Application Banner (Google PlayStore / AppleStore) Security & Risk Analysis

wordpress.org/plugins/application-banner-google-playstore-applestore

Beschreibung

50 active installs v1.3 PHP 7.0+ WP 5.0+ Updated Aug 19, 2022
app-bannerapplestoreapplication-bannergoogle-playstore
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Application Banner (Google PlayStore / AppleStore) Safe to Use in 2026?

Generally Safe

Score 85/100

Application Banner (Google PlayStore / AppleStore) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The 'application-banner-google-playstore-applestore' plugin version 1.3 exhibits a generally positive security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the plugin demonstrates good practice by utilizing prepared statements for all its SQL queries, and there are no recorded vulnerabilities or CVEs associated with it. This suggests a history of secure development or prompt patching if any issues have arisen.

However, a notable concern lies within the output escaping. With 100% of its total outputs not being properly escaped, this presents a significant risk of Cross-Site Scripting (XSS) vulnerabilities. While the static analysis did not identify any taint flows with unsanitized paths, the lack of output escaping means that any data displayed to users could potentially be manipulated to execute malicious scripts. The plugin also has no observed capability checks or nonce checks, which, while not directly indicating a vulnerability in this specific version due to the limited attack surface, are fundamental security practices that are missing and could become a risk if the plugin's functionality evolves.

In conclusion, the plugin's minimal attack surface and clean vulnerability history are strong points. Nevertheless, the pervasive issue of unescaped output is a critical weakness that requires immediate attention to prevent potential XSS attacks. The absence of certain security checks, though not directly exploited in this analysis, points to a potential for future vulnerabilities if not addressed.

Key Concerns

  • All outputs are unescaped
  • No capability checks detected
  • No nonce checks detected
Vulnerabilities
None known

Application Banner (Google PlayStore / AppleStore) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Application Banner (Google PlayStore / AppleStore) Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped8 total outputs
Attack Surface

Application Banner (Google PlayStore / AppleStore) Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionwp_body_openinclude\loadhtml.php:10
actioninitinclude\loadhtml.php:139
actionwp_footerinclude\loadhtml.php:147
Maintenance & Trust

Application Banner (Google PlayStore / AppleStore) Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedAug 19, 2022
PHP min version7.0
Downloads3K

Community Trust

Rating74/100
Number of ratings3
Active installs50
Developer Profile

Application Banner (Google PlayStore / AppleStore) Developer Profile

sahumedia

4 plugins · 1K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Application Banner (Google PlayStore / AppleStore)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/application-banner-google-playstore-applestore/assets/placeholder.png/wp-content/plugins/application-banner-google-playstore-applestore/include/js.cookie.js
Script Paths
/wp-content/plugins/application-banner-google-playstore-applestore/include/js.cookie.js

HTML / DOM Fingerprints

CSS Classes
app-bannerapp-flexapp-middle-containerapp-first-containerapp-last-containerapp-close-buttonapp-nameapp-store+1 more
JS Globals
sahu_app_ausblendenCookies
FAQ

Frequently Asked Questions about Application Banner (Google PlayStore / AppleStore)