress version tested3.1.4
Last updatedFeb 25, 2011
PHP min version
Downloads4K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

Remove Script & Stylesheet Versions Developer Profile

Adam Harley (Kawauso)

8 plugins · 600 total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Remove Script & Stylesheet Versions

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Remove Script & Stylesheet Versions