
Translator with Baidu Service Security & Risk Analysis
wordpress.org/plugins/translator-with-baidu-serviceTranslate your site in many languages with this plugin from JoyBin, Inc. The translating service provider is Baidu.
Is Translator with Baidu Service Safe to Use in 2026?
Generally Safe
Score 85/100Translator with Baidu Service has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The translator-with-baidu-service plugin v1.10 exhibits a mixed security posture. On the positive side, it avoids dangerous functions, uses prepared statements exclusively for SQL queries, and has no recorded vulnerabilities (CVEs). This suggests a developer who is aware of some common security pitfalls. However, several significant concerns are raised by the static analysis.
The plugin has two AJAX handlers, both of which lack authentication checks. This creates a direct pathway for unauthenticated users to interact with these handlers, potentially leading to unintended actions or information disclosure. Furthermore, the taint analysis revealed one flow with an unsanitized path, indicating a potential for injection vulnerabilities if this flow is improperly handled on the backend. While the severity of this taint flow is not classified as critical or high, any unsanitized input path is a risk. The low percentage of properly escaped output (37%) is another notable weakness, increasing the risk of Cross-Site Scripting (XSS) vulnerabilities.
In conclusion, while the absence of known vulnerabilities and the use of prepared SQL statements are strengths, the unprotected AJAX endpoints, the unsanitized taint flow, and the poor output escaping practices represent substantial security risks. The plugin's attack surface is relatively small, but the lack of robust access control on critical entry points and insufficient output sanitization warrant significant attention.
Key Concerns
- AJAX handlers without auth checks
- Unsanitized path in taint analysis
- Low output escaping percentage
- No nonce checks on AJAX handlers
- No capability checks on entry points
Translator with Baidu Service Security Vulnerabilities
Translator with Baidu Service Code Analysis
Output Escaping
Data Flow Analysis
Translator with Baidu Service Attack Surface
AJAX Handlers 2
Shortcodes 2
WordPress Hooks 7
Maintenance & Trust
Translator with Baidu Service Maintenance & Trust
Maintenance Signals
Community Trust
Translator with Baidu Service Alternatives
Performant Translations
performant-translations
Making internationalization/localization in WordPress faster than ever before.
Preferred Languages
preferred-languages
Choose languages for displaying WordPress in, in order of preference.
Translation Stats
translation-stats
Show plugins translation stats on your WordPress install.
Admin in English
admin-in-english
Admin in English lets you have your administration panel in English, even if the rest of your blog is translated into another language.
WOVN.io
wovn-io
Localize your website, translate web pages in minutes.
Translator with Baidu Service Developer Profile
3 plugins · 10 total installs
How We Detect Translator with Baidu Service
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/translator-with-baidu-service/admin/css/baidu-translator-admin.css/wp-content/plugins/translator-with-baidu-service/admin/js/baidu-translator-admin.jstranslator-with-baidu-service/style.css?ver=translator-with-baidu-service/script.js?ver=translator-with-baidu-service/admin/css/baidu-translator-admin.css?ver=translator-with-baidu-service/admin/js/baidu-translator-admin.js?ver=HTML / DOM Fingerprints
baidu-translator-togglable-fieldbaidu-translator-admin-wrapCopyright 2010 - 2016 Wagner Wang (email : wagner@joybin.cn)name="baidu_translator[appid]"name="baidu_translator[key]"name="baidu_translator[default_lang]"name="baidu_translator[translate_range]"name="baidu_translator[support_lang]"name="baidu_translator[auto_lang]"+1 morebaidu_translator_admin_params