
TypeSquare Webfonts for エックスサーバー Security & Risk Analysis
wordpress.org/plugins/xserver-typesquare-webfontsエックスサーバー株式会社が提供する各レンタルサーバーサービスでWebフォントを利用できるプラグインです。
Is TypeSquare Webfonts for エックスサーバー Safe to Use in 2026?
Generally Safe
Score 99/100TypeSquare Webfonts for エックスサーバー has a strong security track record. Known vulnerabilities have been patched promptly.
The xserver-typesquare-webfonts plugin version 2.0.9 exhibits a generally good security posture, with a significant number of code signals indicating adherence to best practices. The absence of any unprotected AJAX handlers, REST API routes, shortcodes, or cron events, combined with 100% of SQL queries using prepared statements and a high percentage of properly escaped output, are positive indicators. The presence of nonce and capability checks further strengthens its defenses. However, the taint analysis reveals a concerning pattern: three out of four analyzed flows have unsanitized paths. While no critical or high severity issues were flagged in the taint analysis for this version, this indicates a potential for path traversal vulnerabilities or unintended file access if these flows are not handled with extreme care. The plugin's vulnerability history, which includes one medium severity CVE related to missing authorization in the past, suggests a historical tendency towards authorization weaknesses. Although there are no currently unpatched CVEs, this pattern combined with the taint analysis findings warrants careful monitoring and thorough code review to ensure these unsanitized paths do not become exploitable.
Key Concerns
- Unsanitized paths in taint analysis
- Medium severity CVE in vulnerability history
- Less than 100% output escaping
TypeSquare Webfonts for エックスサーバー Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
TypeSquare Webfonts <= 2.0.7 - Missing Authorization via typesquare_admin_init()
TypeSquare Webfonts for エックスサーバー Code Analysis
Output Escaping
Data Flow Analysis
TypeSquare Webfonts for エックスサーバー Attack Surface
WordPress Hooks 12
Maintenance & Trust
TypeSquare Webfonts for エックスサーバー Maintenance & Trust
Maintenance Signals
Community Trust
TypeSquare Webfonts for エックスサーバー Alternatives
Easy Google Fonts
easy-google-fonts
Adds google fonts to any theme without coding and integrates with the WordPress Customizer automatically for a realtime live preview.
TypeSquare Webfonts for ConoHa
ts-webfonts-for-conoha
ConoHa WINGで株式会社モリサワが提供するWebフォントサービス「TypeSquare」を利用できるプラグインです。
Icons Font Loader – Load Web Fonts and Icon Libraries
icons-font-loader
Load essential Flaticon webfonts into your WordPress site. Use icons anywhere on your site with simple integration, ensuring fast performance.
Dehkadeh Fonts
dehkadeh-fonts
This plugin help you to set persian fonts and size for different parts of the theme via wordpress customizer as easily. Also you can set the custom fo …
Google Web Fonts Customizer (GWFC)
google-web-fonts-customizer-gwfc
This plugin integrates WordPress Customizer with Google Web Fonts, to add and use google fonts to any themes, no coding needed.
TypeSquare Webfonts for エックスサーバー Developer Profile
2 plugins · 110K total installs
How We Detect TypeSquare Webfonts for エックスサーバー
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/xserver-typesquare-webfonts/js/xserverv3.js//webfonts.xserver.jp/js/xserverv3.jsxserverv3.js?ver=HTML / DOM Fingerprints
data-typesquare-font-themeTypeSquare_ST