
AnnounceME Security & Risk Analysis
wordpress.org/plugins/announcemeAnnounceME is a simple plugin, coded to help you publishing important Announcements.
Is AnnounceME Safe to Use in 2026?
Generally Safe
Score 100/100AnnounceME has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "announceme" v0.3.3 plugin exhibits a generally weak security posture due to significant code quality issues, despite having no recorded vulnerabilities or exploitable entry points identified in the static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events, combined with zero known CVEs, suggests a limited attack surface and a lack of prior exploitation. However, the code analysis reveals alarming trends: 100% of SQL queries are not using prepared statements, and 100% of output is not properly escaped. This indicates a high likelihood of introducing vulnerabilities such as SQL injection and Cross-Site Scripting (XSS) if the plugin were to handle user-supplied data or be expanded in functionality. The taint analysis, showing flows with unsanitized paths, further reinforces these concerns, though no critical or high severity issues were flagged in this specific version. The lack of capability checks and nonce checks, while not directly exploitable given the current entry points, are critical omissions for any plugin that might introduce them in future updates or handle sensitive data. Overall, while the plugin currently appears inactive and unexploited, its underlying code quality presents a substantial risk of future vulnerabilities.
Key Concerns
- SQL queries not using prepared statements
- Output not properly escaped
- Flows with unsanitized paths
- Missing nonce checks
- Missing capability checks
AnnounceME Security Vulnerabilities
AnnounceME Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
AnnounceME Attack Surface
WordPress Hooks 4
Maintenance & Trust
AnnounceME Maintenance & Trust
Maintenance Signals
Community Trust
AnnounceME Alternatives
Simple Banner – Easily add multiple Banners/Bars/Notifications/Announcements to the top or bottom of your website
simple-banner
Display a simple banner/bar at the top or bottom of your website. Now with multi-banner support.
Icegram Engage – Popups, Optins, CTAs & lot more…
icegram
Create popups, opt-in forms, and call-to-action messages to capture leads and engage visitors on your WordPress site.
Blog Floating Button
blog-floating-button
Blog Floating Button(BFB)は、ブログにフロートボタンを簡単に実装できるプラグインです。フロートボタンでキラーページに簡単に誘導することができるため、商品購入数や問い合わせ数の向上が期待できます。
Horizontal scrolling announcements
horizontal-scrolling-announcements
This horizontal scrolling announcement wordpress plugin lets scroll the content from one end to another end like reel. This plugin is using JQuery Mar …
Advanced Floating Content Lite
advanced-floating-content-lite
Create high-impact floating content that stays visible without annoying visitors. Perfect for announcements, CTAs, and promotions.
AnnounceME Developer Profile
1 plugin · 10 total installs
How We Detect AnnounceME
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/announceme/admin.cssannounceme/admin.css?ver=HTML / DOM Fingerprints
announcemeid="announceme"