
WEN Call To Action Security & Risk Analysis
wordpress.org/plugins/wen-call-to-actionEasily create call to action for your WordPress site
Is WEN Call To Action Safe to Use in 2026?
Generally Safe
Score 85/100WEN Call To Action has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wen-call-to-action" plugin version 1.4.3 exhibits a strong security posture based on the provided static analysis. There are no identified critical or high-severity code signals, and importantly, no taint analysis revealed any unsanitized data flows. The plugin also benefits from a clean vulnerability history, with no known CVEs or past vulnerabilities, suggesting a history of responsible development and maintenance.
Despite the positive indicators, a few areas warrant attention. The plugin utilizes 23 total outputs, with 78% properly escaped. While this is a good percentage, the remaining 22% of outputs that are not properly escaped present a potential risk for cross-site scripting (XSS) vulnerabilities if user-supplied data is involved in these unescaped outputs. Furthermore, the presence of a shortcode as an entry point, while currently unprotected, is a minor concern if the shortcode's functionality were to be extended in the future without proper security considerations.
Overall, the plugin demonstrates good security practices with its use of prepared statements, nonce checks, and capability checks. The lack of known vulnerabilities is a significant strength. The primary area for improvement lies in ensuring all output is consistently and properly escaped to mitigate any potential XSS risks. The current security posture is good, but continued diligence in code review and output escaping is recommended.
Key Concerns
- Unescaped outputs present potential XSS risks
- Shortcode entry point lacks explicit authentication check
WEN Call To Action Security Vulnerabilities
WEN Call To Action Code Analysis
Output Escaping
WEN Call To Action Attack Surface
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
WEN Call To Action Maintenance & Trust
Maintenance Signals
Community Trust
WEN Call To Action Alternatives
Mobile Contact Bar
mobile-contact-bar
Allow your visitors to contact you via mobile phones, or access your site's pages instantly.
CTA Button Styler
cta-button-styler
Increase engagement with reusable CTA buttons, styled your way with hover effects and optional animations. Clean and efficient.
Easy Call To Action
easy-call-to-action
Create Call To Actions and generate shortcodes to insert them in post, pages or widgets.
CTA Shortcodes for Post
cta-shortcodes-in-post
"CTA Shortcodes in Post" is a free plugin that allows you to embed "Call to Action" in articles and pages using a simple "Sho …
WP CTA – Sticky CTA Builder, Generate Leads, Promote Sales
easy-sticky-sidebar
WordPress Call To Action plugin to promote content, increase sales and leads. Easy to use and includes 3 professional, flexible templates.
WEN Call To Action Developer Profile
63 plugins · 35K total installs
How We Detect WEN Call To Action
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wen-call-to-action/css/wen-call-to-action-admin.css/wp-content/plugins/wen-call-to-action/css/wen-call-to-action-admin.min.css/wp-content/plugins/wen-call-to-action/js/wen-call-to-action-public.js/wp-content/plugins/wen-call-to-action/js/wen-call-to-action-public.min.js/wp-content/plugins/wen-call-to-action/js/wen-call-to-action-admin.js/wp-content/plugins/wen-call-to-action/js/wen-call-to-action-admin.min.jsadmin/js/wen-call-to-action-admin.jspublic/js/wen-call-to-action-public.jswen-call-to-action/css/wen-call-to-action-admin.css?ver=wen-call-to-action/css/wen-call-to-action-admin.min.css?ver=wen-call-to-action/js/wen-call-to-action-public.js?ver=wen-call-to-action/js/wen-call-to-action-public.min.js?ver=wen-call-to-action/js/wen-call-to-action-admin.js?ver=wen-call-to-action/js/wen-call-to-action-admin.min.js?ver=HTML / DOM Fingerprints
wen-cta-overlaywen-cta-button-wrapwen-cta-titlewen-cta-descriptionwen-cta-buttonwen-cta-container<!-- Call To Action Info --><!-- Usage --><!-- Call To Action Design --><!-- Shortcode Output -->+2 moredata-iddata-themedata-custom-classwen_call_to_action_params[wen_cta id="