The Advanced Twitter Plugin Security & Risk Analysis

wordpress.org/plugins/advanced-twitter

Fully customize tweets that readers share using your Tweet button.

10 active installs v1.0 PHP + WP 3.0+ Updated Unknown
advanced-twitter-pluginsocial-sharing-plugintwitter-plugin
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is The Advanced Twitter Plugin Safe to Use in 2026?

Generally Safe

Score 100/100

The Advanced Twitter Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "advanced-twitter" v1.0 plugin exhibits a mixed security posture. On the positive side, the static analysis reveals a remarkably small attack surface, with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed. Furthermore, there are no recorded historical vulnerabilities (CVEs) for this plugin, suggesting a history of relative security. This lack of known issues and a limited attack surface are strong indicators of good development practices concerning external exposure. However, the code analysis reveals significant concerns regarding data handling. All identified SQL queries are not using prepared statements, indicating a high risk of SQL injection vulnerabilities. Additionally, none of the output escaping mechanisms are properly implemented, exposing the plugin to potential Cross-Site Scripting (XSS) attacks. While the plugin has a nonce check and capability checks, the lack of proper escaping and raw SQL queries presents substantial risks that outweigh the benefits of its limited attack surface and clean vulnerability history.

Key Concerns

  • SQL queries not using prepared statements
  • Output escaping not properly implemented
Vulnerabilities
None known

The Advanced Twitter Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

The Advanced Twitter Plugin Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

The Advanced Twitter Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
0 prepared
Unescaped Output
7
0 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared2 total queries

Output Escaping

0% escaped7 total outputs
Attack Surface

The Advanced Twitter Plugin Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadd_meta_boxesadvanced-twitter.php:59
actionsave_postadvanced-twitter.php:115
actionadmin_menuadvanced-twitter.php:165
actionadmin_initadvanced-twitter.php:169
actionthe_contentadvanced-twitter.php:376
Maintenance & Trust

The Advanced Twitter Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested3.4.2
Last updatedUnknown
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

The Advanced Twitter Plugin Developer Profile

dragonsearch

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect The Advanced Twitter Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Data Attributes
id="dragon-social-box-id"id="ds_customtext"name="ds_customtext"id="ds_customvia"name="ds_customvia"id="ds_customrec"+10 more
JS Globals
textCounter
FAQ

Frequently Asked Questions about The Advanced Twitter Plugin