
WPCode Content Ratio Security & Risk Analysis
wordpress.org/plugins/wpcode-content-ratioThis plugin extracts the text of all your pages and posts from HTML code and calculates the content ratio based on this information.
Is WPCode Content Ratio Safe to Use in 2026?
Use With Caution
Score 63/100WPCode Content Ratio has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "wpcode-content-ratio" v2.0 plugin exhibits a mixed security posture, with some positive aspects overshadowed by significant concerns. While the plugin boasts a zero attack surface in terms of AJAX handlers, REST API routes, shortcodes, and cron events, and all SQL queries utilize prepared statements, these strengths are undermined by critical findings in the taint analysis and poor output escaping practices. The presence of two high-severity taint flows with unsanitized paths indicates a strong possibility of vulnerabilities, likely related to how user-supplied data is processed. The vulnerability history, with a known medium severity Cross-Site Scripting (XSS) vulnerability that is currently unpatched and discovered recently, further reinforces these concerns. This pattern suggests a recurring issue with input sanitization or output encoding, potentially leaving the plugin susceptible to persistent XSS attacks.
Overall, while the plugin appears to avoid common entry points and secure database interactions, the taint analysis and historical vulnerability strongly suggest a lack of robust input validation and output escaping. The single external HTTP request without further context is also a point of minor concern. The plugin's security is compromised by its failure to properly handle potentially malicious input, leading to a significant risk of XSS vulnerabilities. This necessitates immediate attention to address the identified taint flows and the unpatched vulnerability.
Key Concerns
- Unpatched CVE exists
- High severity taint flows
- Poor output escaping
- No capability checks
- No nonce checks
WPCode Content Ratio Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WPCode Content Ratio <= 2.0 - Reflected Cross-Site Scripting
WPCode Content Ratio Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WPCode Content Ratio Attack Surface
WordPress Hooks 21
Maintenance & Trust
WPCode Content Ratio Maintenance & Trust
Maintenance Signals
Community Trust
WPCode Content Ratio Alternatives
Smart SEO
smart-seo
Smart SEO - WordPress Search Engine Optimization Tools
Vibe SEO Pack
vibe-seo-pack
Vibe SEO Pack is a simple powerful and easy to use SEO tool to optimize your website for search engines without having to edit a single line of code.
Accounting Records Copywriter
accounting-records-copywriter
Упрощение работы администратора с копиратером рерайтером на вашем блоге / Admin’s work simplification with copywriter rewriter for your blog
Template SEO Checker
template-seo-checker
This plugin allows you to check if current template your are using for your website is SEO friendly or not.
AutoBoostSEO Connector
autoboostseo-connector
Connect your WordPress site to AutoBoostSEO for bulk SEO optimization.
WPCode Content Ratio Developer Profile
2 plugins · 110 total installs
How We Detect WPCode Content Ratio
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpcode-content-ratio/media/css/wpcode-content-ratio.css/wp-content/plugins/wpcode-content-ratio/media/css/bootstrap.min.css/wp-content/plugins/wpcode-content-ratio/media/js/wpcode-content-ratio.src.js/wp-content/plugins/wpcode-content-ratio/media/js/wpcode-content-ratio.src.jswpcode-content-ratio/style.css?ver=wpcode-content-ratio.css?ver=bootstrap.min.css?ver=wpcode-content-ratio.src.js?ver=HTML / DOM Fingerprints
wrapsubsubsubPlugin Name: WPCode Content RatioDescription: This plugin allows you to check the content code ratio. Specially useful to know if your post is good for search engines.Version: 2.0Plugin URI: http://jonatanjumbert.com/blog/wordpress/wpcode-content-ratio/?utm_source=Wordpress&utm_medium=Plugin&utm_term=WPCode%20Content%20Ratio&utm_campaign=Wordpress%20plugins+16 morepage=wpcode-content-ratiopageview=setupclass="current"window.jQuery