Affiliates Events Manager Security & Risk Analysis

wordpress.org/plugins/affiliates-events-manager

Integrates Affiliates, Affiliates Pro and Affiliates Enterprise with Events Manager.

40 active installs v4.0.0 PHP 7.4+ WP 6.5+ Updated Dec 20, 2025
affiliateaffiliate-marketingaffiliatesgrowth-marketingreferral
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Affiliates Events Manager Safe to Use in 2026?

Generally Safe

Score 100/100

Affiliates Events Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The 'affiliates-events-manager' v4.0.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any entry points like AJAX handlers, REST API routes, or shortcodes significantly limits the potential attack surface. Furthermore, the code demonstrates good development practices with 100% of SQL queries using prepared statements and a high percentage of output being properly escaped. The presence of nonce and capability checks further reinforces this positive assessment. The plugin also has no recorded vulnerability history, including CVEs, which suggests a history of secure development and maintenance.

However, the static analysis results indicate a complete lack of taint analysis, which means that the plugin's handling of user-supplied data for potential security risks has not been thoroughly evaluated. While the overall code signals are positive, the absence of taint analysis leaves a gap in identifying potential vulnerabilities related to data sanitization and input validation, especially if new features are introduced in the future. The zero attack surface is a significant strength, but the lack of comprehensive taint analysis is a minor concern that warrants attention for a complete security picture.

In conclusion, 'affiliates-events-manager' v4.0.0 appears to be a well-secured plugin with minimal apparent vulnerabilities. Its focus on secure coding practices for SQL and output, combined with a clean vulnerability history, instills confidence. The main area for improvement or further investigation lies in the completeness of its security testing, specifically regarding taint analysis. For a plugin with no external entry points and a clean record, the current risk is assessed as low.

Vulnerabilities
None known

Affiliates Events Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Affiliates Events Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
2
35 escaped
Nonce Checks
2
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

95% escaped37 total outputs
Attack Surface

Affiliates Events Manager Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionplugins_loadedaffiliates-events-manager.php:62
actionadd_meta_boxeslib-2\class-affiliates-em-booking.php:44
actionsave_post_eventlib-2\class-affiliates-em-booking.php:45
actioninitlib-2\class-affiliates-em-method.php:115
actionadmin_noticeslib-2\class-affiliates-events-manager.php:99
actioninitlib-2\class-affiliates-events-manager.php:128
actionaffiliates_admin_menulib-2\class-affiliates-events-manager.php:129
actionem_bookings_addedlib-2\class-affiliates-events-manager.php:130
filterem_booking_set_statuslib-2\class-affiliates-events-manager.php:131
filterem_booking_deletelib-2\class-affiliates-events-manager.php:132
Maintenance & Trust

Affiliates Events Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 20, 2025
PHP min version7.4
Downloads12K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

Affiliates Events Manager Developer Profile

itthinx

27 plugins · 23K total installs

98
trust score
Avg Security Score
97/100
Avg Patch Time
3 days
View full developer profile
Detection Fingerprints

How We Detect Affiliates Events Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/affiliates-events-manager/lib/js/affiliates-events-manager.js/wp-content/plugins/affiliates-events-manager/lib/css/affiliates-events-manager.css
Script Paths
affiliates-events-manager/lib/js/affiliates-events-manager.js
Version Parameters
affiliates-events-manager/lib/css/affiliates-events-manager.css?ver=affiliates-events-manager/lib/js/affiliates-events-manager.js?ver=

HTML / DOM Fingerprints

CSS Classes
affiliates-events-manager-settings
HTML Comments
<!-- Affiliates Events Manager Integration Light plugin not needed --><!-- The Affiliates Events Manager Integration plugin requires the Events Manager plugin to be activated. --><!-- Affiliates Events Manager Integration plugin requires an appropriate Affiliates plugin to be activated: Affiliates or Affiliates Pro or Affiliates Enterprise. -->
Data Attributes
data-aem-admin-noncedata-aem-admin-url
JS Globals
AffiliatesEventsManager
FAQ

Frequently Asked Questions about Affiliates Events Manager