Wireless-WordPress Security & Risk Analysis

wordpress.org/plugins/wireless-wordpress

Wireless WordPress插件可以为你的博客增加友好的手机版页面

10 active installs v1.1 PHP + WP 3.0+ Updated Nov 28, 2011
mobilephonewapwireless
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Wireless-WordPress Safe to Use in 2026?

Generally Safe

Score 85/100

Wireless-WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 14yr ago
Risk Assessment

The 'wireless-wordpress' plugin v1.1 exhibits a generally good security posture based on the provided static analysis. The plugin has no recorded vulnerabilities (CVEs) and its static analysis shows no critical or high-severity issues from taint flows. It also avoids dangerous functions and external HTTP requests. However, there are several areas for improvement. The lack of nonce checks and capability checks is a significant concern, as this leaves the shortcodes, which are the primary entry points identified, potentially vulnerable to CSRF attacks. Furthermore, a substantial portion of SQL queries are not using prepared statements, posing a risk of SQL injection. The low percentage of properly escaped output also indicates a risk of XSS vulnerabilities. While the absence of historical vulnerabilities is a positive sign, the identified code-level weaknesses warrant attention to prevent future security incidents.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • SQL queries not prepared
  • Low output escaping rate
Vulnerabilities
None known

Wireless-WordPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Wireless-WordPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
1 prepared
Unescaped Output
29
10 escaped
Nonce Checks
0
Capability Checks
0
File Operations
2
External Requests
0
Bundled Libraries
0

SQL Query Safety

25% prepared4 total queries

Output Escaping

26% escaped39 total outputs
Attack Surface

Wireless-WordPress Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[login] wireless\functions.php:225
[reply] wireless\functions.php:252
WordPress Hooks 9
filterwp_tag_cloudwireless\functions.php:44
filtersmilies_srcwireless\functions.php:167
actionpre_pingwireless\functions.php:176
actioncomment_postwireless\functions.php:213
actionadmin_menuwireless.php:23
filterstylesheetwireless.php:25
filtertemplatewireless.php:26
filterthe_contentwireless.php:27
actionadmin_noticeswireless.php:322
Maintenance & Trust

Wireless-WordPress Maintenance & Trust

Maintenance Signals

WordPress version tested3.2.1
Last updatedNov 28, 2011
PHP min version
Downloads9K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Wireless-WordPress Developer Profile

messense

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Wireless-WordPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Wireless-WordPress