
Widget Revisions Security & Risk Analysis
wordpress.org/plugins/widget-revisionsThis plugin allows to create revisions for Widget like post and page revisions. It also enables you to rollback your widget to any of those previous s …
Is Widget Revisions Safe to Use in 2026?
Generally Safe
Score 85/100Widget Revisions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The widget-revisions plugin version 1.0.3 exhibits a generally good security posture with no recorded vulnerabilities or critical code signals. The absence of REST API routes, shortcodes, and cron events limits the potential attack surface. Furthermore, all identified AJAX handlers include authorization checks, and there are no unsanitized taint flows or file operations, which are significant strengths. However, the plugin does present some areas for concern. A notable weakness is the complete lack of capability checks for its AJAX handlers, which means that any user, regardless of their role or permissions, could potentially interact with these functions. Additionally, all seven SQL queries are executed without prepared statements, posing a significant risk of SQL injection if the input to these queries is not meticulously sanitized elsewhere, which is not indicated by the provided data. The low percentage of properly escaped output also raises concerns about potential cross-site scripting (XSS) vulnerabilities.
Key Concerns
- No capability checks on AJAX handlers
- All SQL queries use raw SQL
- Low percentage of output escaping
Widget Revisions Security Vulnerabilities
Widget Revisions Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Widget Revisions Attack Surface
AJAX Handlers 4
WordPress Hooks 4
Maintenance & Trust
Widget Revisions Maintenance & Trust
Maintenance Signals
Community Trust
Widget Revisions Alternatives
Optimize Database after Deleting Revisions
rvg-optimize-database
One-click database optimization with precise revision cleanup and flexible scheduling. Speeding up sites since 2011!
Revision Control
revision-control
Revision Control allows finer control over the Post Revision system included with WordPress
WP Revisions Control
wp-revisions-control
Control how many revisions are stored for each post type.
Simple Revisions Delete
simple-revisions-delete
Simple Revisions Delete adds a discreet link within a post submit box to let you purge (delete) its revisions via AJAX. Bulk actions also available.
Login Widget With Shortcode
login-sidebar-widget
This is a simple login form in the widget. This will allow users to login to the site from frontend.
Widget Revisions Developer Profile
7 plugins · 140 total installs
How We Detect Widget Revisions
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/widget-revisions/assets/css/admin-wr-main.css/wp-content/plugins/widget-revisions/assets/js/admin-wr-main.jsadmin-wr-main.css?ver=admin-wr-main.js?ver=HTML / DOM Fingerprints
ntwr-modal-windowwr-modal-contentnt-wr-loadingwcsscwr-revision-windowdata-iddata-nametitlewp_widget_revisions