
WPeMatico Polylang Security & Risk Analysis
wordpress.org/plugins/wpematico-polylangGives support to WPeMatico for auto publishing posts with Polylang Multilanguage plugin.
Is WPeMatico Polylang Safe to Use in 2026?
Generally Safe
Score 92/100WPeMatico Polylang has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of wpematico-polylang v1.1.1 reveals a seemingly strong security posture, with no identified dangerous functions, SQL queries using prepared statements, or external HTTP requests. The absence of identified taint flows with unsanitized paths, combined with zero known CVEs, further suggests a well-maintained and secure codebase. However, the analysis does highlight a concern regarding output escaping, where only 50% of identified outputs are properly escaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is ever processed and displayed without adequate sanitization, especially given the lack of explicit nonce checks and limited capability checks. While the vulnerability history is clean, the existing code signals warrant attention to ensure continued security.
Key Concerns
- Half of outputs are not properly escaped
- No nonce checks for entry points
WPeMatico Polylang Security Vulnerabilities
WPeMatico Polylang Code Analysis
Output Escaping
WPeMatico Polylang Attack Surface
WordPress Hooks 12
Maintenance & Trust
WPeMatico Polylang Maintenance & Trust
Maintenance Signals
Community Trust
WPeMatico Polylang Alternatives
RSS Retriever Lite
rss-retriever-lite
Lightweight feed importer for WordPress with support for RSS, Atom, Google Product Feed, Yandex feeds, YouTube and more.
WPeMatico RSS Feed Reader
wpematico-rss-feed-reader
Add On for WPeMatico plugin. Adds a feature to print pre-formatted feeds contents directly on your pages, posts, widgets, etc.
WPeMatico Custom Hooks
wpematico-custom-hooks
Addon for WPeMatico. Allows you to execute PHP actions and filters right from your WordPress admin panel in order to create custom behaviors in your c …
Dash Rewriter
dash-rewriter
Rewrite your article the moment you publish. Very useful for websites that are self-updating or autoblogs.
Connect Polylang for Elementor
connect-polylang-elementor
Connect Polylang with Elementor: translated templates, language switcher widget, language visibility conditions and more
WPeMatico Polylang Developer Profile
11 plugins · 13K total installs
How We Detect WPeMatico Polylang
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpematico-polylang/includes/css/wpematico_polylang_admin.css/wp-content/plugins/wpematico-polylang/includes/js/wpematico_polylang_admin.js/wp-content/plugins/wpematico-polylang/includes/js/wpematico_polylang_admin.jsHTML / DOM Fingerprints
dashicons-translation