WP-Memory-Usage Security & Risk Analysis

wordpress.org/plugins/wp-memory-usage

Show up the PHP version, memory limit and current memory usage in the dashboard and admin footer. Optional monitor threshold and alert via email.

10K active installs v2.0.0 PHP 7.4+ WP 5.3+ Updated Mar 4, 2026
adminmemoryphpserverusage
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP-Memory-Usage Safe to Use in 2026?

Generally Safe

Score 100/100

WP-Memory-Usage has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "wp-memory-usage" plugin v2.1.0 demonstrates a generally strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface, with no entry points found. Furthermore, the analysis indicates responsible coding practices, such as 100% of SQL queries using prepared statements, a good number of nonce and capability checks, and no external HTTP requests. This suggests a developer focused on secure development principles.

However, a notable concern is the significant percentage of improperly escaped outputs (34% of 335 total outputs). While no critical or high-severity taint flows were identified, unescaped output can still lead to cross-site scripting (XSS) vulnerabilities, especially if user-controlled data is involved in these outputs. The plugin's history of zero known vulnerabilities is a positive indicator of past security diligence, but it's crucial to remember that past security does not guarantee future immunity.

In conclusion, "wp-memory-usage" v2.1.0 appears to be a relatively secure plugin with a minimal attack surface and good fundamental security practices. The primary area for improvement is addressing the unescaped output instances to mitigate potential XSS risks. The lack of past vulnerabilities is reassuring, but continuous vigilance and code review, especially concerning output handling, remain important.

Key Concerns

  • Significant percentage of unescaped output
Vulnerabilities
None known

WP-Memory-Usage Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

WP-Memory-Usage Release Timeline

v2.2.1
v2.2.0
v2.1.1
v2.1.0
v2.0.2
v2.0.1
v2.0.0Current
v1.2.11
v1.2.10
v1.2.9
v1.2.8
v1.2.7
v1.2.6
v1.2.5
v1.2.4
v1.2.3
Code Analysis
Analyzed Mar 16, 2026

WP-Memory-Usage Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
113
222 escaped
Nonce Checks
4
Capability Checks
3
File Operations
15
External Requests
0
Bundled Libraries
0

Output Escaping

66% escaped335 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
render_settings_page (includes\threshold-alerts.php:985)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

WP-Memory-Usage Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
actionadmin_menuincludes\threshold-alerts.php:27
actionadmin_initincludes\threshold-alerts.php:28
actionadmin_bar_menuincludes\threshold-alerts.php:29
actionplugins_loadedincludes\threshold-alerts.php:34
filtercron_schedulesincludes\threshold-alerts.php:38
actionwpmu_cleanup_hookincludes\threshold-alerts.php:39
actionplugins_loadedwp-memory-usage.php:41
actioninitwp-memory-usage.php:57
actionwp_dashboard_setupwp-memory-usage.php:58
actionwp_network_dashboard_setupwp-memory-usage.php:60
filteradmin_footer_textwp-memory-usage.php:62
actionplugins_loadedwp-memory-usage.php:292
Maintenance & Trust

WP-Memory-Usage Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 4, 2026
PHP min version7.4
Downloads293K

Community Trust

Rating90/100
Number of ratings21
Active installs10K
Developer Profile

WP-Memory-Usage Developer Profile

berkux

5 plugins · 17K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
183 days
View full developer profile
Detection Fingerprints

How We Detect WP-Memory-Usage

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-memory-usage/style.css/wp-content/plugins/wp-memory-usage/script.js
Script Paths
/wp-content/plugins/wp-memory-usage/script.js
Version Parameters
wp-memory-usage/style.css?ver=wp-memory-usage/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
progressbar
HTML Comments
<!-- Neuester Digest -->
Data Attributes
data-colordata-percentwidthdata-percentdata-percent_pos
JS Globals
window.memusage_var
FAQ

Frequently Asked Questions about WP-Memory-Usage