WP Accelerator for Chinese Security & Risk Analysis

wordpress.org/plugins/wp-accelerator-for-chinese

为中国的 WordPress 使用者加速Ta们的网站!

100 active installs v0.9.4 PHP + WP 3.8+ Updated Feb 21, 2016
acceleratorspeedup
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Accelerator for Chinese Safe to Use in 2026?

Generally Safe

Score 85/100

WP Accelerator for Chinese has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The plugin "wp-accelerator-for-chinese" v0.9.4 presents a generally positive security posture based on the provided static analysis. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points indicates a minimal attack surface. Furthermore, the code signals show no dangerous functions or file operations, and all SQL queries are correctly prepared, which are excellent security practices. The lack of any recorded vulnerabilities, past or present, is a strong indicator of a well-maintained and secure codebase.

However, there are areas for improvement that slightly temper the overall strong assessment. The most significant concern is the low percentage (25%) of properly escaped output. This suggests a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not adequately sanitized before being displayed. Additionally, the presence of one external HTTP request without clear context on its purpose or any associated security checks warrants further investigation. The absence of nonce and capability checks, while mitigated by the limited attack surface, could become a risk if new entry points are introduced in future versions.

In conclusion, the plugin "wp-accelerator-for-chinese" v0.9.4 is likely secure against many common web vulnerabilities due to its limited attack surface and good practices regarding SQL queries and dangerous functions. The lack of vulnerability history further reinforces this. The primary area of concern is the insufficient output escaping, which poses an XSS risk. Addressing this and clarifying the external HTTP request would significantly strengthen the plugin's security.

Key Concerns

  • Low percentage of properly escaped output
  • External HTTP requests without clear security context
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

WP Accelerator for Chinese Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Accelerator for Chinese Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

25% escaped12 total outputs
Attack Surface

WP Accelerator for Chinese Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 22
actionplugins_loadedwp-accelerator-for-chinese.php:35
filtergettext_with_contextwp-accelerator-for-chinese.php:58
actionadmin_headwp-accelerator-for-chinese.php:63
actionwp_headwp-accelerator-for-chinese.php:64
filterscript_loader_srcwp-accelerator-for-chinese.php:69
filterstyle_loader_srcwp-accelerator-for-chinese.php:70
actionwidgets_initwp-accelerator-for-chinese.php:75
actionadmin_bar_menuwp-accelerator-for-chinese.php:78
filteremoji_urlwp-accelerator-for-chinese.php:94
actionadmin_initwp-accelerator-for-chinese.php:102
actionadmin_menuwp-accelerator-for-chinese.php:103
actionwp_headwp-accelerator-for-chinese.php:109
actiontemplate_redirectwp-accelerator-for-chinese.php:116
actionpre_pingwp-accelerator-for-chinese.php:122
filterxmlrpc_methodswp-accelerator-for-chinese.php:123
actioninitwp-accelerator-for-chinese.php:127
actionwp_dashboard_setupwp-accelerator-for-chinese.php:131
filterget_avatar_datawp-accelerator-for-chinese.php:137
actionlogin_headwp-accelerator-for-chinese.php:143
actionshutdownwp-accelerator-for-chinese.php:151
filtersanitize_userwp-accelerator-for-chinese.php:156
filtertiny_mce_pluginswp-accelerator-for-chinese.php:432
Maintenance & Trust

WP Accelerator for Chinese Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedFeb 21, 2016
PHP min version
Downloads6K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

WP Accelerator for Chinese Developer Profile

suifengtec

12 plugins · 1K total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Accelerator for Chinese

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-accelerator-for-chinese/css/speedup4cn.css/wp-content/plugins/wp-accelerator-for-chinese/js/speedup4cn.js/wp-content/plugins/wp-accelerator-for-chinese/js/admin.js
Script Paths
/wp-content/plugins/wp-accelerator-for-chinese/js/speedup4cn.js/wp-content/plugins/wp-accelerator-for-chinese/js/admin.js
Version Parameters
wp-accelerator-for-chinese/css/speedup4cn.css?ver=wp-accelerator-for-chinese/js/speedup4cn.js?ver=wp-accelerator-for-chinese/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
speedup4cn-admin-notice
HTML Comments
<!-- IMPORTANT: only for Local development environment --><!-- NOTICE: please do NOT use relative URLs for your online site!!! --><!-- NOTICE: fonts.useso.com do NOT support combined query. --><!-- x_prefetch -->+6 more
JS Globals
speedup4cn_admin_obj
FAQ

Frequently Asked Questions about WP Accelerator for Chinese