
Translation Stats Security & Risk Analysis
wordpress.org/plugins/translation-statsShow plugins translation stats on your WordPress install.
Is Translation Stats Safe to Use in 2026?
Generally Safe
Score 100/100Translation Stats has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "translation-stats" plugin v1.3.2 exhibits a generally good security posture with strong adherence to several best practices, including near-perfect output escaping and a low number of SQL queries that are predominantly prepared. The absence of known vulnerabilities and the limited number of file operations and external HTTP requests are also positive indicators. However, a significant concern is the presence of one AJAX handler that lacks authentication checks, creating a direct entry point for potential unauthorized access or manipulation. While taint analysis did not reveal critical or high severity issues, the single flow with unsanitized paths warrants attention, even if it did not escalate to a critical vulnerability in this scan.
Despite the overall robust coding practices, the single unprotected AJAX endpoint represents a notable weakness. If this endpoint is exploitable, it could allow unauthenticated users to perform actions or retrieve sensitive data, depending on its functionality. The plugin's history of zero known vulnerabilities is a strong positive, suggesting a commitment to security or a lack of past exploitation. The conclusion is that the plugin is largely secure due to its excellent code hygiene, but the unauthenticated AJAX handler is a specific risk that should be addressed to achieve a truly secure state.
Key Concerns
- AJAX handler without authentication
- Flow with unsanitized paths
Translation Stats Security Vulnerabilities
Translation Stats Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Translation Stats Attack Surface
AJAX Handlers 1
WordPress Hooks 20
Maintenance & Trust
Translation Stats Maintenance & Trust
Maintenance Signals
Community Trust
Translation Stats Alternatives
Performant Translations
performant-translations
Making internationalization/localization in WordPress faster than ever before.
Preferred Languages
preferred-languages
Choose languages for displaying WordPress in, in order of preference.
Translator with Baidu Service
translator-with-baidu-service
Translate your site in many languages with this plugin from JoyBin, Inc. The translating service provider is Baidu.
Loco Translate
loco-translate
Translate WordPress plugins and themes directly in your browser. Versatile PO file editor with integrated AI translation providers.
Admin in English
admin-in-english
Admin in English lets you have your administration panel in English, even if the rest of your blog is translated into another language.
Translation Stats Developer Profile
7 plugins · 120 total installs
How We Detect Translation Stats
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/translation-stats/assets/js/translation-stats.js/wp-content/plugins/translation-stats/assets/css/translation-stats.css/wp-content/plugins/translation-stats/assets/js/translation-stats.jstranslation-stats/assets/js/translation-stats.js?ver=translation-stats/assets/css/translation-stats.css?ver=HTML / DOM Fingerprints
Translation_Stats