Euro Currency Security & Risk Analysis

wordpress.org/plugins/webites-currency

Plugin displays actual currencies AUD, USD, CHF, GBP, JPY etc based on EUR.

0 active installs v1.2.2 PHP + WP + Updated Jul 21, 2021
currencyeurgbpjpyusd
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Euro Currency Safe to Use in 2026?

Generally Safe

Score 85/100

Euro Currency has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The "webites-currency" v1.2.2 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, properly escaped output, and the exclusive use of prepared statements for SQL queries are excellent indicators of secure coding practices. Furthermore, the plugin has no recorded vulnerability history, suggesting a commitment to security or a lack of previously discovered exploitable flaws.

However, there are a few areas that warrant attention. The most significant concern is the complete absence of nonce checks and capability checks. This means that any function exposed via a shortcode, even if it doesn't directly involve sensitive operations, is not protected against cross-site request forgery (CSRF) attacks. While the current attack surface appears limited to a single shortcode and there are no identified taint flows, the lack of these fundamental security controls represents a potential weakness. The presence of an external HTTP request, while not inherently a vulnerability, should be monitored for potential security implications if the target endpoint is compromised or untrusted.

In conclusion, while "webites-currency" v1.2.2 adheres to many secure coding principles and has a clean vulnerability history, the complete lack of nonce and capability checks on its entry points is a notable deficiency that exposes it to potential CSRF attacks. The plugin's overall security is good, but this oversight prevents it from being excellent.

Key Concerns

  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Euro Currency Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Euro Currency Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Attack Surface

Euro Currency Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[webites_currency] webites-currency.php:58
WordPress Hooks 5
actionadmin_menuincludes\webites-currency-options.php:65
actionadmin_initincludes\webites-currency-options.php:79
actioninitwebites-currency.php:19
actionwp_enqueue_scriptswebites-currency.php:35
filterthe_contentwebites-currency.php:41
Maintenance & Trust

Euro Currency Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedJul 21, 2021
PHP min version
Downloads937

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Euro Currency Developer Profile

Łukasz Gołąbek

3 plugins · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Euro Currency

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/webites-currency/style/currency-style.css
Version Parameters
webites-currency/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
headerBeforePlugincurrencyContainermainCurrencywbcp_currency_header_ratecurrencyItemtextAfterPlugin
Shortcode Output
<div><h2 class="headerBeforePlugin"><div class="currencyContainer"><div class="mainCurrency"><div class="wbcp_currency_header_rate">
FAQ

Frequently Asked Questions about Euro Currency