
WoWRecrut Security & Risk Analysis
wordpress.org/plugins/wowrecrutWoWRecrut is a World of Warcraft Class recruitment Widget.
Is WoWRecrut Safe to Use in 2026?
Generally Safe
Score 85/100WoWRecrut has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wowrecrut" plugin v0.1.2 demonstrates a strong foundation in certain security practices, notably the absence of known vulnerabilities and CVEs, which is a significant positive indicator. The static analysis also reveals a lack of common dangerous functions, SQL queries that exclusively use prepared statements, file operations, and external HTTP requests, further suggesting a cautious approach to development. However, a critical weakness lies in the extremely low percentage of properly escaped output (6%). This indicates a high likelihood of cross-site scripting (XSS) vulnerabilities, as unsanitized user-supplied data could be rendered directly in the browser. The complete absence of nonce checks and capability checks, coupled with zero unprotected entry points (AJAX, REST API, shortcodes, cron events), is a mixed bag: while the attack surface appears limited and technically protected, the lack of specific authorization checks on any potential future entry points or even on the existing, albeit zero, handlers is concerning. This suggests a potential over-reliance on the absence of known attack vectors rather than explicit security controls for each potential interaction.
Key Concerns
- Low output escaping (6%)
- No nonce checks
- No capability checks
WoWRecrut Security Vulnerabilities
WoWRecrut Release Timeline
WoWRecrut Code Analysis
Output Escaping
WoWRecrut Attack Surface
WordPress Hooks 2
Maintenance & Trust
WoWRecrut Maintenance & Trust
Maintenance Signals
Community Trust
WoWRecrut Alternatives
WOW Recruitment Widget
wow-recruit-widget
A widget that helps to display recruitment message of a World of Warcraft guild, also can be used for other games that have different classes.
Guild Recruitment Widget for WoW
guild-recruitment-widget-for-wow
A widget that helps display recruitment messaging for a World of Warcraft guild.
WoW Progress
wow-progress
A widget that helps to display guild raid progress.
Guild Raid Progression for WoW and Raider IO
guild-raid-progression-for-wow-and-raider-io
Track WoW raid progress in real-time with our easy-to-use WordPress plugin.
Simple WoW Recruitment
simple-wow-recruitment
Dieses Plugin ermöglicht das einfache Rekrutieren von neuen Spieler für eine World of Warcraft Gilde.
WoWRecrut Developer Profile
3 plugins · 80 total installs
How We Detect WoWRecrut
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wowrecrut/wowrecrut.css/wp-content/plugins/wowrecrut/wowrlight/wowrlight.cssHTML / DOM Fingerprints
wowr-classwowr-skillid="wowr-style="background-position:title="class="wowr-skillclass="wowr-classWoWclasseswowRecrutStyles<ul style="list-style:none" ><li class="wowr-class"<a class="wowr-skill<li style="clear:both"></li></ul>