
WP Add Custom Css and Javascript Security & Risk Analysis
wordpress.org/plugins/wp-add-custom-css-and-javascriptWP Add Custom Css and Javascript
Is WP Add Custom Css and Javascript Safe to Use in 2026?
Generally Safe
Score 85/100WP Add Custom Css and Javascript has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-add-custom-css-and-javascript" plugin v1.0.1 presents a mixed security picture. On the positive side, it demonstrates good practices by using prepared statements for its single SQL query and has no known CVEs or recorded vulnerability history, suggesting a generally stable and well-maintained codebase in terms of external threats. The absence of shortcodes, cron events, and REST API routes, along with the presence of capability checks on its AJAX handlers, limits the potential attack surface.
However, there are significant concerns regarding output escaping. The static analysis reveals that 100% of the four identified output paths are not properly escaped. This presents a considerable risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data, if processed and displayed without proper sanitization, could be leveraged to inject malicious scripts into the web page.
While the plugin has no recorded vulnerabilities, the lack of output escaping is a fundamental security weakness that could easily lead to exploitable issues. The presence of file operations without further context also warrants caution, though no specific risks were flagged in the taint analysis. The overall security posture is compromised by the unescaped output, despite a clean vulnerability history and a controlled attack surface.
Key Concerns
- Unescaped output detected
- Missing nonce checks on AJAX handlers
WP Add Custom Css and Javascript Security Vulnerabilities
WP Add Custom Css and Javascript Release Timeline
WP Add Custom Css and Javascript Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WP Add Custom Css and Javascript Attack Surface
AJAX Handlers 6
WordPress Hooks 5
Maintenance & Trust
WP Add Custom Css and Javascript Maintenance & Trust
Maintenance Signals
Community Trust
WP Add Custom Css and Javascript Alternatives
Simple Custom CSS and JS
custom-css-js
Easily add Custom CSS or JS to your website with an awesome editor.
Custom CSS
custom-css-editor
Add custom CSS, JS, PHP, tracking code. Very easy to use!
Live Custom CSS JS Code Editor
live-css-js-code-editor
Live Custom CSS JS Code Editor allows you to easily add custom CSS, JavaScript, Header, Footer Code to your site, straight from your WordPress Customi …
Custom JS
custom-js
Custom JS is easy to use. Custom JS WordPress plugin allows you to Custom JS fields in your theme - include js in head or footer.
ICustomizer
icustomizer
Personnalisation de votre administration et de votre site web
WP Add Custom Css and Javascript Developer Profile
1 plugin · 10 total installs
How We Detect WP Add Custom Css and Javascript
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/codemirror.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/mode/css.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/mode/javascript.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/addon/dialog/dialog.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/addon/edit/matchbrackets.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/addon/search/search.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/addon/search/searchcursor.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/addon/search/match-highlighter.js+7 more/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/codemirror.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/mode/css.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/mode/javascript.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/addon/dialog/dialog.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/addon/edit/matchbrackets.js/wp-content/plugins/wp-add-custom-css-and-javascript/codemirror/addon/search/search.js+5 morewp-add-custom-css-and-javascript/js/wp-add-custom-css-js.js?ver=wp-add-custom-css-and-javascript/css/wp-add-custom-css-js.css?ver=HTML / DOM Fingerprints
d3_custom_css_js_codemirrord3_custom_css_js_codemirror_mode_cssd3_custom_css_js_codemirror_mode_jsd3_custom_css_js_codemirror_dialogd3_custom_css_js_codemirror_matchbracketsd3_custom_css_js_codemirror_search+5 more