Shortcode WordPress Plugins That Need Review
148 indexed plugins
Plugins
148
Active Installs
1m+
Average Score
68
Audited
148
Needs Review
| Rank | Plugin | Score | Errors | Warnings | Installs | Added | Updated | Top Issue |
|---|---|---|---|---|---|---|---|---|
| #51 | Powie's WHOIS Domain Check | 41 | 38 | 11 | 500 | Unsafe printing function | ||
| #52 | TechGasp Music Master | 41 | 143 | 4 | 500 | Output is not escaped | ||
| #53 | Etsy Shop | 42 | 58 | 21 | 3k+ | Unsafe printing function | ||
| #54 | Reusable Blocks Extended | 42 | 38 | 15 | 20k+ | Output is not escaped | ||
| #55 | Enhanced AJAX Add to Cart for WooCommerce | 46 | 90 | 78 | 700 | Missing Arg Domain | ||
| #56 | Stars Rating | 46 | 13 | 34 | 1k+ | Missing nonce verification | ||
| #57 | Do Shortcodes for Rank Math SEO | 47 | 117 | 3 | 1k+ | Output is not escaped | ||
| #58 | Disable Author Pages | 48 | 23 | 5 | 6k+ | Unsafe printing function | ||
| #59 | AffiliateWP – Leaderboard | 49 | 68 | 13 | 1k+ | Output is not escaped | ||
| #60 | Section Widget | 50 | 24 | 35 | 500 | Nonce verification recommended | ||
| #61 | Column Shortcodes | 53 | 32 | 9 | 60k+ | Unsafe printing function | ||
| #62 | Genesis Columns Advanced | 55 | 26 | 4 | 10k+ | Unsafe printing function | ||
| #63 | Insert Pages | 55 | 52 | 30 | 40k+ | Output is not escaped | ||
| #64 | List Last Changes | 58 | 50 | 15 | 1k+ | Output is not escaped | ||
| #65 | WP Shortcode by MyThemeShop | 59 | 32 | 5 | 10k+ | Output is not escaped | ||
| #66 | Tabby Responsive Tabs | 60 | 16 | 5 | 10k+ | Output is not escaped | ||
| #67 | QR Code Composer – Automatic QR Code Generator | 65 | 33 | 2 | 3k+ | Output is not escaped | ||
| #68 | Shortcode for Current Date | 66 | 27 | 12 | 10k+ | Text Domain Mismatch | ||
| #69 | Bootstrap Shortcodes | 71 | 21 | 11 | 5k+ | Missing direct file access protection | ||
| #70 | AADMY – Add Auto Date Month Year Into Posts | 73 | 30 | 32 | 400 | Non-prefixed function | ||
| #71 | Accordion Shortcode | 75 | 17 | 0 | 400 | Output is not escaped | ||
| #72 | Matterport Shortcode | 75 | 21 | 30 | 3k+ | Text Domain Mismatch | ||
| #73 | Post UI Tabs | 76 | 55 | 4 | 400 | Non Singular String Literal Domain | ||
| #74 | Master QR Code Generator – Fast & Easy QR Code Creator | 77 | 21 | 59 | 400 | Non-prefixed global variable | ||
| #75 | Forget About Shortcode Buttons | 78 | 11 | 25 | 20k+ | Missing direct file access protection | ||
| #76 | Content Blocks (Custom Post Widget) | 80 | 6 | 2 | 10k+ | Output is not escaped | ||
| #77 | Checklist in Post | 81 | 14 | 7 | 400 | Missing Version | ||
| #78 | cookie-cat | 81 | 14 | 27 | 1k+ | Non-prefixed function | ||
| #79 | GET Params | 83 | 3 | 8 | 1k+ | Nonce verification recommended | ||
| #80 | Alligator Menu Popup | 87 | 4 | 1 | 600 | Missing Arg Domain | ||
| #81 | Simple Footnotes | 87 | 11 | 1 | 600 | wp function not compatible with requires wp | ||
| #82 | Simple Divi Shortcode | 89 | 5 | 0 | 10k+ | Output is not escaped | ||
| #83 | WP Anywhere Widgets | 89 | 16 | 14 | 700 | wp function not compatible with requires wp | ||
| #84 | Responsive Tabs | 91 | 59 | 9 | 4k+ | Non Singular String Literal Domain | ||
| #85 | Confetti Fall Animation | 92 | 2 | 5 | 600 | Non-prefixed class | ||
| #86 | Contact Form 7 Shortcode Enabler | 92 | 4 | 3 | 10k+ | trademarked term | ||
| #87 | Display Posts – Easy lists, grids, navigation, and more | 92 | 11 | 23 | 80k+ | Non-prefixed function | ||
| #88 | Grid Shortcodes | 92 | 3 | 2 | 2k+ | Missing Version | ||
| #89 | Surbma | Divi Project Shortcodes | 92 | 5 | 2 | 400 | Text Domain Mismatch | ||
| #90 | Podbean Shortcode | 94 | 22 | 2 | 900 | wp function not compatible with requires wp | ||
| #91 | Shortcode | 94 | 6 | 45 | 500 | Direct Query | ||
| #92 | Posts in Page | 95 | 10 | 12 | 10k+ | date date | ||
| #93 | Spreaker Shortcode | 95 | 23 | 3 | 4k+ | Text Domain Mismatch | ||
| #94 | Amelia Calendar Essential Shortcodes | 96 | 2 | 9 | 500 | Not In Footer | ||
| #95 | Progress Bar | 96 | 52 | 1 | 1k+ | Text Domain Mismatch | ||
| #96 | Relative URL ShortCode | 96 | 4 | 2 | 600 | outdated tested upto header | ||
| #97 | Tag Cloud Shortcode | 96 | 5 | 1 | 500 | Missing direct file access protection | ||
| #98 | Team Members | 96 | 15 | 16 | 20k+ | Missing direct file access protection | ||
| #99 | Basic URL ShortCodes | 97 | 3 | 2 | 3k+ | mismatched plugin name | ||
| #100 | Bloginfo Shortcode | 97 | 5 | 0 | 700 | Missing direct file access protection |