Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers Security & Risk Analysis

wordpress.org/plugins/affiliate-coupons

Helps you to earn more affiliate money!

2K active installs v1.8.3 PHP 5.6.0+ WP 3.0.1+ Updated Dec 19, 2025
affiliate-couponsclick-revealdiscount
98
A · Safe
CVEs total1
Unpatched0
Last CVEFeb 23, 2025
Safety Verdict

Is Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers Safe to Use in 2026?

Generally Safe

Score 98/100

Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Feb 23, 2025Updated 3mo ago
Risk Assessment

The affiliate-coupons plugin, version 1.8.3, exhibits a generally positive security posture based on the static analysis. The complete absence of critical and high severity taint flows, along with 100% of SQL queries using prepared statements, are strong indicators of secure coding practices. The plugin also demonstrates a good level of output escaping (82%) and includes nonce checks for its AJAX handlers, which are crucial for preventing Cross-Site Request Forgery. The limited attack surface of 5 entry points, with none reported as unprotected, further enhances its security.

However, there are areas that warrant attention. The fact that 0 capability checks were found on the entry points, despite having AJAX handlers and shortcodes, is a significant concern. This means that actions triggered by these entry points might be executable by users without the necessary permissions, potentially leading to unauthorized modifications or data exposure. The presence of one past high-severity vulnerability, specifically 'Improper Control of Filename for Include/Require Statement in PHP Program' (PHP Remote File Inclusion), although currently patched, suggests a historical tendency towards critical vulnerabilities. This pattern indicates that developers should remain vigilant and that future versions should be rigorously audited for similar flaws.

In conclusion, the affiliate-coupons plugin has made considerable strides in security, particularly with its handling of SQL and taint analysis. Nevertheless, the lack of capability checks on its entry points and the history of a serious vulnerability type represent notable weaknesses that could be exploited if not addressed. Continued focus on robust access control and comprehensive security audits will be essential for maintaining a secure plugin.

Key Concerns

  • No capability checks on entry points
  • History of high severity vulnerability (RFI)
  • Bundled outdated library: Select2
  • 82% output escaping (some unescaped)
Vulnerabilities
1

Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

High
1

1 total CVE

CVE-2025-26957high · 8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')

Affiliate Coupons <= 1.7.3 - Authenticated (Contributor+) Local File Inclusion

Feb 23, 2025 Patched in 1.7.4 (9d)
Code Analysis
Analyzed Mar 16, 2026

Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
68
315 escaped
Nonce Checks
2
Capability Checks
0
File Operations
2
External Requests
1
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

82% escaped383 total outputs
Attack Surface

Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 2

authwp_ajax_affcoups_remove_review_requestincludes\admin\hooks.php:211
authwp_ajax_affcoups_hide_review_requestincludes\admin\hooks.php:212

Shortcodes 3

[affcoups] includes\shortcodes.php:306
[affcoups_coupons] includes\shortcodes.php:311
[affcoups_debug] includes\shortcodes.php:316
WordPress Hooks 44
actionadmin_noticesaffiliate-coupons.php:75
actionplugins_loadedaffiliate-coupons.php:343
actionin_admin_headerincludes\admin\class-pages.php:20
actionadmin_menuincludes\admin\class-settings.php:41
actionadmin_initincludes\admin\class-settings.php:42
actionaffcoups_admin_header_afterincludes\admin\class-settings.php:44
filteradmin_body_classincludes\admin\hooks.php:18
actionadmin_noticesincludes\admin\hooks.php:138
filteradmin_footer_textincludes\admin\hooks.php:156
actionmanage_posts_extra_tablenavincludes\admin\hooks.php:161
filtermanage_edit-affcoups_coupon_category_columnsincludes\admin\manage-categories.php:28
filtermanage_affcoups_coupon_category_custom_columnincludes\admin\manage-categories.php:52
filtermanage_affcoups_coupon_posts_columnsincludes\admin\manage-coupons.php:34
actionmanage_affcoups_coupon_posts_custom_columnincludes\admin\manage-coupons.php:77
filtermanage_edit-affcoups_coupon_type_columnsincludes\admin\manage-types.php:28
filtermanage_affcoups_coupon_type_custom_columnincludes\admin\manage-types.php:52
filtermanage_affcoups_vendor_posts_columnsincludes\admin\manage-vendors.php:29
actionmanage_affcoups_vendor_posts_custom_columnincludes\admin\manage-vendors.php:58
filterplugin_action_linksincludes\admin\plugins.php:33
filterplugin_row_metaincludes\admin\plugins.php:67
actionadmin_initincludes\admin\upgrades.php:43
actionadmin_noticesincludes\admin\upgrades.php:51
actioninitincludes\coupon-category-taxonomy.php:58
filterrwmb_meta_boxesincludes\coupon-metaboxes.php:161
filteraffcoups_coupon_meta_box_details_fields_multi_coupon_codeincludes\coupon-metaboxes.php:202
actioninitincludes\coupon-post-type.php:85
actioninitincludes\coupon-type-taxonomy.php:58
actionwp_enqueue_scriptsincludes\functions.php:617
actioninitincludes\hooks.php:22
actionwp_headincludes\hooks.php:36
actionwp_headincludes\hooks.php:51
actionamp_post_template_cssincludes\hooks.php:94
actionamphtml_template_cssincludes\hooks.php:95
filteraffcoups_coupon_add_classesincludes\hooks.php:121
actionwp_footerincludes\hooks.php:142
filteraffcoups_shortcode_outputincludes\hooks.php:169
actionadmin_initincludes\install.php:22
actionadmin_enqueue_scriptsincludes\scripts.php:50
actionwp_enqueue_scriptsincludes\scripts.php:70
filteraffcoups_the_contentincludes\shortcodes.php:22
filterrwmb_meta_boxesincludes\vendor-metaboxes.php:60
actioninitincludes\vendor-post-type.php:73
actionwidgets_initincludes\widgets.php:27
filterwidget_textincludes\widgets.php:58
Maintenance & Trust

Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 19, 2025
PHP min version5.6.0
Downloads101K

Community Trust

Rating90/100
Number of ratings36
Active installs2K
Developer Profile

Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers Developer Profile

Deetronix

3 plugins · 3K total installs

67
trust score
Avg Security Score
83/100
Avg Patch Time
183 days
View full developer profile
Detection Fingerprints

How We Detect Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/affiliate-coupons/assets/css/backend.css/wp-content/plugins/affiliate-coupons/assets/css/frontend.css/wp-content/plugins/affiliate-coupons/assets/js/backend.js/wp-content/plugins/affiliate-coupons/assets/js/frontend.js
Script Paths
/wp-content/plugins/affiliate-coupons/assets/js/backend.js/wp-content/plugins/affiliate-coupons/assets/js/frontend.js
Version Parameters
affiliate-coupons/assets/css/backend.css?ver=affiliate-coupons/assets/css/frontend.css?ver=affiliate-coupons/assets/js/backend.js?ver=affiliate-coupons/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
affcoups-coupon-wrapaffcoups-coupon-titleaffcoups-coupon-detailsaffcoups-coupon-codeaffcoups-coupon-expiryaffcoups-coupon-descriptionaffcoups-coupon-button
Data Attributes
data-affcoups-coupon-iddata-affcoups-vendor-id
JS Globals
affiliate_coupons_params
Shortcode Output
[affcoups_coupons[affcoups_coupon[affcoups_vendors[affcoups_vendor
FAQ

Frequently Asked Questions about Affiliate Coupons – Coupon Display Manager – Excellent Tool for Affiliate Marketers