WP Job Manager ShortWidget Security & Risk Analysis

wordpress.org/plugins/wp-job-manager-shortwidget

Shortcode and Widget builder for WP Job Manager shortcodes

40 active installs v1.0.0 PHP + WP 3.8+ Updated Jul 15, 2014
buildershortcodeshortwidgettripflexwidget
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Job Manager ShortWidget Safe to Use in 2026?

Generally Safe

Score 85/100

WP Job Manager ShortWidget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11yr ago
Risk Assessment

The 'wp-job-manager-shortwidget' v1.0.0 plugin exhibits a generally positive security posture based on the provided static analysis, with no identified CVEs in its history. The absence of a significant attack surface, particularly with no unprotected AJAX handlers or REST API routes, is a strong indicator of good development practices. Furthermore, all SQL queries are prepared, and there are no external HTTP requests or file operations, all of which are commendable security measures. However, a significant concern arises from the presence of five instances of the `create_function`() function, which is deprecated and known to be a potential source of security vulnerabilities, especially when dealing with user-supplied input that is not rigorously sanitized. The low percentage (7%) of properly escaped output also suggests a potential risk of cross-site scripting (XSS) vulnerabilities if any of the unescaped output can be influenced by user input. While the plugin has no recorded vulnerabilities, the identified code signals, particularly the use of `create_function` and the low output escaping rate, warrant careful consideration and potential remediation to ensure a robust security profile.

Key Concerns

  • Use of deprecated and dangerous function create_function
  • Low percentage of properly escaped output
Vulnerabilities
None known

WP Job Manager ShortWidget Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

WP Job Manager ShortWidget Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

WP Job Manager ShortWidget Code Analysis

Dangerous Functions
5
Raw SQL Queries
0
1 prepared
Unescaped Output
99
8 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Dangerous Functions Found

create_functionadd_action( 'widgets_init', create_function( '', 'register_widget("Widget_job");' ) );includes\widget-job.php:308
create_functionadd_action( 'widgets_init', create_function( '', 'register_widget("Widget_jobs");' ) );includes\widget-jobs.php:322
create_functionadd_action( 'widgets_init', create_function( '', 'register_widget("Widget_job_field");' ) );includes\widget-job_field.php:308
create_functionadd_action( 'widgets_init', create_function( '', 'register_widget("Widget_job_summary");' ) );includes\widget-job_summary.php:308
create_functionadd_action( 'widgets_init', create_function( '', 'register_widget("Widget_submit_job_form");' ) );includes\widget-submit_job_form.php:273

SQL Query Safety

100% prepared1 total queries

Output Escaping

7% escaped107 total outputs
Attack Surface

WP Job Manager ShortWidget Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 24
actioninitclass-wp-job-manager-shortwidget.php:54
actionwpmu_new_blogclass-wp-job-manager-shortwidget.php:57
actionadmin_enqueue_scriptsclass-wp-job-manager-shortwidget.php:60
actionwp_footerclass-wp-job-manager-shortwidget.php:62
actionwpclass-wp-job-manager-shortwidget.php:66
actionmedia_buttonsclass-wp-job-manager-shortwidget.php:70
actionadmin_footerclass-wp-job-manager-shortwidget.php:71
actionwp_headclass-wp-job-manager-shortwidget.php:781
actionadmin_print_styles-widgets.phpincludes\widget-job.php:27
actionwp_enqueue_scriptsincludes\widget-job.php:30
actionwidgets_initincludes\widget-job.php:308
actionadmin_print_styles-widgets.phpincludes\widget-jobs.php:29
actionwp_enqueue_scriptsincludes\widget-jobs.php:32
actionwidgets_initincludes\widget-jobs.php:322
actionadmin_print_styles-widgets.phpincludes\widget-job_field.php:27
actionwp_enqueue_scriptsincludes\widget-job_field.php:30
actionwidgets_initincludes\widget-job_field.php:308
actionadmin_print_styles-widgets.phpincludes\widget-job_summary.php:27
actionwp_enqueue_scriptsincludes\widget-job_summary.php:30
actionwidgets_initincludes\widget-job_summary.php:308
actionadmin_print_styles-widgets.phpincludes\widget-submit_job_form.php:27
actionwp_enqueue_scriptsincludes\widget-submit_job_form.php:30
actionwidgets_initincludes\widget-submit_job_form.php:273
actionplugins_loadedplugincore.php:41
Maintenance & Trust

WP Job Manager ShortWidget Maintenance & Trust

Maintenance Signals

WordPress version tested3.9.40
Last updatedJul 15, 2014
PHP min version
Downloads5K

Community Trust

Rating100/100
Number of ratings2
Active installs40
Developer Profile

WP Job Manager ShortWidget Developer Profile

tripflex

9 plugins · 890 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Job Manager ShortWidget

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-job-manager-shortwidget/assets/js/shortcode-modal.js/wp-content/plugins/wp-job-manager-shortwidget/assets/js/panel.js/wp-content/plugins/wp-job-manager-shortwidget/assets/css/panel.css/wp-content/plugins/wp-job-manager-shortwidget/assets/css/simple-slider.css
Version Parameters
wp-job-manager-shortwidget/assets/js/shortcode-modal.js?ver=wp-job-manager-shortwidget/assets/js/panel.js?ver=wp-job-manager-shortwidget/assets/css/panel.css?ver=wp-job-manager-shortwidget/assets/css/simple-slider.css?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about WP Job Manager ShortWidget