
Affiliate Press Security & Risk Analysis
wordpress.org/plugins/affiliate-pressAffiliate Press allows you to set up an affiliate website based on product feeds as easy as 1-2-3.
Is Affiliate Press Safe to Use in 2026?
Generally Safe
Score 85/100Affiliate Press has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "affiliate-press" v0.3.8 exhibits a mixed security posture. On the positive side, there are no recorded CVEs and the plugin demonstrates a good practice by not directly handling file operations or making excessive external HTTP requests. The presence of nonce checks is also a positive indicator. However, several concerning signals arise from the static analysis. A significant portion of SQL queries (57%) are not using prepared statements, which opens the door to potential SQL injection vulnerabilities if not handled meticulously. Furthermore, a very low percentage (10%) of output is properly escaped, suggesting a high risk of Cross-Site Scripting (XSS) vulnerabilities across various output contexts. The taint analysis is particularly alarming, with 100% of analyzed flows showing unsanitized paths, and a notable 5 flows classified as high severity. This indicates that data entering the plugin is not being adequately cleaned, which could lead to serious security issues.
Key Concerns
- High percentage of SQL queries not using prepared statements
- Very low percentage of output properly escaped
- All taint flows have unsanitized paths
- 5 high severity taint flows
- No capability checks found
Affiliate Press Security Vulnerabilities
Affiliate Press Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Affiliate Press Attack Surface
WordPress Hooks 16
Scheduled Events 1
Maintenance & Trust
Affiliate Press Maintenance & Trust
Maintenance Signals
Community Trust
Affiliate Press Alternatives
Datafeedr API
datafeedr-api
Connect to the Datafeedr API.
Datafeedr Product Sets
datafeedr-product-sets
Build sets of products to import into your website.
Datafeedr WooCommerce Importer
datafeedr-woocommerce-importer
Import products from the Datafeedr API into your WooCommerce store.
AffiliateWP – Allowed Products
affiliatewp-allowed-products
Allows only specific products to generate commission in AffiliateWP.
Affiliaterg – Affiliate Products Booster Blocks
affiliate-products-blocks
A collection of custom Gutenberg blocks for Affiliate Products Review.
Affiliate Press Developer Profile
5 plugins · 150 total installs
How We Detect Affiliate Press
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/affiliate-press/images/icon16.png/wp-content/plugins/affiliate-press/styles.css/wp-content/plugins/affiliate-press/scripts/message.jsaffiliate-press/styles.css?ver=HTML / DOM Fingerprints
data-menu-slug="affiliate_press_edit"data-menu-slug="affiliate_press_view"data-menu-slug="affiliate_press_linktoproduct"LDB_AP_PATHLDB_AP_URLLDB_AP_SCRIPTS_URLLDB_Affiliate_Press