Affiliate Link Tracker Security & Risk Analysis
wordpress.org/plugins/affiliate-link-trackerAdvanced affiliate link tracker for tracking where your affiliate conversions come from.
Is Affiliate Link Tracker Safe to Use in 2026?
Use With Caution
Score 63/100Affiliate Link Tracker has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "affiliate-link-tracker" v0.2 plugin presents a mixed security posture. While it demonstrates good practices by using prepared statements for all SQL queries and having a relatively small attack surface with no unprotected entry points, there are significant concerns. The presence of a known, unpatched medium severity vulnerability (likely Cross-Site Scripting) from April 2025 is a critical red flag. Furthermore, the taint analysis revealed one flow with an unsanitized path, which, although not classified as critical or high, warrants investigation as it could potentially lead to vulnerabilities if not handled correctly. The absence of nonce checks, while not directly flagged as an issue in this analysis due to the lack of AJAX handlers, is generally a weakness in plugin security that could be exploited if new AJAX endpoints are added without proper checks. The plugin's history of vulnerabilities, particularly the ongoing unpatched one, suggests a pattern of security oversight that needs immediate attention.
Key Concerns
- Unpatched CVE (medium severity)
- Flow with unsanitized path
- 0 Nonce checks found
- 85% Output escaping (some outputs unescaped)
Affiliate Link Tracker Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Affiliate Link Tracker <= 0.2 - Authenticated (Administrator+) Stored Cross-Site Scripting
Affiliate Link Tracker Code Analysis
Output Escaping
Data Flow Analysis
Affiliate Link Tracker Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Affiliate Link Tracker Maintenance & Trust
Maintenance Signals
Community Trust
Affiliate Link Tracker Alternatives
PrettyLinks – Affiliate Links, Link Branding, Link Tracking, Marketing and Stripe Payments Plugin
pretty-link
🌠 The best WordPress link management, branding, tracking, sharing and payments plugin. Easily make pretty & trackable shortlinks. 🔗
ThirstyAffiliates – Affiliate Links, Link Branding, Link Tracking & Marketing Plugin
thirstyaffiliates
🔗 Affiliate link management & cloaker tool. Easily manage, shrink and track your affiliate links in WordPress. 🔥
LinkCentral – URL shortener, Custom Links & Affiliate Link Shortener with Link Tracking
linkcentral
The easiest URL shortener, short links manager, and link tracking plugin. Fast and optimised for better short links, redirects and affiliate links.
AnyTrack Affiliate Link Manager
anytrack-affiliate-link-manager
AnyTrack is a conversion data platform for performance marketers to track affiliate conversions with Google Analytics, Facebook Conversion API, and mo …
ShortLinks Pro – Affiliate Links, Link Shortening, Click Tracking & Marketing
shortlinkspro
Shorten, track, manage and share any URL using your own domain name!
Affiliate Link Tracker Developer Profile
1 plugin · 400 total installs
How We Detect Affiliate Link Tracker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wrapdashicons-admin-linksdata-idx[aff_lnk_view_cookie]