
Affiliate Press Security & Risk Analysis
wordpress.org/plugins/affiliate-pressAffiliate Press allows you to set up an affiliate website based on product feeds as easy as 1-2-3.
Is Affiliate Press Safe to Use in 2026?
Generally Safe
Score 85/100Affiliate Press has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "affiliate-press" v0.3.8 exhibits a mixed security posture. On the positive side, there are no recorded CVEs and the plugin demonstrates a good practice by not directly handling file operations or making excessive external HTTP requests. The presence of nonce checks is also a positive indicator. However, several concerning signals arise from the static analysis. A significant portion of SQL queries (57%) are not using prepared statements, which opens the door to potential SQL injection vulnerabilities if not handled meticulously. Furthermore, a very low percentage (10%) of output is properly escaped, suggesting a high risk of Cross-Site Scripting (XSS) vulnerabilities across various output contexts. The taint analysis is particularly alarming, with 100% of analyzed flows showing unsanitized paths, and a notable 5 flows classified as high severity. This indicates that data entering the plugin is not being adequately cleaned, which could lead to serious security issues.
Key Concerns
- High percentage of SQL queries not using prepared statements
- Very low percentage of output properly escaped
- All taint flows have unsanitized paths
- 5 high severity taint flows
- No capability checks found
Affiliate Press Security Vulnerabilities
Affiliate Press Release Timeline
Affiliate Press Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Affiliate Press Attack Surface
WordPress Hooks 16
Scheduled Events 1
Maintenance & Trust
Affiliate Press Maintenance & Trust
Maintenance Signals
Community Trust
Affiliate Press Alternatives
Datafeedr API
datafeedr-api
Connect to the Datafeedr API.
Datafeedr Product Sets
datafeedr-product-sets
Build sets of products to import into your website.
Datafeedr WooCommerce Importer
datafeedr-woocommerce-importer
Import products from the Datafeedr API into your WooCommerce store.
AffiliateWP – Allowed Products
affiliatewp-allowed-products
Allows only specific products to generate commission in AffiliateWP.
Affiliaterg – Affiliate Products Booster Blocks
affiliate-products-blocks
A collection of custom Gutenberg blocks for Affiliate Products Review.
Affiliate Press Developer Profile
5 plugins · 150 total installs
How We Detect Affiliate Press
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/affiliate-press/images/icon16.png/wp-content/plugins/affiliate-press/styles.css/wp-content/plugins/affiliate-press/scripts/message.jsaffiliate-press/styles.css?ver=HTML / DOM Fingerprints
data-menu-slug="affiliate_press_edit"data-menu-slug="affiliate_press_view"data-menu-slug="affiliate_press_linktoproduct"LDB_AP_PATHLDB_AP_URLLDB_AP_SCRIPTS_URLLDB_Affiliate_Press