
Widget Offres Security & Risk Analysis
wordpress.org/plugins/widget-offres-demploi-pole-emploiIntégrez une carte interactive des offres de France Travail
Is Widget Offres Safe to Use in 2026?
Generally Safe
Score 100/100Widget Offres has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "widget-offres-demploi-pole-emploi" plugin version 0.2.46 exhibits a generally good security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and a clean vulnerability history are strong indicators of good development practices and diligent maintenance regarding known security issues.
However, the static analysis reveals a few areas for improvement. While the overall attack surface is small and no unprotected entry points were identified, the lack of nonce checks on the single shortcode is a concern. This could potentially be exploited if the shortcode processes user-supplied data without proper validation. Additionally, while the code signals indicate proper handling of SQL queries and a good percentage of output escaping, a portion of the output (33%) is not properly escaped, presenting a potential cross-site scripting (XSS) risk if user-controlled data is involved in those outputs.
In conclusion, the plugin benefits from a lack of historical vulnerabilities and a generally secure approach to sensitive operations like SQL queries. The primary weaknesses lie in the potential for missing nonce checks on the shortcode and the unescaped output. Addressing these points would significantly strengthen the plugin's security.
Key Concerns
- No nonce checks on shortcode
- Unescaped output present
Widget Offres Security Vulnerabilities
Widget Offres Code Analysis
Output Escaping
Widget Offres Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Widget Offres Maintenance & Trust
Maintenance Signals
Community Trust
Widget Offres Alternatives
Classic Widgets
classic-widgets
Enables the previous "classic" widgets settings screens in Appearance - Widgets and the Customizer. Disables the block editor from managing widgets.
ElementsKit Elementor Addons – Advanced Widgets & Templates Addons for Elementor
elementskit-lite
Join millions who empower their websites with ElementsKit Elementor Addons. Get templates, & 100+ widgets like header-footer, mega menu, custom widget
Essential Addons for Elementor – Popular Elementor Templates & Widgets
essential-addons-for-elementor-lite
Elementor addon offering 110+ widgets and templates — Elementor Gallery, Slider, Form, Post Grid, Menu, Accordion, WooCommerce & more.
Ultimate Addons for Elementor
header-footer-elementor
Powerful Elementor addon with advanced Elementor widgets, templates, WooCommerce widgets & Header-Footer builder to build professional websites fa …
Smash Balloon Social Photo Feed – Easy Social Feeds Plugin
instagram-feed
Formerly "Instagram Feed". Display clean, customizable, and responsive Instagram feeds from multiple accounts. Supports Instagram oEmbeds.
Widget Offres Developer Profile
1 plugin · 60 total installs
How We Detect Widget Offres
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/widget-offres-demploi-pole-emploi/bootstrap-icons.css/wp-content/plugins/widget-offres-demploi-pole-emploi/logo.pngHTML / DOM Fingerprints
peio-criteriapeio-eyeblocpeio-identifiantspeio-identifiants-inputpeio-parametres-techniquesswitchslider+3 moreid="paramsWidget"id="peio-parametres-techniques"id="logo-peio"id="logo-peio2"