
Theme Stats View Security & Risk Analysis
wordpress.org/plugins/theme-stats-viewThe stats of theme is displayed by block or shortcode.
Is Theme Stats View Safe to Use in 2026?
Generally Safe
Score 100/100Theme Stats View has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'theme-stats-view' v2.10 plugin exhibits a generally positive security posture based on the static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with exposed attack surfaces is a significant strength. Furthermore, the lack of dangerous function usage and file operations suggests a cautious approach to development. The high percentage of properly escaped output (81%) is also commendable. However, a critical concern arises from the presence of a single SQL query that is not using prepared statements. While the taint analysis shows no flows with unsanitized paths, the raw SQL query presents a potential risk for SQL injection if it is not handled with extreme care in its context within the plugin. The plugin's vulnerability history is clean, with no recorded CVEs, which is an excellent indicator of past security awareness. The combination of a clean history and good static analysis results points to a plugin that has likely been developed with security in mind. The primary weakness is the singular SQL query lacking prepared statements, which warrants attention despite the otherwise strong security profile.
Key Concerns
- SQL query without prepared statements
Theme Stats View Security Vulnerabilities
Theme Stats View Release Timeline
Theme Stats View Code Analysis
SQL Query Safety
Output Escaping
Theme Stats View Attack Surface
Maintenance & Trust
Theme Stats View Maintenance & Trust
Maintenance Signals
Community Trust
Theme Stats View Alternatives
Create Block Theme
create-block-theme
A WordPress plugin to create block themes.
Gutenverse Companion
gutenverse-companion
Companion plugin for Gutenverse base themes
Counters Block – Animated Number Counters for Stats and Goals
counters-block
A great way to display numbers in a fun and interesting way.
Disable Auto Update Emails and Block Updates for Plugins, WP Core, and Themes
disable-email-notification-for-auto-updates
This plugin disables email notifications for auto-updates and blocks updates for specific plugins, hide plugins, WordPress core, and themes.
Counter Block
counter-block
Show off numbers or stats on your website using animated Counter block for Gutenberg.
Theme Stats View Developer Profile
54 plugins · 56K total installs
How We Detect Theme Stats View
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/theme-stats-view/js/script.js/wp-content/plugins/theme-stats-view/css/style.css/wp-content/plugins/theme-stats-view/build/index.js/wp-content/plugins/theme-stats-view/js/script.js/wp-content/plugins/theme-stats-view/build/index.jstheme-stats-view/css/style.css?ver=theme-stats-view/js/script.js?ver=theme-stats-view/build/index.js?ver=HTML / DOM Fingerprints
tsview-statisticsdata-tsview-optionstsview_vars[theme_stats_view]