Google WordPress Plugins with Most Issues
103 indexed plugins
Plugins
103
Active Installs
8m+
Average Score
56
Audited
103
Most Issues
| Rank | Plugin | Score | Errors | Warnings | Installs | Added | Updated | Top Issue |
|---|---|---|---|---|---|---|---|---|
| #1 | miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) | 24 | 3,702 | 902 | 10k+ | wp function not compatible with requires wp | ||
| #2 | Nextend Social Login and Register | 27 | 1,668 | 243 | 200k+ | Output is not escaped | ||
| #3 | Embedder for Google Reviews | 28 | 529 | 1,323 | 6k+ | Non-prefixed global variable | ||
| #4 | Site Kit by Google – Analytics, Search Console, AdSense, Speed | 25 | 1,304 | 242 | 5m+ | Missing direct file access protection | ||
| #5 | SEOKEY – Powerful SEO plugin with Expert Insights and SEO Audit | 24 | 605 | 928 | 1k+ | Non-prefixed global variable | ||
| #6 | SEO合集(支持百度/Google/Bing/头条推送) | 31 | 13 | 1,407 | 800 | Direct Query | ||
| #7 | FV Simpler SEO | 24 | 766 | 308 | 2k+ | Text Domain Mismatch | ||
| #8 | Sitemap by BestWebSoft – WordPress XML Site Map Page Generator Plugin | 25 | 608 | 207 | 20k+ | Text Domain Mismatch | ||
| #9 | SEO Ultimate | 24 | 437 | 269 | 10k+ | Output is not escaped | ||
| #10 | HT Easy GA4 – Google Analytics WordPress Plugin | 31 | 475 | 93 | 6k+ | Text Domain Mismatch | ||
| #11 | Gianism | 29 | 395 | 154 | 700 | Text Domain Mismatch | ||
| #12 | Rich Showcase for Google Reviews | 33 | 230 | 227 | 100k+ | Output is not escaped | ||
| #13 | Google for WooCommerce | 37 | 328 | 121 | 800k+ | Exception output is not escaped | ||
| #14 | Smart Keywords Tool – 智能关键词插件 | 31 | 361 | 33 | 600 | Non Singular String Literal Domain | ||
| #15 | XML for Google Merchant Center | 29 | 52 | 312 | 3k+ | Non-prefixed global variable | ||
| #16 | Widgets for Google Reviews | 95 | 344 | 900k+ | Non-prefixed global variable | |||
| #17 | SEO Friendly Images | 39 | 292 | 20 | 20k+ | Output is not escaped | ||
| #18 | Reviews Block for Google | 35 | 244 | 35 | 1k+ | Missing Arg Domain | ||
| #19 | OMGF | GDPR/DSGVO Compliant, Faster Google Fonts. Easy. | 31 | 213 | 62 | 300k+ | Output is not escaped | ||
| #20 | Private Google Calendars | 40 | 227 | 37 | 1k+ | Output is not escaped | ||
| #21 | WP Geo | 35 | 180 | 84 | 900 | Output is not escaped | ||
| #22 | Material Design for WordPress | 60 | 51 | 207 | 800 | Non-prefixed global variable | ||
| #23 | WP Google Analytics Events – No-Code Custom Event Tracking for Google Analytics | 29 | 118 | 128 | 5k+ | Output is not escaped | ||
| #24 | Maps for WP | 39 | 169 | 73 | 400 | Output is not escaped | ||
| #25 | Login for Google Apps | 27 | 139 | 85 | 10k+ | Exception output is not escaped | ||
| #26 | Google SEO Pressor for Rich snippets | 36 | 51 | 160 | 400 | Missing nonce verification | ||
| #27 | Mass Ping Tool for SEO – WordPress ping list to get indexed faster on Google, Yandex, … | 34 | 78 | 102 | 500 | Output is not escaped | ||
| #28 | CAOS | Host Google Analytics Locally | 38 | 124 | 44 | 10k+ | Output is not escaped | ||
| #29 | CF7 Spreadsheets | 35 | 100 | 62 | 400 | Text Domain Mismatch | ||
| #30 | AdFlow – Easy Google AdSense Integration | 40 | 150 | 9 | 3k+ | Unsafe printing function | ||
| #31 | APG Google Video Sitemap Feed | 34 | 96 | 45 | 800 | Output is not escaped | ||
| #32 | Meow Analytics (Google Analytics) | 34 | 80 | 54 | 500 | Output is not escaped | ||
| #33 | Really Simple Google Tag Manager (GTM) | 35 | 115 | 15 | 4k+ | Text Domain Mismatch | ||
| #34 | XML Sitemaps | 33 | 65 | 62 | 2k+ | Output is not escaped | ||
| #35 | Xml Sitemap Generator | 34 | 72 | 47 | 400 | SQL query is not prepared | ||
| #36 | Social Media Widget | 53 | 90 | 21 | 30k+ | Text Domain Mismatch | ||
| #37 | ACF: Google Font Selector | 39 | 57 | 45 | 3k+ | Output is not escaped | ||
| #38 | Universal Google Adsense and Ads manager | 39 | 70 | 31 | 2k+ | Unsafe printing function | ||
| #39 | Simple Googlebot Visit | 42 | 32 | 67 | 1k+ | Non Singular String Literal Domain | ||
| #40 | Google Calendar Widget | 39 | 82 | 11 | 700 | Output is not escaped | ||
| #41 | Ultimate Noindex Nofollow Tool II | 40 | 38 | 51 | 3k+ | Input is not validated | ||
| #42 | Ad Widget for WordPress | 35 | 68 | 14 | 2k+ | Output is not escaped | ||
| #43 | GA Google Analytics – Connect Google Analytics to WordPress | 42 | 46 | 30 | 400k+ | Output is not escaped | ||
| #44 | Web Stories | 84 | 12 | 63 | 60k+ | Non-prefixed global variable | ||
| #45 | ACF: Advanced Taxonomy Selector | 41 | 56 | 15 | 1k+ | Output is not escaped | ||
| #46 | Snazzy Maps | 43 | 9 | 62 | 30k+ | Request data is not unslashed | ||
| #47 | Bot Block – Stop Spam Referrals in Google Analytics | 38 | 28 | 42 | 600 | Output is not escaped | ||
| #48 | APG Google Image Sitemap Feed | 57 | 36 | 33 | 900 | Non-prefixed global variable | ||
| #49 | Login No Captcha reCAPTCHA | 42 | 45 | 24 | 60k+ | Unsafe printing function | ||
| #50 | Analytics Germanized for Google Analytics (GDPR / DSGVO) | 40 | 49 | 14 | 8k+ | Output is not escaped |