Adanos Market Sentiment Widgets Security & Risk Analysis

wordpress.org/plugins/adanos-market-sentiment-widgets

Embed self-hosted stock sentiment widgets and shortcodes for WordPress, powered by Adanos.

0 active installs v0.6.2 PHP 7.4+ WP 6.0+ Updated Apr 8, 2026
financesentimentshortcodestockswidget
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Adanos Market Sentiment Widgets Safe to Use in 2026?

Generally Safe

Score 100/100

Adanos Market Sentiment Widgets has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "adanos-market-sentiment-widgets" plugin version 0.6.2 exhibits a generally good security posture with several strengths. Notably, the code demonstrates excellent practices regarding SQL queries, with 100% of them using prepared statements, and all output is properly escaped. There are no recorded vulnerabilities (CVEs) in its history, suggesting a well-maintained and secure past. The absence of dangerous functions and file operations further contributes to its positive security profile.

However, there are specific concerns that warrant attention. The plugin exposes two REST API routes without permission callbacks, creating a significant attack surface. While the static analysis did not reveal any critical taint flows, the lack of authentication checks on these REST API endpoints could potentially allow unauthorized access or manipulation of data if sensitive operations are exposed. The presence of an external HTTP request, though not necessarily a vulnerability, is a common vector for introducing risks if not handled carefully.

In conclusion, the plugin's adherence to secure coding practices for SQL and output is commendable. The lack of historical vulnerabilities is a strong indicator of past security diligence. The primary weakness lies in the unprotected REST API routes, which represent the most immediate and significant security risk identified in this analysis. Addressing these unprotected endpoints should be the priority for improving the plugin's overall security.

Key Concerns

  • REST API routes without permission callbacks
  • External HTTP requests
Vulnerabilities
None known

Adanos Market Sentiment Widgets Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Adanos Market Sentiment Widgets Release Timeline

v0.6.2Current
v0.6.1
Code Analysis
Analyzed Apr 16, 2026

Adanos Market Sentiment Widgets Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
195 escaped
Nonce Checks
1
Capability Checks
3
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped195 total outputs
Attack Surface
2 unprotected

Adanos Market Sentiment Widgets Attack Surface

Entry Points8
Unprotected2

REST API Routes 2

GET/wp-json/adanos-rsi/v1/stock-sentimentadanos-market-sentiment-widgets.php:1014
GET/wp-json/adanos-rsi/v1/trendingadanos-market-sentiment-widgets.php:1024

Shortcodes 6

[adanos] adanos-market-sentiment-widgets.php:1300
[adanos_ticker_tape] adanos-market-sentiment-widgets.php:1301
[adanos_top_movers] adanos-market-sentiment-widgets.php:1302
[adanos_value] adanos-market-sentiment-widgets.php:1303
[adanos_summary] adanos-market-sentiment-widgets.php:1304
[adanos_trending_text] adanos-market-sentiment-widgets.php:1305
WordPress Hooks 10
actionadmin_initadanos-market-sentiment-widgets.php:97
actionadmin_initadanos-market-sentiment-widgets.php:115
actionadmin_menuadanos-market-sentiment-widgets.php:146
actionadmin_enqueue_scriptsadanos-market-sentiment-widgets.php:161
actionadmin_noticesadanos-market-sentiment-widgets.php:362
actionadmin_noticesadanos-market-sentiment-widgets.php:384
actionadmin_post_adanos_rsi_clear_cacheadanos-market-sentiment-widgets.php:447
actionrest_api_initadanos-market-sentiment-widgets.php:1035
actioninitadanos-market-sentiment-widgets.php:1062
actioninitadanos-market-sentiment-widgets.php:1308
Maintenance & Trust

Adanos Market Sentiment Widgets Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 8, 2026
PHP min version7.4
Downloads49

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Adanos Market Sentiment Widgets Developer Profile

adanosorg

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Adanos Market Sentiment Widgets

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/adanos-market-sentiment-widgets/assets/admin.css
Version Parameters
adanos-market-sentiment-widgets/assets/admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
adanos-rsi-section-copyadanos-rsi-adminadanos-rsi-heroadanos-rsi-layoutadanos-rsi-mainadanos-rsi-cardadanos-rsi-form-wrapadanos-rsi-grid+1 more
Data Attributes
name="adanos_rsi_options[api_key]"name="adanos_rsi_options[cache_ttl]"
Shortcode Output
<code>[adanos]</code>
FAQ

Frequently Asked Questions about Adanos Market Sentiment Widgets