Aweber Subscribers Count Security & Risk Analysis

wordpress.org/plugins/aweber-subscribers-count

Aweber Subscribers Count is a simple Wordpress plugin that displays the subscriber count of a specific aweber list.

10 active installs v1.6.0 PHP + WP 3.0+ Updated Oct 24, 2012
awebercounterlist
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Aweber Subscribers Count Safe to Use in 2026?

Generally Safe

Score 85/100

Aweber Subscribers Count has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 13yr ago
Risk Assessment

The "aweber-subscribers-count" v1.6.0 plugin exhibits a generally good security posture based on the provided static analysis and vulnerability history. The absence of any recorded CVEs, critical taint flows, or dangerous function usage is a significant strength, indicating a well-maintained and potentially secure codebase. Furthermore, the plugin effectively utilizes prepared statements for its SQL queries and appears to have basic security measures like nonce checks in place.

However, there are areas that warrant caution. The output escaping is only properly implemented in 59% of cases, which represents a potential risk for cross-site scripting (XSS) vulnerabilities if user-supplied data is being directly outputted without sufficient sanitization. Additionally, the plugin lacks capability checks, meaning that even the shortcode, its only identified entry point, is accessible to any logged-in user regardless of their role. While the attack surface is small, this absence of role-based access control for the shortcode could be a concern depending on the functionality it provides.

In conclusion, this plugin has a solid foundation with no known critical vulnerabilities and good practices in SQL handling. The primary areas for improvement lie in ensuring comprehensive output escaping for all user-facing data and implementing capability checks for its shortcode to restrict access to authorized users. These improvements would further strengthen its security posture.

Key Concerns

  • Unescaped output detected
  • Lack of capability checks for shortcode
Vulnerabilities
None known

Aweber Subscribers Count Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Aweber Subscribers Count Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
16
23 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

59% escaped39 total outputs
Attack Surface

Aweber Subscribers Count Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[displaycount] aweber-count-shortcode.php:118
WordPress Hooks 8
actioninitaweber-count-optin.php:79
actionadmin_initaweber-count-optin.php:91
actionadmin_initaweber-count-optin.php:92
actionadmin_menuaweber-count-optin.php:93
actionadmin_enqueue_scriptsaweber-count-optin.php:94
actionCount_formaweber-count-optin.php:99
actionCount_postaweber-count-optin.php:100
filterwidget_textaweber-count-shortcode.php:119
Maintenance & Trust

Aweber Subscribers Count Maintenance & Trust

Maintenance Signals

WordPress version tested3.4.2
Last updatedOct 24, 2012
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Aweber Subscribers Count Developer Profile

WPMarmite

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Aweber Subscribers Count

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/aweber-subscribers-count/css/aweber-admin.css/wp-content/plugins/aweber-subscribers-count/js/aweber-admin.js

HTML / DOM Fingerprints

CSS Classes
tgm-aw-optin
HTML Comments
Copyright Alexandre Bortolotti
Data Attributes
data-tgm-aw-optin-settings
JS Globals
tgm_aw_optin_ajax_object
Shortcode Output
[aweber-list-count][aweber-list-count ][aweber-list-count][aweber-list-count]
FAQ

Frequently Asked Questions about Aweber Subscribers Count