Content WordPress Plugins with Most Issues

33 indexed plugins

Plugins

33

Active Installs

1m+

Average Score

69

Audited

33

RankPluginScoreErrorsWarningsInstallsAddedUpdatedTop Issue
#1EnvoThemes Demo Import312211403k+Output is not escaped
#2Fable Extra32792824k+Non-prefixed global variable
#3SKT Themes Demo Import492181044k+Text Domain Mismatch
#4Everest Toolkit291451411k+Missing Translators Comment
#5GetAutoSEO AI Tool47102441k+Direct Query
#6Rara One Click Demo Import361229820k+Missing Translators Comment
#7Theme Demo Import50101955k+Non-prefixed hook name
#8RSS Image Feed37147162k+Output is not escaped
#9WP Content Copy Protection with Color Design3896615k+Non Singular String Literal Domain
#10Advanced Excerpt41694370k+Unsafe printing function
#11One Click Demo Import3822841m+Non-prefixed global variable
#12Themebeez Toolkit9126788k+Non-prefixed class
#13Product Categories/Tags Bottom Description for WooCommerce4760233k+Text Domain Mismatch
#14Special Text Boxes3739422k+Direct Query
#15Search Insights – Privacy-Friendly Search Analytics827503k+Non-prefixed global variable
#16TextBuilder5620344k+Missing Arg Domain
#17WP Subtitle8173310k+Non-prefixed hook name
#18Add Link to Copied Text763361k+Text Domain Mismatch
#19Starter Templates by Gradient Themes832773k+Text Domain Mismatch
#20Surfer – WordPress Plugin971256k+Direct Query
#21Root Relative URLs729106k+Input is not sanitized
#22Soro – SEO Autopilot & AI Content Writer834109k+Input is not sanitized
#23Loops & Logic811132k+Missing direct file access protection
#24WP Protect Content85771k+Output is not escaped
#25WP-ShowHide966510k+trademarked term
#26Koala AI8991k+Nonce verification recommended
#27Limit Revisions91711k+Missing Arg Domain
#28Relative URL97433k+wp function not compatible with requires wp
#29Catch Themes Demo Import96155k+Non-prefixed hook name
#30TutorMate983210k+Missing Translators Comment
#31Hide This98313k+Missing direct file access protection
#32AIKTP99113k+Mixed line endings
#33JSM Non-Breaking Space (nbsp) for French Content10021k+Discouraged text-domain loading