AxesWeb Accessibility Solution Security & Risk Analysis

wordpress.org/plugins/axesweb-accessibility-solution

WCAG 2.1 and 2.2-ready accessibility toolbar for WordPress with a configurable, lightweight widget.

10 active installs v1.0.5 PHP 7.4+ WP 5.8+ Updated Sep 12, 2025
a11yaccessibilityariacontrastwcag
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is AxesWeb Accessibility Solution Safe to Use in 2026?

Generally Safe

Score 100/100

AxesWeb Accessibility Solution has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6mo ago
Risk Assessment

The "axesweb-accessibility-solution" v1.0.5 plugin exhibits a generally good security posture with several strengths. Notably, it has no known CVEs and a clean vulnerability history, suggesting a commitment to security or a lack of prior exploitation. The static analysis reveals a relatively small attack surface, with all identified AJAX handlers having authentication checks. Furthermore, the absence of dangerous functions, raw SQL queries, and file operations are positive indicators. The plugin also implements nonce and capability checks, which are crucial for secure WordPress development. However, a significant concern lies in the output escaping, where only 41% of outputs are properly escaped. This leaves a substantial portion of the plugin's output vulnerable to Cross-Site Scripting (XSS) attacks. While taint analysis shows no immediate critical or high-severity unsanitized flows, the insufficient output escaping creates a potential pathway for XSS vulnerabilities to be exploited, especially if user-supplied data is processed and rendered without proper sanitization.

Key Concerns

  • Insufficient output escaping
Vulnerabilities
None known

AxesWeb Accessibility Solution Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

AxesWeb Accessibility Solution Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
67
46 escaped
Nonce Checks
5
Capability Checks
3
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

41% escaped113 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
axesweb_a11y_plugin_settings_page (admin\settings-page.php:14)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

AxesWeb Accessibility Solution Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 4

authwp_ajax_axesweb_a11y_get_accessibility_declarationwp-accessibility-plugin.php:269
noprivwp_ajax_axesweb_a11y_get_accessibility_declarationwp-accessibility-plugin.php:270
authwp_ajax_axesweb_a11y_submit_accessibility_feedbackwp-accessibility-plugin.php:338
noprivwp_ajax_axesweb_a11y_submit_accessibility_feedbackwp-accessibility-plugin.php:339
WordPress Hooks 5
actionadmin_enqueue_scriptsadmin\settings-page.php:610
actionadmin_menuadmin\settings-page.php:624
actionwp_footerincludes\accessibility-toolbar.php:18
filterscript_loader_tagwp-accessibility-plugin.php:375
actionwp_enqueue_scriptswp-accessibility-plugin.php:411
Maintenance & Trust

AxesWeb Accessibility Solution Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 12, 2025
PHP min version7.4
Downloads225

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

AxesWeb Accessibility Solution Developer Profile

AxesWeb

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AxesWeb Accessibility Solution

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/axesweb-accessibility-solution/build/style.css/wp-content/plugins/axesweb-accessibility-solution/build/script.js
Script Paths
https://cdn.axesweb.com/widget/latest/accessibility-widget.js
Version Parameters
/wp-content/plugins/axesweb-accessibility-solution/build/style.css?ver=/wp-content/plugins/axesweb-accessibility-solution/build/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
a11y-toolbar
JS Globals
window.AxesWebA11y
REST Endpoints
/wp-json/axesweb/v1/key/verify
FAQ

Frequently Asked Questions about AxesWeb Accessibility Solution