
Typing Text Security & Risk Analysis
wordpress.org/plugins/typing-textEngage your potential audience with an exciting promo.
Is Typing Text Safe to Use in 2026?
Use With Caution
Score 63/100Typing Text has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "typing-text" plugin version 1.2.7 exhibits a mixed security posture. On the positive side, the static analysis reveals no dangerous functions, all SQL queries are prepared, and output is properly escaped. The absence of file operations, external HTTP requests, and a large attack surface are also strengths. However, the presence of one unpatched medium severity CVE is a significant concern, indicating a known vulnerability that attackers could potentially exploit.
The vulnerability history shows a pattern of Cross-site Scripting (XSS) vulnerabilities. While the latest vulnerability was in the past, the existence of two such CVEs suggests a recurring weakness in how the plugin handles user-supplied data or content. The fact that one is still unpatched elevates the risk considerably, despite the static analysis indicating good coding practices in other areas. This suggests that the underlying issue might be subtle and not always caught by standard static analysis.
In conclusion, while the "typing-text" plugin has demonstrated good security practices in its current code (e.g., prepared statements, proper escaping), the unpatched CVE and historical XSS vulnerabilities introduce a clear and present risk. Users should prioritize updating the plugin to a version that addresses the outstanding vulnerability. The plugin's strengths in code hygiene are overshadowed by the known, unaddressed security flaw.
Key Concerns
- Unpatched CVE present
- History of XSS vulnerabilities
Typing Text Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Typing Text <= 1.2.7 - Authenticated (Contributor+) Stored Cross-Site Scripting
Typing Text <= 1.2.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
Typing Text Release Timeline
Typing Text Code Analysis
Typing Text Attack Surface
WordPress Hooks 5
Maintenance & Trust
Typing Text Maintenance & Trust
Maintenance Signals
Community Trust
Typing Text Alternatives
Primekit Blocks | Modern Blocks for Gutenberg
primekit-blocks
Enhance your WordPress site with custom Gutenberg blocks including Animated Text, Call to Action, Glass Card, and more.
Spectra Legacy – Gutenberg Blocks
ultimate-addons-for-gutenberg
Gutenberg blocks for existing Spectra websites. Maintained, stable, and fully supported — no action needed on your part.
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
kadence-blocks
20+ Gutenberg Blocks with endless options, enabling top-notch efficiency for high-performance dynamic website creation.
Extendify
extendify
The best WordPress templates, pattern, and layout library with 1,000+ designs built for the Gutenberg block editor.
Page Builder: Pagelayer – Drag and Drop website builder
pagelayer
The most advanced frontend drag & drop page builder. Pagelayer is a light weight but extremely powerful Website Builder.
Typing Text Developer Profile
46 plugins · 3.9M total installs
How We Detect Typing Text
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/typing-text/assets/css/animate.min.css/wp-content/plugins/typing-text/assets/js/eb-animation-load.js/wp-content/plugins/typing-text/assets/js/typed.min.js/wp-content/plugins/typing-text/dist/index.js/wp-content/plugins/typing-text/dist/style.css/wp-content/plugins/typing-text/dist/frontend/index.js/wp-content/plugins/typing-text/assets/js/typed.min.js/wp-content/plugins/typing-text/assets/js/eb-animation-load.js/wp-content/plugins/typing-text/dist/index.js/wp-content/plugins/typing-text/dist/frontend/index.jstyping-text/assets/css/animate.min.css?ver=typing-text/assets/js/eb-animation-load.js?ver=typing-text/assets/js/typed.min.js?ver=typing-text/dist/index.js?ver=typing-text/dist/style.css?ver=typing-text/dist/frontend/index.js?ver=HTML / DOM Fingerprints
eb-typing-text-wrapperdata-settingsTYPING_TEXT_BLOCKS_VERSIONTYPING_TEXT_BLOCKS_ADMIN_URLTYPING_TEXT_BLOCKS_ADMIN_PATH