Tempus Fugit Security & Risk Analysis

wordpress.org/plugins/tempus-fugit

A Collection of Enhancements to Improve Time Handling on Your Site

10 active installs v1.2.0 PHP 7.0+ WP 4.9.9+ Updated May 12, 2024
archivedateonthisdaytime
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Tempus Fugit Safe to Use in 2026?

Generally Safe

Score 92/100

Tempus Fugit has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

Based on the static analysis and vulnerability history, the "tempus-fugit" v1.2.0 plugin exhibits a strong security posture. The code analysis reveals no identified attack surface, dangerous functions, raw SQL queries, file operations, external HTTP requests, or critical taint flows. The high percentage of properly escaped output (91%) is also a positive indicator of secure coding practices. The absence of any known CVEs, past or present, further strengthens this assessment, suggesting the developers have a history of producing secure code or have not introduced significant vulnerabilities. However, the complete lack of nonce and capability checks on all entry points, while currently not posing a direct risk due to the absence of any identified entry points, represents a potential future concern if the plugin's functionality expands or if new entry points are introduced without proper authorization mechanisms. This leaves the plugin vulnerable to authorization bypasses in such scenarios. In conclusion, "tempus-fugit" v1.2.0 is currently assessed as highly secure, with its primary weakness being the lack of fundamental authorization checks on potential entry points, which is mitigated by the current lack of exposed entry points.

Key Concerns

  • No nonce checks on any entry points
  • No capability checks on any entry points
Vulnerabilities
None known

Tempus Fugit Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Tempus Fugit Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
43 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

91% escaped47 total outputs
Attack Surface

Tempus Fugit Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 38
actionplugins_loadedincludes\class-tempus-day-of-year.php:9
filterpre_get_postsincludes\class-tempus-day-of-year.php:10
filteravailable_permalink_structure_tagsincludes\class-tempus-day-of-year.php:11
filterpost_linkincludes\class-tempus-day-of-year.php:12
filterpost_type_linkincludes\class-tempus-day-of-year.php:13
filterget_the_archive_titleincludes\class-tempus-day-of-year.php:14
filterdocument_title_partsincludes\class-tempus-day-of-year.php:15
filterquery_varsincludes\class-tempus-day-of-year.php:16
filteroption_date_formatincludes\class-tempus-formats.php:9
actionadmin_initincludes\class-tempus-formats.php:10
actionplugins_loadedincludes\class-tempus-on-this-day.php:9
filterpre_get_postsincludes\class-tempus-on-this-day.php:10
filterget_the_archive_titleincludes\class-tempus-on-this-day.php:11
filterdocument_title_partsincludes\class-tempus-on-this-day.php:12
filterquery_varsincludes\class-tempus-on-this-day.php:13
actionplugins_loadedincludes\class-tempus-order-by.php:9
filterpre_get_postsincludes\class-tempus-order-by.php:10
filterquery_varsincludes\class-tempus-order-by.php:11
filterget_the_archive_titleincludes\class-tempus-order-by.php:12
filterdocument_title_partsincludes\class-tempus-order-by.php:13
actionplugins_loadedincludes\class-tempus-this-week.php:9
filterpre_get_postsincludes\class-tempus-this-week.php:10
filterget_the_archive_titleincludes\class-tempus-this-week.php:11
filterdocument_title_partsincludes\class-tempus-this-week.php:12
filterquery_varsincludes\class-tempus-this-week.php:13
actionplugins_loadedincludes\class-tempus-week-of-year.php:9
filteravailable_permalink_structure_tagsincludes\class-tempus-week-of-year.php:10
filterpre_get_postsincludes\class-tempus-week-of-year.php:11
filterpost_linkincludes\class-tempus-week-of-year.php:12
filterpost_type_linkincludes\class-tempus-week-of-year.php:13
filterget_the_archive_titleincludes\class-tempus-week-of-year.php:14
filterdocument_title_partsincludes\class-tempus-week-of-year.php:15
filterquery_varsincludes\class-tempus-week-of-year.php:16
actionupgrader_process_completetempus-fugit.php:14
actionplugins_loadedtempus-fugit.php:16
actioninittempus-fugit.php:17
filterpre_get_poststempus-fugit.php:22
actionwidgets_inittempus-fugit.php:29
Maintenance & Trust

Tempus Fugit Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedMay 12, 2024
PHP min version7.0
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Tempus Fugit Developer Profile

David Shanske

5 plugins · 720 total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
3177 days
View full developer profile
Detection Fingerprints

How We Detect Tempus Fugit

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/tempus-fugit/includes/class-tempus-day-of-year.php/wp-content/plugins/tempus-fugit/includes/class-tempus-on-this-day.php/wp-content/plugins/tempus-fugit/includes/class-tempus-order-by.php/wp-content/plugins/tempus-fugit/includes/class-tempus-this-week.php/wp-content/plugins/tempus-fugit/includes/class-tempus-onthisday-widget.php/wp-content/plugins/tempus-fugit/includes/class-tempus-thisweek-widget.php/wp-content/plugins/tempus-fugit/includes/date-navigation.php/wp-content/plugins/tempus-fugit/includes/functions.php+1 more

HTML / DOM Fingerprints

Data Attributes
data-prefixdata-icon
FAQ

Frequently Asked Questions about Tempus Fugit