
Report an error Security & Risk Analysis
wordpress.org/plugins/report-an-errorWith this plugin visitors will be able to report typos or mistakes seen on your websites.
Is Report an error Safe to Use in 2026?
Generally Safe
Score 85/100Report an error has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "report-an-error" plugin v1.0.1 presents a mixed security profile. On the positive side, the plugin boasts a very small attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, all identified SQL queries utilize prepared statements, and there are no recorded vulnerabilities in its history, suggesting a potentially stable and well-maintained codebase. However, significant concerns arise from the static analysis. The presence of the `create_function` construct is a notable risk, as it can lead to remote code execution if not handled with extreme care and strict input validation, which is not evident from the analysis. Additionally, the relatively low percentage of properly escaped output (37%) indicates a high risk of cross-site scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the website. The complete absence of nonce checks and capability checks on any entry points, although the attack surface is currently zero, means that if any new entry points are added without proper security, they would be immediately vulnerable. While the plugin has no known CVEs, the internal code quality issues, particularly `create_function` and insufficient output escaping, are significant internal weaknesses that could be exploited.
Key Concerns
- Use of create_function
- Low percentage of proper output escaping
- Missing nonce checks
- Missing capability checks
Report an error Security Vulnerabilities
Report an error Code Analysis
Dangerous Functions Found
Output Escaping
Report an error Attack Surface
WordPress Hooks 7
Maintenance & Trust
Report an error Maintenance & Trust
Maintenance Signals
Community Trust
Report an error Alternatives
Error Log Monitor
error-log-monitor
Adds a Dashboard widget that displays the latest messages from your PHP error log. It can also send logged errors to email.
JS Error Logger
js-error-logger
Logs front-end javascript errors, and displays them in a dashboard widget
Simple Log Viewer
simple-log-viewer
A simple plugin to log errors in real time in a metabox in the admin panel, too integrated with WP-CLI
Fatal Error Notify
fatal-error-notify
Receive email notifications when errors occur on your WordPress site.
Debug
debug
Debug can help you to find errors in your wordpress website via editing wp-config.php file and email notification.
Report an error Developer Profile
3 plugins · 80 total installs
How We Detect Report an error
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/report-an-error/inc/class.main.php/wp-content/plugins/report-an-error/inc/class.widget.php/wp-content/plugins/report-an-error/report-an-error.phpHTML / DOM Fingerprints
RERRid="RERR"id="rerr_selected"id="rerr_message"RERRRERR_seRERR_gsRERR_smRERR_sepost_error/wp-json/report-an-error/send