
ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Security & Risk Analysis
wordpress.org/plugins/shayanweb-admin-fontchangerThe easiest way to change the WordPress admin font for Farsi websites is by using this lightweight plugin!
Is ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Safe to Use in 2026?
Generally Safe
Score 99/100ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب has a strong security track record. Known vulnerabilities have been patched promptly.
The shayanweb-admin-fontchanger plugin version 1.10 demonstrates a mixed security posture. On the positive side, it shows good practices in avoiding dangerous functions, utilizing prepared statements for all SQL queries, and performing file operations or external HTTP requests. The presence of nonce and capability checks on its entry points (the single AJAX handler) is also encouraging, suggesting an effort to protect against unauthorized access. However, a significant concern arises from the low percentage of properly escaped output (13%). This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected into the user interface, especially if user-supplied data is not handled carefully before display.
The vulnerability history reveals a past medium-severity vulnerability, specifically Cross-Site Request Forgery (CSRF). While this vulnerability is marked as patched, the existence of such a past issue, even if not critical, warrants attention. It suggests that the plugin's development may have had security gaps in the past, and continued vigilance is necessary. The absence of critical or high severity vulnerabilities in the history, and the clean taint analysis results, are positive indicators that recent development may have addressed some of these concerns. Overall, the plugin has strengths in its controlled entry points and SQL handling, but the lack of robust output escaping is a notable weakness that requires remediation.
Key Concerns
- Low percentage of properly escaped output
- Past medium severity vulnerability (CSRF)
ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
ShayanWeb Admin FontChanger <= 1.9.1 - Cross-Site Request Forgery
ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Release Timeline
ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Code Analysis
Output Escaping
ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Attack Surface
AJAX Handlers 1
WordPress Hooks 10
Maintenance & Trust
ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Maintenance & Trust
Maintenance Signals
Community Trust
ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Alternatives
Persian Admnin Fonts
persian-admin-fonts
تغییر فونت های ادمین سایت شما با یک کلیک! به همراه 10 فونت معروف و استاندارد برای وب و قابلیت آپلود فونت های شخصی شما!
All In One Login — WP Admin Login Page Security and Customization with Google reCAPTCHA, Social Login, Limit Login Attempt, 2FA, and more.
change-wp-admin-login
Do you want to secure and customize the WordPress login page? Download the All in One Login plugin for login page security and customization.
Reveal IDs
reveal-ids-for-wp-admin-25
What this plugin does is to reveal most removed IDs on admin pages, as it was in versions prior to 2.5.
Catch IDs
catch-ids
What this plugin does is to shows the IDs on admin section.
Change WordPress Login Logo
change-login-logo
Upload your logo for WordPress login page instead of the usual WordPress logo with simple settings.
ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب Developer Profile
1 plugin · 2K total installs
How We Detect ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/shayanweb-admin-fontchanger/css/shabnam.css/wp-content/plugins/shayanweb-admin-fontchanger/css/vazir.css/wp-content/plugins/shayanweb-admin-fontchanger/css/sahel.css/wp-content/plugins/shayanweb-admin-fontchanger/css/shayanweb-elementorfont.css/wp-content/plugins/shayanweb-admin-fontchanger/css/shwebfontchanger.css/wp-content/plugins/shayanweb-admin-fontchanger/css/front-font.css/wp-content/plugins/shayanweb-admin-fontchanger/css/front-wpadminbar.cssshayanweb-admin-fontchanger/css/shabnam.css?ver=shayanweb-admin-fontchanger/css/vazir.css?ver=shayanweb-admin-fontchanger/css/sahel.css?ver=shayanweb-admin-fontchanger/css/shayanweb-elementorfont.css?ver=shayanweb-admin-fontchanger/css/shwebfontchanger.css?ver=shayanweb-admin-fontchanger/css/front-font.css?ver=shayanweb-admin-fontchanger/css/front-wpadminbar.css?ver=HTML / DOM Fingerprints
elementor-panel-heading-titleelementor-panelace_editordashiconsdashicons-before:before#wpadminbar .ab-icon#wpadminbar>#wp-toolbar>#wp-admin-bar-root-default .ab-icon<!-- Plugin By: ShayanWeb.com - Shayan Farhang Pazhooh -->