Wizhi Optimization by Wenprise Security & Risk Analysis

wordpress.org/plugins/wizhi-optimization

Clean up and optimization WordPress for Chinese user or who use English in China

10 active installs v1.3.1 PHP + WP 3.7+ Updated Jun 25, 2019
adminpagespost
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Wizhi Optimization by Wenprise Safe to Use in 2026?

Generally Safe

Score 85/100

Wizhi Optimization by Wenprise has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "wizhi-optimization" v1.3.1 plugin appears to have a very strong security posture. The absence of any detected attack surface points (AJAX handlers, REST API routes, shortcodes, cron events) suggests that the plugin has been designed with a minimal footprint, reducing the opportunities for potential exploitation. Furthermore, the code signals are overwhelmingly positive, with no dangerous functions, all SQL queries using prepared statements, and all output being properly escaped. The presence of a capability check, even with other entry points being zero, indicates some level of authorization consideration.

The taint analysis also shows no identified flows with unsanitized paths, further reinforcing the impression of secure coding practices. The vulnerability history is completely clean, with no known CVEs, which is a significant indicator of responsible development and a lack of previously discovered exploitable flaws. The plugin exhibits excellent adherence to fundamental security principles by avoiding common vulnerabilities.

In conclusion, the "wizhi-optimization" plugin v1.3.1 demonstrates a remarkably secure design and implementation. Its minimal attack surface, secure coding practices in SQL handling and output escaping, and a pristine vulnerability history collectively point to a low-risk plugin. The only potential area for observation would be the complete absence of nonce checks and the sole reliance on capability checks (which are only one in total). While this is not a direct vulnerability based on the data, future development might consider reinforcing these areas for an even more robust security profile, especially if any new entry points are introduced.

Vulnerabilities
None known

Wizhi Optimization by Wenprise Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Wizhi Optimization by Wenprise Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Wizhi Optimization by Wenprise Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 13
actionwp_before_admin_bar_rendermodules\cleanup.php:6
actioninitmodules\cleanup.php:21
actionwp_before_admin_bar_rendermodules\cleanup.php:35
actioninitmodules\cleanup.php:50
filternav_menu_css_classmodules\cleanup.php:65
filterthe_generatormodules\cleanup.php:73
filterwp_titlemodules\cleanup.php:81
actionadmin_headmodules\optimization.php:6
actionadmin_initmodules\optimization.php:25
filterthe_titlemodules\optimization.php:36
filterwp_terms_checklist_argsmodules\optimization.php:48
filterbody_classmodules\optimization.php:60
actionafter_setup_themewizhi-optimization.php:15
Maintenance & Trust

Wizhi Optimization by Wenprise Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedJun 25, 2019
PHP min version
Downloads3K

Community Trust

Rating74/100
Number of ratings3
Active installs10
Developer Profile

Wizhi Optimization by Wenprise Developer Profile

Amos Lee(一刀)

8 plugins · 5K total installs

88
trust score
Avg Security Score
91/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Wizhi Optimization by Wenprise

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wizhi-optimization/assets/css/common.css
Script Paths
/wp-content/plugins/wizhi-optimization/assets/js/common.js
Version Parameters
wizhi-optimization/assets/css/common.css?ver=wizhi-optimization/assets/js/common.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Wizhi Optimization by Wenprise