
WP Amara Shortcode Security & Risk Analysis
wordpress.org/plugins/wp-amara-shortcodeA simple wordpress plugin to enable Amara.org shortcode
Is WP Amara Shortcode Safe to Use in 2026?
Generally Safe
Score 100/100WP Amara Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-amara-shortcode plugin version 1.2 exhibits a strong security posture based on the provided static analysis. The code demonstrates adherence to secure coding practices, with no identified dangerous functions, all SQL queries using prepared statements, and all output properly escaped. Furthermore, the absence of file operations and external HTTP requests minimizes potential attack vectors. The plugin also has a clean vulnerability history, with no known CVEs recorded, which is a positive indicator of its security reliability. The static analysis reveals a minimal attack surface consisting of a single shortcode, and importantly, no AJAX handlers or REST API routes are exposed without proper authentication checks, significantly reducing the risk of unauthorized access or manipulation. The lack of any identified taint flows with unsanitized paths further reinforces the perception of a well-secured plugin. However, the absence of nonce checks and capability checks on its sole entry point (the shortcode) presents a potential, albeit likely low, risk of CSRF or other forms of unauthorized execution if the shortcode itself performs sensitive actions that are not inherently protected by WordPress's user role management. This is the primary area of concern in an otherwise robust security profile.
Key Concerns
- Missing nonce check on shortcode
- Missing capability check on shortcode
WP Amara Shortcode Security Vulnerabilities
WP Amara Shortcode Code Analysis
WP Amara Shortcode Attack Surface
Shortcodes 1
Maintenance & Trust
WP Amara Shortcode Maintenance & Trust
Maintenance Signals
Community Trust
WP Amara Shortcode Alternatives
JW Player for WordPress
jw-player-7-for-wp
JW Player for WordPress enables you to publish videos on your WordPress posts and pages using the most popular video player on the web.
Wubtitle
wubtitle
Wubtitle is a plugin that generates subtitles and transcript of uploaded videos in media library, Youtube and Vimeo videos.
XML Sitemap Generator for Google
google-sitemap-generator
Generate multiple types of sitemaps to improve SEO and get your website indexed quickly.
Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider
ml-slider
Slider, gallery, carousel plugin for WordPress. Build your image slider, video slider, post slider, YouTube slider, or WooCommerce product slider.
Prime Slider – Addons for Elementor
bdthemes-prime-slider-lite
Create responsive sliders using Elementor for hero sections, posts, logos, images, products, testimonials, and more.
WP Amara Shortcode Developer Profile
3 plugins · 80 total installs
How We Detect WP Amara Shortcode
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-amara-shortcode/embed.jsHTML / DOM Fingerprints
<script type="text/javascript" src="http://s3.www.universalsubtitles.org/embed.js">