
Website information Report Security & Risk Analysis
wordpress.org/plugins/website-information-reportReport on Website Information Provide information such as WordPress version, PHP version,active status(Away to online,online,offline), installed plugi …
Is Website information Report Safe to Use in 2026?
Generally Safe
Score 85/100Website information Report has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "website-information-report" plugin v1.3 exhibits significant security concerns despite a clean vulnerability history and no reported CVEs. The static analysis reveals a critical weakness in its attack surface, with 100% of its entry points (2 AJAX handlers) lacking any authentication or capability checks. This means any unauthenticated user can trigger these AJAX actions, potentially leading to unintended behavior or information disclosure. Furthermore, the code analysis indicates a severe lack of output escaping, with 0% of identified outputs being properly escaped. This leaves the plugin highly susceptible to Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts that can be executed in the context of a user's browser. While the plugin does not appear to have dangerous functions or file operations, and it doesn't make external HTTP requests, the absence of basic security controls on its entry points and the universal failure to escape output represent a substantial risk.
Key Concerns
- Unprotected AJAX handlers
- Output escaping completely missing
- No nonce checks on AJAX
- No capability checks
Website information Report Security Vulnerabilities
Website information Report Code Analysis
SQL Query Safety
Output Escaping
Website information Report Attack Surface
AJAX Handlers 2
WordPress Hooks 5
Maintenance & Trust
Website information Report Maintenance & Trust
Maintenance Signals
Community Trust
Website information Report Alternatives
Server IP & Memory Usage Display
server-ip-memory-usage
Show the memory limit, current memory usage and IP address in the admin footer.
Version Info – Server Health Monitor, PHP & MySQL Version Display, Environment Indicators
version-info
The #1 technical dashboard for WordPress professionals. Display PHP, MySQL, WP & server versions anywhere in admin. Monitor CPU, RAM, DB size & …
Plugin Compatibility Checker
plugin-compatibility-checker
Scan and check your plugins for PHP and WordPress compatibility. Requires a $1/month Portal subscription to obtain a license key.
PHP Version
php-version
You can able to see the current PHP version in WordPress admin dashboard widget.
MyServerInfo – Memory Usage, PHP Version, Memory Limit, Execution Time, CPU Usage, Disk Usage
my-server-info
Displays Usage (CPU , Disk, Memory), PHP and MySQL Version, WP Memory Limit, PHP Execution Time, Max Input Vars, IP Address, Uptime, Timezone.
Website information Report Developer Profile
4 plugins · 10 total installs
How We Detect Website information Report
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/website-information-report/wordpress.cssHTML / DOM Fingerprints
system_envuser_status/wp-ajax-script.js?action=show_user_status