Awesome WordPress Author Bio Security & Risk Analysis

wordpress.org/plugins/awesome-wp-author-bio

Best WordPress Author Bio Plugin with Extensive Usability and Functionality

10 active installs v1.0.5.2 PHP 5.6+ WP 4.0+ Updated Unknown
author-bioauthor-bio-postwordpresswordpress-author-biowp-author-bio
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Awesome WordPress Author Bio Safe to Use in 2026?

Generally Safe

Score 100/100

Awesome WordPress Author Bio has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "awesome-wp-author-bio" plugin v1.0.5.2 exhibits a generally good security posture based on the provided static analysis. It successfully implements nonce checks and capability checks for all identified AJAX handlers, preventing common cross-site request forgery and privilege escalation attacks. The absence of dangerous functions, file operations, and SQL queries executed without prepared statements further bolsters its security. However, a significant concern arises from the taint analysis, which identified two flows with unsanitized paths. While classified as non-critical, this indicates a potential for unintended data handling or manipulation if these paths are exposed to user input. Furthermore, the plugin's external HTTP requests and the fact that only 69% of its output is properly escaped suggest areas where vulnerabilities could be introduced, particularly concerning cross-site scripting (XSS). The lack of any recorded historical vulnerabilities is a positive sign, suggesting a proactive approach to security from the developers, but it doesn't negate the immediate risks identified in the code analysis.

Key Concerns

  • Taint flows with unsanitized paths found
  • Output escaping is not comprehensive (69%)
Vulnerabilities
None known

Awesome WordPress Author Bio Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Awesome WordPress Author Bio Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
76
170 escaped
Nonce Checks
6
Capability Checks
3
File Operations
0
External Requests
4
Bundled Libraries
0

Output Escaping

69% escaped246 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
notification_action (Inc\Classes\Notifications\Notifications.php:48)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Awesome WordPress Author Bio Attack Surface

Entry Points6
Unprotected0

AJAX Handlers 6

authwp_ajax_jltauthorbio_deactivation_surveyInc\Classes\Feedback.php:29
authwp_ajax_jltauthorbio_notification_actionInc\Classes\Notifications\Notifications.php:40
authwp_ajax_jltauthorbio_subscribeInc\Classes\Notifications\Subscribe.php:26
authwp_ajax_jltauthorbio_allow_collectInc\Classes\Notifications\What_We_Collect.php:27
authwp_ajax_jltauthorbio_recommended_upgrade_pluginLibs\Recommended.php:43
authwp_ajax_jltauthorbio_recommended_activate_pluginLibs\Recommended.php:44
WordPress Hooks 21
actionplugins_loadedclass-awesome-wp-author-bio.php:48
filteradmin_body_classclass-awesome-wp-author-bio.php:50
filterthe_contentclass-awesome-wp-author-bio.php:54
actionadmin_initInc\Admin\AdminSettings.php:26
actionadmin_menuInc\Admin\AdminSettings.php:27
actionadmin_enqueue_scriptsInc\Admin\Settings_API.php:45
actionadmin_enqueue_scriptsInc\Classes\Feedback.php:27
actionadmin_footerInc\Classes\Feedback.php:28
actionadmin_noticesInc\Classes\Notifications\Notifications.php:35
actionjltauthorbio_display_noticeInc\Classes\Notifications\Notifications.php:37
actionjltauthorbio_display_popupInc\Classes\Notifications\Notifications.php:38
actionjltauthorbio_sheet_promo_data_resetInc\Classes\Notifications\Upgrade_Notice.php:26
actionadmin_footerInc\Classes\Pro_Upgrade.php:47
actionwp_dashboard_setupInc\Classes\Pro_Upgrade.php:49
filteruser_contactmethodsInc\functions.php:91
actionwp_enqueue_scriptsLibs\Assets.php:25
actionadmin_enqueue_scriptsLibs\Assets.php:26
actionwp_headLibs\Assets.php:27
filterinstall_plugins_table_api_args_featuredLibs\Featured.php:23
filterplugins_api_resultLibs\Featured.php:33
actionadmin_menuLibs\Recommended.php:42
Maintenance & Trust

Awesome WordPress Author Bio Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedUnknown
PHP min version5.6
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Awesome WordPress Author Bio Developer Profile

Liton Arefin

45 plugins · 43K total installs

83
trust score
Avg Security Score
93/100
Avg Patch Time
63 days
View full developer profile
Detection Fingerprints

How We Detect Awesome WordPress Author Bio

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/awesome-wp-author-bio/assets/css/admin-style.css/wp-content/plugins/awesome-wp-author-bio/assets/css/frontend.css/wp-content/plugins/awesome-wp-author-bio/assets/js/admin-script.js/wp-content/plugins/awesome-wp-author-bio/assets/js/frontend.js/wp-content/plugins/awesome-wp-author-bio/inc/js/admin-script.js
Version Parameters
awesome-wp-author-bio/assets/css/admin-style.css?ver=awesome-wp-author-bio/assets/css/frontend.css?ver=awesome-wp-author-bio/assets/js/admin-script.js?ver=awesome-wp-author-bio/assets/js/frontend.js?ver=awesome-wp-author-bio/inc/js/admin-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
jlt-author-bio-wrapperjlt-author-bio-avatarjlt-author-bio-namejlt-author-bio-descriptionjlt-author-bio-social-icons
HTML Comments
<!-- don't call the file directly --><!-- No, Direct access Sir !!! -->
JS Globals
window.JLTAUTHORBIO_URL
FAQ

Frequently Asked Questions about Awesome WordPress Author Bio