Russian Currency Chart Security & Risk Analysis

wordpress.org/plugins/russian-currency-chart

Плагин добавляет виджет с недельным графиком курса евро и американского доллара по Центробанку.

0 active installs v0.6 PHP 5.6+ WP 3.3+ Updated Aug 1, 2018
currencyeurexchangerubleusd
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Russian Currency Chart Safe to Use in 2026?

Generally Safe

Score 85/100

Russian Currency Chart has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "russian-currency-chart" plugin v0.6 exhibits a generally strong security posture from a static analysis perspective, with no critical code signals like dangerous functions or raw SQL queries. The absence of known CVEs and a clean vulnerability history are positive indicators. However, there are significant areas of concern, particularly regarding output escaping, as only 20% of outputs are properly escaped. This represents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. Additionally, the complete lack of nonce and capability checks across all entry points is a critical oversight, leaving the plugin susceptible to CSRF attacks and unauthorized actions. While the attack surface appears small and primarily managed by cron events, the absence of any authentication or authorization checks on potential interaction points is a major weakness.

Key Concerns

  • Insufficient output escaping
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Russian Currency Chart Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Russian Currency Chart Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
20
5 escaped
Nonce Checks
0
Capability Checks
0
File Operations
3
External Requests
3
Bundled Libraries
0

Output Escaping

20% escaped25 total outputs
Attack Surface

Russian Currency Chart Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionwp_enqueue_scriptsrucurrency.php:18
actionwidgets_initrucurrency.php:136
actionrucurrency_chart_cron_hookrucurrency.php:196
actionplugins_loadedrucurrency.php:214

Scheduled Events 1

rucurrency_chart_cron_hook
Maintenance & Trust

Russian Currency Chart Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedAug 1, 2018
PHP min version5.6
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Russian Currency Chart Developer Profile

artbelov

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Russian Currency Chart

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/russian-currency-chart/style.css/wp-content/plugins/russian-currency-chart/js/draw_charts.js
Script Paths
/wp-content/plugins/russian-currency-chart/vendor/Chart.min.js/wp-content/plugins/russian-currency-chart/js/draw_charts.js
Version Parameters
russian-currency-chart/style.css?ver=russian-currency-chart/js/draw_charts.js?ver=

HTML / DOM Fingerprints

CSS Classes
ru-currency-chart_wrapru-currency-chart_bodyru-currency-chart_dailyru-currency-chart_valueru-currency-chart-draw_iconru-currency-chart_daily_area
Data Attributes
data-currency="usd"data-currency="eur"
JS Globals
curr_data
Shortcode Output
<div class="ru-currency-chart_wrap"><div class="ru-currency-chart_body"><canvas id="ru-currency-chart-id"
FAQ

Frequently Asked Questions about Russian Currency Chart