WP Job Manager Filter Widget Security & Risk Analysis

wordpress.org/plugins/wp-job-manager-filter-widget

WP Job Manager Filter widget allows job filter through Keyword, Location, Featured, Filled, Job Type and Category.

300 active installs v3.0 PHP + WP 3.6+ Updated Oct 31, 2024
filter-jobssidebar-jobswp-job-manager-filterwp-job-manager-widgetwp-job-manager
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Job Manager Filter Widget Safe to Use in 2026?

Generally Safe

Score 92/100

WP Job Manager Filter Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of wp-job-manager-filter-widget v3.0 reveals a plugin with a very limited attack surface, reporting zero AJAX handlers, REST API routes, shortcodes, or cron events. This is a strong positive indicator for security. The absence of dangerous functions and file operations further contributes to a good security posture. The use of prepared statements for all SQL queries is excellent practice, mitigating direct SQL injection risks. However, a significant concern arises from the low percentage of properly escaped output (16%). This indicates that user-supplied data, or data processed by the plugin, might be exposed in an unescaped manner, potentially leading to Cross-Site Scripting (XSS) vulnerabilities when rendered in the browser. The lack of nonce checks and capability checks on potential entry points, coupled with the limited attack surface, suggests that if any vulnerabilities exist, they might be exploitable without proper authentication or authorization, assuming an attack vector is discovered.

Key Concerns

  • Low output escaping (16%)
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

WP Job Manager Filter Widget Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Job Manager Filter Widget Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
54
10 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

16% escaped64 total outputs
Attack Surface

WP Job Manager Filter Widget Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionadmin_noticeswpjm-filter-widget.php:55
actionwidgets_initwpjm-filter-widget.php:349
Maintenance & Trust

WP Job Manager Filter Widget Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedOct 31, 2024
PHP min version
Downloads12K

Community Trust

Rating60/100
Number of ratings2
Active installs300
Developer Profile

WP Job Manager Filter Widget Developer Profile

Tushar Kapdi

4 plugins · 610 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Job Manager Filter Widget

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-job-manager-filter-widget/css/style.css/wp-content/plugins/wp-job-manager-filter-widget/js/script.js
Script Paths
/wp-content/plugins/wp-job-manager-filter-widget/js/script.js
Version Parameters
wp-job-manager-filter-widget/css/style.css?ver=wp-job-manager-filter-widget/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
wpjmfilter-widgetjob_listingcompany_logopositioncompanylocationmetajob-type
Data Attributes
data-widget-id
FAQ

Frequently Asked Questions about WP Job Manager Filter Widget