
WoW Progress Security & Risk Analysis
wordpress.org/plugins/wow-progressA widget that helps to display guild raid progress.
Is WoW Progress Safe to Use in 2026?
Generally Safe
Score 100/100WoW Progress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'wow-progress' v1.23.0 plugin exhibits a generally strong security posture based on the provided static analysis. It successfully avoids common pitfalls such as direct SQL queries, large attack surfaces, and external HTTP requests. The absence of known CVEs and a clean vulnerability history further bolster this positive assessment, suggesting a well-maintained and secure plugin.
However, a significant concern arises from the low percentage of properly escaped output (9%). With 32 total outputs, only a small fraction are being secured, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. While the static analysis did not identify any specific taint flows or dangerous functions that leverage these potential XSS flaws, the presence of numerous unescaped outputs creates a substantial attack vector that could be exploited by malicious actors. The lack of nonce and capability checks across its entry points, although currently empty, also represents a potential future risk if functionality is added without these security measures.
In conclusion, while 'wow-progress' v1.23.0 has demonstrated good practices in several key security areas and boasts a clean vulnerability record, the widespread issue of unescaped output is a critical weakness. This makes it susceptible to XSS attacks. Developers should prioritize addressing these output escaping issues to mitigate this significant risk.
Key Concerns
- Low output escaping percentage
- No nonce checks on entry points
- No capability checks on entry points
WoW Progress Security Vulnerabilities
WoW Progress Code Analysis
Output Escaping
WoW Progress Attack Surface
WordPress Hooks 6
Maintenance & Trust
WoW Progress Maintenance & Trust
Maintenance Signals
Community Trust
WoW Progress Alternatives
WOW Recruitment Widget
wow-recruit-widget
A widget that helps to display recruitment message of a World of Warcraft guild, also can be used for other games that have different classes.
Warcraft Bundle
warcraft-bundle
Warcraft Bundle for WordPress. World of Warcraft collection pages and widgets for WordPress.
WoW Guild
wow-guild
Easily displays your Guild's Roster from the armory
WoWpi Guild
wowpi-guild
You want a proper World of Warcraft's guild website but you don't know how? Look no further. This is the plugin for your guild's needs.
WoWRecrut
wowrecrut
WoWRecrut is a World of Warcraft Class recruitment Widget.
WoW Progress Developer Profile
1 plugin · 30 total installs
How We Detect WoW Progress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wow-progress/wowprogress.css/wp-content/plugins/wow-progress/wowprogress.js//wow.zamimg.com/widgets/power.js/wp-content/plugins/wow-progress/wowprogress.jswowprogress?ver=wowprogress_theme?ver=HTML / DOM Fingerprints
wowprogressexpansion_headexpansionraid<!-- .expansion -->data-progress-countwowprogress<div id="wowprogress">