
WP-Text-Sizer Security & Risk Analysis
wordpress.org/plugins/wp-text-sizerProvide visitors to your site the the option of increasing or decreasing the size of text onclick of image or text links using JavaScript.
Is WP-Text-Sizer Safe to Use in 2026?
Generally Safe
Score 85/100WP-Text-Sizer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "wp-text-sizer" v1.1 exhibits a seemingly strong security posture based on the provided static analysis. It has a remarkably small attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, the absence of dangerous functions, file operations, and external HTTP requests is positive. The use of prepared statements for all SQL queries is a significant strength. However, a critical concern arises from the output escaping. With 3 total outputs and 0% properly escaped, this indicates a high likelihood of cross-site scripting (XSS) vulnerabilities. The lack of nonce checks and capability checks also means that even if these outputs were rendered through an entry point, they would likely be vulnerable to exploitation.
The plugin's vulnerability history is clean, with no recorded CVEs. This is a positive indicator, suggesting that the developers have either been diligent in avoiding security flaws or that the plugin's limited functionality has not attracted significant attention from attackers. However, the significant finding of unescaped output, coupled with the lack of protective measures like nonce and capability checks, suggests that this clean history might be more a matter of luck or limited exposure than robust security practices. The overall conclusion is that while the plugin's architecture is lean and avoids many common attack vectors, the critical failure in output escaping presents a significant and immediate risk.
Key Concerns
- Output escaping is not properly implemented
- Missing nonce checks
- Missing capability checks
WP-Text-Sizer Security Vulnerabilities
WP-Text-Sizer Release Timeline
WP-Text-Sizer Code Analysis
Output Escaping
WP-Text-Sizer Attack Surface
WordPress Hooks 1
Maintenance & Trust
WP-Text-Sizer Maintenance & Trust
Maintenance Signals
Community Trust
WP-Text-Sizer Alternatives
Zeno Font Resizer
zeno-font-resizer
Zeno Font Resizer allows the visitors of your website to change the font size of your text.
Accessibility Font Resizer
accessibility-font-resizer
Make accessibility better for your visitors by enabling them to resize the text on your website and make it bigger.
Simple Font Resizer
simple-font-resizer
Just Install and click to resize your font plugins. Simple but flexible.
wpTextResize
wptextresizecontrols
wpTextResize is an easy to use way to have Increase, Decrease, reset font size controls for body text on a WordPress site.
Font Resizer with A+, A, A-
font-resizer-matching-theme-style
Increase or Decrease the font size in WordPress website with "A+", "A", "A-" button. Check the Live Preview first, then Install.
WP-Text-Sizer Developer Profile
2 plugins · 50 total installs
How We Detect WP-Text-Sizer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-text-sizer/img/large.jpg/wp-content/plugins/wp-text-sizer/img/small.jpg/wp-content/plugins/wp-text-sizer/textsizer.jswp-text-sizer/textsizer.js?ver=HTML / DOM Fingerprints
WP Text Sizer HTML BeginsWP Text Sizer HTML Endstsjavascript:ts('content', -1)javascript:ts('content', 1)