
WoWRecrut Security & Risk Analysis
wordpress.org/plugins/wowrecrutWoWRecrut is a World of Warcraft Class recruitment Widget.
Is WoWRecrut Safe to Use in 2026?
Generally Safe
Score 85/100WoWRecrut has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wowrecrut" plugin v0.1.2 demonstrates a strong foundation in certain security practices, notably the absence of known vulnerabilities and CVEs, which is a significant positive indicator. The static analysis also reveals a lack of common dangerous functions, SQL queries that exclusively use prepared statements, file operations, and external HTTP requests, further suggesting a cautious approach to development. However, a critical weakness lies in the extremely low percentage of properly escaped output (6%). This indicates a high likelihood of cross-site scripting (XSS) vulnerabilities, as unsanitized user-supplied data could be rendered directly in the browser. The complete absence of nonce checks and capability checks, coupled with zero unprotected entry points (AJAX, REST API, shortcodes, cron events), is a mixed bag: while the attack surface appears limited and technically protected, the lack of specific authorization checks on any potential future entry points or even on the existing, albeit zero, handlers is concerning. This suggests a potential over-reliance on the absence of known attack vectors rather than explicit security controls for each potential interaction.
Key Concerns
- Low output escaping (6%)
- No nonce checks
- No capability checks
WoWRecrut Security Vulnerabilities
WoWRecrut Code Analysis
Output Escaping
WoWRecrut Attack Surface
WordPress Hooks 2
Maintenance & Trust
WoWRecrut Maintenance & Trust
Maintenance Signals
Community Trust
WoWRecrut Alternatives
WOW Recruitment Widget
wow-recruit-widget
A widget that helps to display recruitment message of a World of Warcraft guild, also can be used for other games that have different classes.
WoW Progress
wow-progress
A widget that helps to display guild raid progress.
Simple WoW Recruitment
simple-wow-recruitment
Dieses Plugin ermöglicht das einfache Rekrutieren von neuen Spieler für eine World of Warcraft Gilde.
Simple WoW Recruitment DE
simple-wow-recruitment-de
Dieses Plugin ermöglicht das einfache Rekrutieren von neuen Spielern für eine World of Warcraft-Gilde.
Warcraft Bundle
warcraft-bundle
Warcraft Bundle for WordPress. World of Warcraft collection pages and widgets for WordPress.
WoWRecrut Developer Profile
3 plugins · 80 total installs
How We Detect WoWRecrut
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wowrecrut/wowrecrut.css/wp-content/plugins/wowrecrut/wowrlight/wowrlight.cssHTML / DOM Fingerprints
wowr-classwowr-skillid="wowr-style="background-position:title="class="wowr-skillclass="wowr-classWoWclasseswowRecrutStyles<ul style="list-style:none" ><li class="wowr-class"<a class="wowr-skill<li style="clear:both"></li></ul>