Name: Amazing Neo Brands Security & Risk Analysis

wordpress.org/plugins/amazing-neo-brands

Amazing Neo is one of the best icon font by Amazing Team. This plugin allows you to insert brands/social icons in any widget area.

10 active installs v2.0 PHP 5.6+ WP + Updated Dec 16, 2023
amazing-iconsamazing-neo-iconsocialsocial-mediasocial-networking
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Name: Amazing Neo Brands Safe to Use in 2026?

Generally Safe

Score 85/100

Name: Amazing Neo Brands has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "amazing-neo-brands" v2.0 plugin exhibits a seemingly strong security posture based on the provided static analysis. The absence of identified attack surface points like AJAX handlers, REST API routes, shortcodes, and cron events is a significant positive indicator. Furthermore, the complete avoidance of raw SQL queries, with all queries utilizing prepared statements, and the lack of file operations or external HTTP requests suggest a thoughtful approach to secure coding in these areas. The plugin also has no recorded vulnerability history, which is excellent.

However, a notable concern arises from the output escaping analysis, where only 52% of the identified outputs are properly escaped. This indicates a significant potential for Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data, if not properly sanitized before being displayed, could be manipulated to inject malicious scripts. The complete lack of nonce checks and capability checks, while not directly flagged as a risk in the static analysis (likely due to the absence of the corresponding entry points), means that if any new entry points were to be introduced in the future, they would be inherently unprotected. This highlights a potential for privilege escalation or unauthorized actions if new functionalities are added without proper authorization checks.

In conclusion, while the plugin demonstrates good practices in its current implementation by minimizing its attack surface and securing its database interactions, the high percentage of unescaped output represents a tangible and significant risk. The lack of authentication and authorization checks on potential future entry points also warrants attention. The absence of historical vulnerabilities is a strength, but it should not overshadow the present risk identified in the output escaping.

Key Concerns

  • Low percentage of properly escaped output
  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Name: Amazing Neo Brands Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Name: Amazing Neo Brands Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Name: Amazing Neo Brands Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
39
42 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

52% escaped81 total outputs
Attack Surface

Name: Amazing Neo Brands Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionplugins_loadedamazing-neo-brands.php:18
actionwp_enqueue_scriptsamazing-neo-brands.php:1703
actionwp_footeramazing-neo-brands.php:1706
actionadmin_enqueue_scriptsamazing-neo-brands.php:1709
actionadmin_footer-widgets.phpamazing-neo-brands.php:1710
actionwidgets_initamazing-neo-brands.php:2010
Maintenance & Trust

Name: Amazing Neo Brands Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedDec 16, 2023
PHP min version5.6
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Name: Amazing Neo Brands Developer Profile

mudssar

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Name: Amazing Neo Brands

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/amazing-neo-brands/css/widget-style.css/wp-content/plugins/amazing-neo-brands/css/shortcode-style.css/wp-content/plugins/amazing-neo-brands/js/widget-script.js
Script Paths
/wp-content/plugins/amazing-neo-brands/js/widget-script.js
Version Parameters
amazing-neo-brands/css/widget-style.css?ver=amazing-neo-brands/css/shortcode-style.css?ver=amazing-neo-brands/js/widget-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
amazing-neo-brands-widget
Data Attributes
data-icon-sizedata-icon-colordata-icon-color-hoverdata-background-colordata-background-color-hoverdata-border-radius+4 more
Shortcode Output
[amazing_neo_brands_icons]
FAQ

Frequently Asked Questions about Name: Amazing Neo Brands