
Android Appmaker Security & Risk Analysis
wordpress.org/plugins/android-appmakerMit diesem Plugin kannst du für deine Seite eine Android-App erstellen. iOS Apps können auf Anfrage erstellt werden. Nach wenigen Klicks sind deine In …
Is Android Appmaker Safe to Use in 2026?
Generally Safe
Score 85/100Android Appmaker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'android-appmaker' v4.0 exhibits a generally strong security posture based on the provided static analysis. The complete absence of identified CVEs and a clean vulnerability history are positive indicators. Notably, the plugin boasts a zero attack surface in terms of AJAX handlers, REST API routes, shortcodes, and cron events, which significantly reduces potential entry points for attackers. Furthermore, all SQL queries utilize prepared statements, and there are no file operations or external HTTP requests, further mitigating common attack vectors. The presence of a capability check, while only one, is also a good practice.
However, a significant concern arises from the output escaping. With 12 total outputs and only 8% properly escaped, a substantial number of outputs are likely vulnerable to cross-site scripting (XSS) attacks. This is a critical weakness that attackers could exploit to inject malicious scripts into the site. The lack of nonce checks is also a potential concern, especially if any of the limited entry points, despite being listed as zero, were to be indirectly accessed or if future updates introduce such entry points without adequate protection.
In conclusion, while the plugin has successfully avoided known vulnerabilities and has a minimal attack surface, the poor output escaping represents a significant and exploitable security flaw. The absence of nonce checks also warrants attention. Addressing the output escaping issue should be the top priority to improve the overall security of this plugin.
Key Concerns
- Low output escaping percentage
Android Appmaker Security Vulnerabilities
Android Appmaker Release Timeline
Android Appmaker Code Analysis
Output Escaping
Data Flow Analysis
Android Appmaker Attack Surface
WordPress Hooks 1
Maintenance & Trust
Android Appmaker Maintenance & Trust
Maintenance Signals
Community Trust
Android Appmaker Alternatives
WPMobile.App
wpappninja
Android and iOS mobile application. Easy setup, free test.
Mobile Smart App Banner
mobile-smart-app-banner
Transform your mobile website visitors into app users with intelligent smart app banners that boost downloads across iOS and Android devices.
APPExperts – Mobile App Builder for WordPress | WooCommerce to iOS and Android Apps
appexperts
APPExperts is a freemium mobile app builder that gives you the power to turn your WordPress-powered website into a mobile application for iOS and Andr …
Knowband Mobile App Builder
knowband-mobile-app-builder-for-woocommerce
The Knowband Mobile App Builder converts your online store into a pair of native Android & iOS apps without any coding.
prograpper
prograpper
Create (android / ios ) App for your WordPress Site
Android Appmaker Developer Profile
5 plugins · 100 total installs
How We Detect Android Appmaker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/android-appmaker/appmaker-merq.js/wp-content/plugins/android-appmaker/appmaker-merq.jsandroid-appmaker/appmaker-merq.js?url=HTML / DOM Fingerprints
<p>URL zum RSS-Feed: <b>/appmaker.php?rss=1&p=