Get WordPress vulnerability alerts from the WPVulnerability Database API.
Prioritized issue groups from the latest Plugin Check scan
Maintainability
14
2 issue groups
Security
3
2 issue groups
I18n
1
1 issue group
Sample message
Function "determine_locale()" requires WordPress 5.0.0, but your plugin minimum supported version is WordPress 4.7.0.
Sample message
The plugin name includes a restricted term. Your chosen plugin name - "WPVulnerability" - contains the restricted term "wp" which cannot be used at all in your plugin name.
Sample message
$_SERVER['HTTP_ACCEPT'] not unslashed before sanitization. Use wp_unslash() or similar
Sample message
load_plugin_textdomain() has been discouraged since WordPress version 4.6. When your plugin is hosted on WordPress.org, you no longer need to manually include this function call for translations under your plugin slug. WordPress will automatically load the translations for you as needed.
Sample message
Detected usage of a non-sanitized input variable: $_POST['wpvulnerability-analyze']
Potential connections found in static code analysis.
Outbound calls
87
External assets
0
Incoming endpoints
2
No external asset domains detected.
No public endpoints detected.
wp_ajax
4 score snapshots
v5.1.6
91
Latest
v5.1.2
96
Score
| Scan | Score | Findings | Errors | Warnings | Plugin | Check |
|---|---|---|---|---|---|---|
| Latest | 91 | 18 | 11 | 7 | v5.1.6 | 2.1.0 |
| 96 | 5 | 0 | 5 | v5.1.2 | 2.0.0 |
Author, categories, issues, domains, and nearby plugins.