
Run External Crons Security & Risk Analysis
wordpress.org/plugins/run-external-cronsUse WordPress internal cron system to hit external URLs on a scheduled basis.
Is Run External Crons Safe to Use in 2026?
Generally Safe
Score 85/100Run External Crons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'run-external-crons' v1.0 plugin exhibits a generally good security posture, adhering to several best practices. The absence of known CVEs and the plugin's relatively small attack surface are positive indicators. It also correctly uses prepared statements for all SQL queries and includes nonce checks and capability checks where appropriate, demonstrating a conscious effort to implement security measures.
However, there are a few areas for improvement. The static analysis indicates that only 67% of output is properly escaped, suggesting a potential for cross-site scripting (XSS) vulnerabilities if improperly handled data is displayed to users. Additionally, the plugin makes one external HTTP request, which, while not inherently dangerous, introduces an external dependency that could be a vector for attacks if the external resource is compromised or malicious. The limited taint analysis results are also noteworthy, as they don't necessarily mean there are no vulnerabilities, just that the analysis itself might not have detected any specific flows or the plugin's structure didn't lend itself to this type of analysis.
In conclusion, 'run-external-crons' v1.0 is a relatively secure plugin with a minimal known vulnerability history. The primary concern lies with the unescaped output, which warrants attention to ensure all dynamic content is properly sanitized. The external HTTP request, while a minor point, should be monitored and validated for its security implications.
Key Concerns
- Unescaped output detected
- External HTTP request made
Run External Crons Security Vulnerabilities
Run External Crons Code Analysis
Output Escaping
Run External Crons Attack Surface
WordPress Hooks 6
Scheduled Events 2
Maintenance & Trust
Run External Crons Maintenance & Trust
Maintenance Signals
Community Trust
Run External Crons Alternatives
FastCron – Run WP Cron for free
fastcron
This plugin will set up a free cronjob at FastCron to run your wp-cron.php file automatically. Completely free, no registration required.
Cleanup Action Scheduler
cleanup-action-scheduler
Delete Action Scheduler Events to avoid having large database tables.
Cronjob Scheduler
cronjob-scheduler
Cronjob Scheduler allows you to automate regular tasks and actions within your WordPress installation!
WP-Cron Control
wp-cron-control
This plugin allows you to take control over the execution of cron jobs.
WP Cron Cleaner
wp-cron-cleaner
View all your cron scheduled tasks, then clean what you want.
Run External Crons Developer Profile
20 plugins · 48K total installs
How We Detect Run External Crons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
postbox-containermetabox-holderui-sortablemeta-box-sortablespostboxinside<!-- Todo:
- add help
--><!-- Don't show anything if user doesn't have capatibilities --><!-- If new settings were submitted, save them --><!-- Enqueue scripts -->+30 morestyle="width: 70%"