
WP Report Error Security & Risk Analysis
wordpress.org/plugins/wp-report-errorPlugin that inserts "WP report error" link into page.
Is WP Report Error Safe to Use in 2026?
Generally Safe
Score 85/100WP Report Error has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-report-error plugin v1.6 presents a mixed security posture. On the positive side, the plugin demonstrates a commitment to secure coding practices by avoiding dangerous functions, performing all SQL queries using prepared statements, and having no recorded vulnerabilities or CVEs. This suggests a generally stable and well-maintained codebase.
However, the static analysis reveals significant concerns, primarily related to output escaping. With 35 outputs and 0% properly escaped, this indicates a high risk of Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data displayed on the front-end or back-end without proper sanitization can be exploited by attackers. Furthermore, the absence of nonce checks and capability checks on the single shortcode entry point, while seemingly mitigated by the low attack surface, still leaves room for potential unauthorized execution if the shortcode's functionality were to process user input in a sensitive manner.
Overall, while the lack of known vulnerabilities and secure SQL handling are strong points, the pervasive lack of output escaping is a critical weakness that significantly elevates the risk profile. The plugin's history of no vulnerabilities might be attributed to its limited functionality or perhaps a lack of targeted analysis in the past, but the current static analysis flags a clear and present danger.
Key Concerns
- 0% of outputs properly escaped
- No nonce checks on entry points
- No capability checks on entry points
WP Report Error Security Vulnerabilities
WP Report Error Code Analysis
Output Escaping
WP Report Error Attack Surface
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
WP Report Error Maintenance & Trust
Maintenance Signals
Community Trust
WP Report Error Alternatives
Success Fail Popup Message For Contact Form 7
success-fail-popup-message-for-contact-form-7
Success Fail Popup Message For Contact Form 7 to make the best way to set up poup on success and failed messages so a visitor will be attracted to tha …
Validation Error Message – CF7
validation-error-message-cf7
This plugin help you to add custom validation error message for each tag in form for the Contact form 7.
Contact Form 7
contact-form-7
Just another contact form plugin. Simple but flexible.
Akismet Anti-spam: Spam Protection
akismet
The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam solution for WordPress and WooCommerce.
WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More
wpforms-lite
The best WordPress contact form plugin. Drag & Drop form builder to create beautiful contact forms, payment forms, & other custom forms.
WP Report Error Developer Profile
5 plugins · 240 total installs
How We Detect WP Report Error
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-report-error/js/report_errors_script.js/wp-content/plugins/wp-report-error/report_page_errors.css/wp-content/plugins/wp-report-error/images/close.png/wp-content/plugins/wp-report-error/js/report_errors_script.jsHTML / DOM Fingerprints
wprperrorsformwrphiddenwrphidwrpheadwrpresponsewrperrorwpreportformwprpsponsors+5 more<!-- Wordpress Report Page Errors -->id="wrpurl"id="wrpemail"id="wrpinfo"id="wrpanswer"name="wrpsubmitlink"id="wrpcloseform"+13 morewprp_limitText[WPRError]