
Bot Block – Stop Spam Referrals in Google Analytics Security & Risk Analysis
wordpress.org/plugins/bot-block-stop-spam-google-analytics-referralsBlock spam referrals showing in Google Analytics and save bandwidth. Central database of sites, ability to add custom URL's and stats.
Is Bot Block – Stop Spam Referrals in Google Analytics Safe to Use in 2026?
Use With Caution
Score 63/100Bot Block – Stop Spam Referrals in Google Analytics has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
This plugin exhibits several concerning security practices. While the attack surface appears minimal with no direct entry points exposed to users, the static analysis reveals a significant lack of fundamental security measures. All SQL queries are executed without prepared statements, a major vulnerability that can lead to SQL injection. Furthermore, no output is properly escaped, creating a high risk of Cross-Site Scripting (XSS) attacks. The absence of nonce and capability checks on any potential entry points (though none are explicitly identified) is also a weakness. The vulnerability history confirms these concerns, showing a past medium-severity XSS vulnerability, which aligns with the unescaped output issue. While the plugin is updated, the persistent nature of these flaws and the historical XSS suggest a need for immediate remediation.
Key Concerns
- Unpatched CVE (Medium severity)
- No SQL prepared statements
- No output escaping
- No nonce checks
- No capability checks
Bot Block – Stop Spam Referrals in Google Analytics Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Bot Block – Stop Spam Referrals in Google Analytics <= 2.6 - Authenticated (Administrator+) Stored Cross-Site Scripting
Bot Block – Stop Spam Referrals in Google Analytics Code Analysis
SQL Query Safety
Output Escaping
Bot Block – Stop Spam Referrals in Google Analytics Attack Surface
WordPress Hooks 6
Scheduled Events 2
Maintenance & Trust
Bot Block – Stop Spam Referrals in Google Analytics Maintenance & Trust
Maintenance Signals
Community Trust
Bot Block – Stop Spam Referrals in Google Analytics Alternatives
Bruce Clay SEO WP
bruce-clay-seo
Next-level SEO plugin! Get on-page guidance per keyword based on analysis of top competitors. See analytics in the WP dashboard.
Easy ToolBox
easy-toolbox
This plugin is simple, all in one and really simplifies your life (SEO, Social networks, Google adsense, GetClicky, button +1, plusone, plus one, Twit …
Exclude IPs From Google Analytics
exclude-ips-from-google-analytics
Exclude IP’s From Google Analytics. You can paste google analytics code in this plugin and it will work.
All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic
all-in-one-seo-pack
AIOSEO is the most powerful WordPress SEO plugin. Improve SEO rankings and traffic with comprehensive SEO tools and smart AI SEO optimizations!
Rank Math SEO – AI SEO Tools to Dominate SEO Rankings
seo-by-rank-math
Rank Math SEO is the best WordPress SEO plugin with the features of many SEO and AI SEO tools in a single package to help multiply your SEO traffic.
Bot Block – Stop Spam Referrals in Google Analytics Developer Profile
1 plugin · 700 total installs
How We Detect Bot Block – Stop Spam Referrals in Google Analytics
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bot-block-stop-spam-google-analytics-referrals/bot-block.css/wp-content/plugins/bot-block-stop-spam-google-analytics-referrals/bot-block.jsBot Block v2.6/wp-content/plugins/bot-block-stop-spam-google-analytics-referrals/bot-block.jsbot-block.css?ver=bot-block.js?ver=HTML / DOM Fingerprints
bot-block-admin-settingsBot Block v2.6 - For help and support please visit: http://www.webresultsdirect.comdata-bot-block-idbot_block_update_script