
Roosium Info Security & Risk Analysis
wordpress.org/plugins/roosium-infoDisplay WordPress, PHP, Web Server, MySQL and Theme versions in wp-admin footer.
Is Roosium Info Safe to Use in 2026?
Generally Safe
Score 85/100Roosium Info has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "roosium-info" plugin v1.0.1 demonstrates a strong security posture in its current version based on the static analysis. The absence of any identified dangerous functions, unsanitized taint flows, or raw SQL queries is commendable. All identified SQL queries utilize prepared statements, and all outputs are properly escaped, which significantly mitigates common web vulnerabilities like SQL injection and cross-site scripting. The plugin also has a clean vulnerability history, with no known CVEs, indicating good development practices or a lack of prior security issues.
However, a significant concern arises from the complete lack of authorization checks (capability checks) and nonce checks across all identified potential entry points. While the current version reports zero entry points exposed without authentication, this could be due to the plugin's current limited functionality. Should any new AJAX handlers, REST API routes, shortcodes, or cron events be introduced in future versions without proper authentication and authorization mechanisms, the plugin would become highly vulnerable. The limited attack surface and absence of direct vulnerabilities are positive, but the reliance on the absence of entry points rather than explicit security checks presents a latent risk.
Key Concerns
- Missing nonce checks on potential entry points
- Missing capability checks on potential entry points
Roosium Info Security Vulnerabilities
Roosium Info Release Timeline
Roosium Info Code Analysis
SQL Query Safety
Output Escaping
Roosium Info Attack Surface
WordPress Hooks 2
Maintenance & Trust
Roosium Info Maintenance & Trust
Maintenance Signals
Community Trust
Roosium Info Alternatives
Version Info – Server Health Monitor, PHP & MySQL Version Display, Environment Indicators
version-info
The #1 technical dashboard for WordPress professionals. Display PHP, MySQL, WP & server versions anywhere in admin. Monitor CPU, RAM, DB size & …
PHP Version
php-version
You can able to see the current PHP version in WordPress admin dashboard widget.
Admin Bar Server Info
admin-bar-server-info
Lightweight plugin that displays essential server and environment information in a dropdown menu on the WordPress admin bar.
PHP Version Display
php-version-display
Display the currently PHP-MYSQL version at the end of "At a Glance" admin dashboard widget
YLD Server Information
yld-server-information
It will show all server information in an admin page.
Roosium Info Developer Profile
1 plugin · 10 total installs
How We Detect Roosium Info
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
WordPress %s | PHP %s | %s | MySQL %s | Theme %s %s