Amazon Link Localization by BestAzon Security & Risk Analysis

wordpress.org/plugins/bestazon

Amazon Link Localization (direct visitors to their local Amazon stores) - earn upto 30% more immediately! NO SIGNUP NEEDED

100 active installs v5.2 PHP + WP 3.0.1+ Updated Mar 22, 2021
amazonamazon-affiliate-link-localizationamazon-associatesamazon-link-engineglobal-amazon-link
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Amazon Link Localization by BestAzon Safe to Use in 2026?

Generally Safe

Score 85/100

Amazon Link Localization by BestAzon has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The 'bestazon' plugin v5.2 exhibits a seemingly strong security posture based on the provided static analysis, with no identified entry points, dangerous functions, or direct SQL injection risks through prepared statements. The absence of known vulnerabilities and a clean vulnerability history further contribute to this impression. However, a significant concern emerges from the low percentage of properly escaped output (14%), indicating a high risk of cross-site scripting (XSS) vulnerabilities. The lack of nonce checks and capability checks, combined with the presence of file operations without explicit analysis of their security context, also raises red flags. While the plugin demonstrates good practices in avoiding direct SQL and minimizing attack vectors, the unescaped output is a critical weakness that could be exploited by attackers to inject malicious scripts.

Key Concerns

  • Low output escaping percentage
  • No nonce checks
  • No capability checks
  • File operations without auth checks implied
Vulnerabilities
None known

Amazon Link Localization by BestAzon Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Amazon Link Localization by BestAzon Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
4
External Requests
0
Bundled Libraries
0

Output Escaping

14% escaped7 total outputs
Attack Surface

Amazon Link Localization by BestAzon Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
actionwp_headBestAzon.php:32
actionadmin_menuBestAzon.php:43
actionadmin_initBestAzon.php:92
actionadmin_noticesBestAzon.php:394
actionadmin_noticesBestAzon.php:399
actionadmin_noticesBestAzon.php:409
actionadmin_noticesBestAzon.php:414
actionwp_footerBestAzon.php:526
Maintenance & Trust

Amazon Link Localization by BestAzon Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedMar 22, 2021
PHP min version
Downloads28K

Community Trust

Rating86/100
Number of ratings44
Active installs100
Developer Profile

Amazon Link Localization by BestAzon Developer Profile

awesomeaffiliateplugins

1 plugin · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Amazon Link Localization by BestAzon

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bestazon/css/BestAzon-Style.css/wp-content/plugins/bestazon/js/BestAzon-AdminScript.js
Script Paths
https://bestazon.io/script/BestAzonScript.js
Version Parameters
BestAzonScript.js?ver=BestAzon-Style.css?ver=BestAzon-AdminScript.js?ver=

HTML / DOM Fingerprints

CSS Classes
BestAzon-Options-PageBestAzon-HeaderBestAzon-HelpTextBestAzon-Form
Data Attributes
data-href="https://www.facebook.com/BestAzon-612162228945721/"
JS Globals
BestAzon_Configuration
FAQ

Frequently Asked Questions about Amazon Link Localization by BestAzon