
Add TinyMCE to the Additional Description field Security & Risk Analysis
wordpress.org/plugins/tinymce-for-wp-e-commerce-additional-descriptionAdd TinyMCE to the Additional Description field of WP E-Commerce. Possibility insert additional product photos, even without buying GoldenCart!
Is Add TinyMCE to the Additional Description field Safe to Use in 2026?
Generally Safe
Score 85/100Add TinyMCE to the Additional Description field has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "tinymce-for-wp-e-commerce-additional-description" v1.0 exhibits a very strong security posture based on the provided static analysis. There are no identified attack vectors through AJAX, REST API, shortcodes, or cron events. The code demonstrates excellent security practices with no dangerous functions, all SQL queries using prepared statements, and all output being properly escaped. Furthermore, there are no file operations, external HTTP requests, or evident issues with nonce or capability checks. The absence of any recorded vulnerabilities in its history further bolsters this positive assessment, indicating a mature and well-maintained codebase.
While the static analysis reveals an exceptionally clean codebase with no immediate risks, the absence of any identified entry points (AJAX, REST API, shortcodes, cron) is unusual for a WordPress plugin that aims to add functionality. This could indicate that the plugin might not have the intended functionality, or its functionality is implemented in a way that bypasses typical analysis methods, which itself could be a potential, albeit theoretical, concern in complex scenarios. However, based solely on the provided data, the plugin appears to be remarkably secure.
Key Concerns
- Bundled library TinyMCE v1.0 potentially outdated
- No capability checks found
- No nonce checks found
Add TinyMCE to the Additional Description field Security Vulnerabilities
Add TinyMCE to the Additional Description field Code Analysis
Bundled Libraries
Add TinyMCE to the Additional Description field Attack Surface
WordPress Hooks 4
Maintenance & Trust
Add TinyMCE to the Additional Description field Maintenance & Trust
Maintenance Signals
Community Trust
Add TinyMCE to the Additional Description field Alternatives
WP e-Commerce Related Products
wpec-related-products
WPEC Related Products for WP e-Commerce uses information available within the Single Product template to display related Products.
Black Studio TinyMCE Widget
black-studio-tinymce-widget
The visual editor widget for WordPress.
AddQuicktag
addquicktag
This plugin makes it easy to add Quicktags to the html - and visual-editor.
Speculative Loading
speculation-rules
Enables browsers to speculatively prerender or prefetch pages to achieve near-instant loads based on user interaction.
Post and Page Builder by BoldGrid – Visual Drag and Drop Editor
post-and-page-builder
Post and Page Builder is a standalone plugin which adds functionality to the existing TinyMCE Editor.
Add TinyMCE to the Additional Description field Developer Profile
1 plugin · 10 total installs
How We Detect Add TinyMCE to the Additional Description field
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tinymce-for-wp-e-commerce-additional-description/tinymce-for-wpec-additional-description.phpHTML / DOM Fingerprints
mceEditortme_convertExcerpttinyMCE