
Ultimate Info Security & Risk Analysis
wordpress.org/plugins/ultimate-infoView all server and wordpress information in quickly. This plugin is only for site administrators.
Is Ultimate Info Safe to Use in 2026?
Generally Safe
Score 85/100Ultimate Info has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ultimate-info" v2 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin has a minimal attack surface with no identified AJAX handlers, REST API routes, shortcodes, or cron events. Crucially, there are no known vulnerabilities (CVEs) associated with this plugin, and it has a clean history, suggesting diligent security practices by its developers. The code signals also indicate positive aspects such as 100% of SQL queries using prepared statements, which mitigates risks of SQL injection. However, a significant concern arises from the complete lack of output escaping (0% properly escaped) across all 76 identified output points. This presents a high risk of Cross-Site Scripting (XSS) vulnerabilities, as any data outputted by the plugin, if not inherently safe, could be exploited. While the presence of file operations and capability checks are noted, the lack of nonce checks on potential entry points (though none were identified, this is a general best practice for WordPress plugins) and the absence of taint analysis results are also points to consider for a comprehensive assessment.
Key Concerns
- No output escaping found
- File operation detected
- No nonce checks detected
- Taint analysis not performed
Ultimate Info Security Vulnerabilities
Ultimate Info Code Analysis
Output Escaping
Ultimate Info Attack Surface
WordPress Hooks 2
Maintenance & Trust
Ultimate Info Maintenance & Trust
Maintenance Signals
Community Trust
Ultimate Info Alternatives
Server IP & Memory Usage Display
server-ip-memory-usage
Show the memory limit, current memory usage and IP address in the admin footer.
Version Info – Server Health Monitor, PHP & MySQL Version Display, Environment Indicators
version-info
The #1 technical dashboard for WordPress professionals. Display PHP, MySQL, WP & server versions anywhere in admin. Monitor CPU, RAM, DB size & …
phpinfo() WP
phpinfo-wp
A simple plugin to look up server info and manage server configuration of wordpress site
Server Info
server-info
This plugin will show you very useful information about your hosting server such as PHP version, Server OS, Server IP etc.
System Dashboard
system-dashboard
Central dashboard to monitor various WordPress components, processes and data, including the server.
Ultimate Info Developer Profile
2 plugins · 30 total installs
How We Detect Ultimate Info
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ultimate-info/resource/css/style.css/wp-content/plugins/ultimate-info/resource/js/js.js/wp-content/plugins/ultimate-info/resource/js/js.jsHTML / DOM Fingerprints
tab-titlepropvalh2psbgspanuser-valuewpuser-td-titleattentionid="wordpress"id="wpuser"id="aplink"id="wp-config-txt"class="user-value"class="wpuser-td-title"+4 more