
Widget CSS Classes Security & Risk Analysis
wordpress.org/plugins/widget-css-classesAdd custom classes and ids plus first, last, even, odd, and numbered classes to your widgets.
Is Widget CSS Classes Safe to Use in 2026?
Generally Safe
Score 92/100Widget CSS Classes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "widget-css-classes" plugin, version 1.5.4.1, presents a generally strong security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. The code also demonstrates good practices by utilizing prepared statements for all SQL queries and having a high percentage of properly escaped output.
However, there are a few areas for caution. The presence of a file operation without further context raises a potential concern. Additionally, the lack of nonce checks is notable, especially if any of the 7 capability checks are implemented in a way that could be bypassed without proper authorization. The taint analysis shows no identified vulnerabilities, and the plugin has no recorded CVEs, indicating a history of stable security. Despite these strengths, the file operation and missing nonce checks warrant attention to ensure no exploitable weaknesses are present.
Overall, the plugin appears to be well-developed with a focus on security fundamentals. The lack of known vulnerabilities and the robust handling of SQL and output are significant positives. The primary areas for potential improvement lie in clarifying the purpose and security of the file operation and implementing nonce checks where appropriate to further harden the plugin against potential threats.
Key Concerns
- File operations detected without context
- No nonce checks implemented
Widget CSS Classes Security Vulnerabilities
Widget CSS Classes Code Analysis
Output Escaping
Widget CSS Classes Attack Surface
WordPress Hooks 13
Maintenance & Trust
Widget CSS Classes Maintenance & Trust
Maintenance Signals
Community Trust
Widget CSS Classes Alternatives
GravityWP – CSS Selector
gravitywp-css-selector
Easily select CSS Ready Classes for your fields within Gravity Forms
CSS Ready Classes for Gravity Forms
css-ready-classes-gravity-forms
Conveniently select Gravity Form CSS Ready Classes from your form fields Appearance tab.
Widget Classes
widget-classes
Widget Classes allows you to add classes to your individual widgets to be used by your theme. This is done by appending an additional form field to th …
TailPress – Tailwind for WordPress
tailpress
Seamless integration of Tailwind for WordPress.
Custom Menu Class
custom-menu-class
Set predefined CSS classes to menu items
Widget CSS Classes Developer Profile
10 plugins · 112K total installs
How We Detect Widget CSS Classes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/widget-css-classes/css/widget-css-classes.css/wp-content/plugins/widget-css-classes/js/widget-css-classes.js/wp-content/plugins/widget-css-classes/js/widget-css-classes.jswidget-css-classes.css?ver=widget-css-classes.js?ver=HTML / DOM Fingerprints
widget-css-classes-settings