Code WordPress Plugins That Need Review

36 indexed plugins

Plugins

36

Active Installs

4m+

Average Score

63

Audited

36

RankPluginScoreErrorsWarningsInstallsAddedUpdatedTop Issue
#1CSS & JavaScript Toolbox2515561710k+Non-prefixed class
#2Foxtool All-in-One: Contact chat button, Custom login, Media optimize images271,6293607k+Unsafe printing function
#3Code Engine – PHP Snippets, AI Functions & Automation for WordPress28124101700Non Singular String Literal Domain
#4Urvanov Syntax Highlighter30221873k+Output is not escaped
#5Pastacode337766400Non-prefixed global variable
#6Code Block Pro – Beautiful Syntax Highlighting357410k+badly named files
#7Code Prettify35731k+wp function not compatible with requires wp
#8Highlighting Code Block3530310k+Output is not escaped
#9WP-Markdown353139400Output is not escaped
#10Code Snippets36342031m+Nonce verification recommended
#11WP Coder – Insert & Manage Code Snippets365328010k+Nonce verification recommended
#12Shortcoder — Create Shortcodes for Anything372570100k+Non-prefixed global variable
#13Scripts n Styles391509230k+Output is not escaped
#14Prismatic4261292k+Output is not escaped
#15Code Widget4460334k+Text Domain Mismatch
#16SyntaxHighlighter Evolved45334620k+Not In Footer
#17📷 Simple QR Code Generator Widget502114400Output is not escaped
#18CodeColorer64652661k+Non-prefixed global variable
#19Code Snippet DM74212500Output is not escaped
#20Advanced CSS Editor762565k+Output is not escaped
#21AMS Google Webmaster Tools76103400Output is not escaped
#22Code Block Syntax Highlighter for Elementor783443600Non Singular String Literal Domain
#23CodePen Embed Block8283600Text Domain Mismatch
#24Head & Footer Code82115100k+Non-prefixed constant
#25Code Click to Copy83129700Non-prefixed function
#26Greenshift Smart Code AI86991k+Request data is not unslashed
#27Nav Menu Manager88917800Request data is not unslashed
#28Simple Custom CSS Plugin88175100k+wp function not compatible with requires wp
#29WPCode – Insert Headers and Footers + Custom Code Snippets – WordPress Code Manager8921303m+wp function not compatible with requires wp
#30Validated9173600Missing direct file access protection
#31Add Code To Head92283k+Non-prefixed global variable
#32WebberZone Snippetz – Header, Body and Footer manager961532k+Dynamic hook name
#33Preserve Code Formatting9911400outdated tested upto header
#34Syntax-highlighting Code Block (with Server-side Rendering)99111k+Missing direct file access protection
#35Advance Custom HTML – Show Live Code, Share Snippets, Embed Code, and Style Them Your Way.100110k+mismatched plugin name
#36Code Embed100010k+No open findings