
WP Typograph Lite Security & Risk Analysis
wordpress.org/plugins/wp-russian-typographRussian typography for Wordpress. Lite version.
Is WP Typograph Lite Safe to Use in 2026?
Generally Safe
Score 85/100WP Typograph Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'wp-russian-typograph' plugin version 2.3.5 exhibits a strong security posture from a static analysis perspective, with no identified entry points in AJAX handlers, REST API routes, shortcodes, or cron events. All SQL queries utilize prepared statements, and output is consistently escaped, indicating adherence to secure coding practices in these areas. The absence of file operations and external HTTP requests further reduces the potential attack surface. However, the presence of two dangerous functions, 'preg_replace(/e)' and 'create_function', represents a significant concern. These functions are known to be highly susceptible to code injection vulnerabilities if user-supplied input is not rigorously sanitized before being passed to them. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive indicator. Despite the lack of past vulnerabilities, the potential for exploitation due to the dangerous functions warrants careful consideration.
Key Concerns
- Use of 'preg_replace' with /e modifier
- Use of 'create_function'
- Lack of nonce checks
- Lack of capability checks
WP Typograph Lite Security Vulnerabilities
WP Typograph Lite Code Analysis
Dangerous Functions Found
WP Typograph Lite Attack Surface
WordPress Hooks 14
Maintenance & Trust
WP Typograph Lite Maintenance & Trust
Maintenance Signals
Community Trust
WP Typograph Lite Alternatives
WP Typograph Full
wp-typograph-full
Russian typography for Wordpress. Full version with settings.
Allow Comments to Old Posts
allowcomments
Allow comments to posts with custom field "allow_comments" even if option 'close comments to old posts' is on.
Remove Double Space
remove-double-space
Remove duplicate whitespace in between sentences or elsewhere within posts. Useful if multiple contributors use different styles for sentence spacing.
По български
bgstyle
Помага за по-доброто оформление за публикации на български език
Post Typographer
post-typographer
Adds non-breaking spaces, `` tags, common spaces, tags and dashes where needed. Works with English texts only.
WP Typograph Lite Developer Profile
6 plugins · 8K total installs
How We Detect WP Typograph Lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-russian-typograph/js/typo.js/wp-content/plugins/wp-russian-typograph/css/typo.css/wp-content/plugins/wp-russian-typograph/js/typo.jswp-russian-typograph/js/typo.js?ver=wp-russian-typograph/css/typo.css?ver=HTML / DOM Fingerprints
<!--
* THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
* "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
* LIMITED TO, THE IMPLIEIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
* A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR
* CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL,
* EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO,
* PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR
* PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
* LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING
* NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
* SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
--><!--
* ИНТЕРФЕЙС ПЛАГИНА
*
*
--><!--
* ФОРМАТИРУЕМ ЗАГОЛОВКИ
*
*
--><!--
* Основан на идее "Типографа" от Оранского Максима и Макарова Александра
* http://rmcreative.ru/article/programming/typograph/
* ------------------------------------------------------------
* использует скрипт Кавычкер Дмитрия Смирнова
* http://spectator.ru/download
* ------------------------------------------------------------
* а также Format Control от Владимира Колесникова
* http://blog.sjinks.org.ua/wordpress/patches/224-formatcontrol-plugin-to-solve-formatting-bugs-in-wordpress/
-->+41 morewindow.typoIsNBSP