Cryptocurrency – Coins List, Price List, Ticker & ICOs Security & Risk Analysis

wordpress.org/plugins/cryptocurrency-coins-list-price-list-ticker-icos

A single plugin to create a cryptocurrency website with all the crypto data.

20 active installs v1.0.0 PHP + WP 3.5+ Updated Feb 14, 2020
bitcoincoinmarketcryptocryptocurrencyticker
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Cryptocurrency – Coins List, Price List, Ticker & ICOs Safe to Use in 2026?

Generally Safe

Score 85/100

Cryptocurrency – Coins List, Price List, Ticker & ICOs has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The plugin "cryptocurrency-coins-list-price-list-ticker-icos" v1.0.0 demonstrates a mixed security posture. While it exhibits good practices such as a high percentage of prepared SQL statements and properly escaped outputs, significant concerns arise from its attack surface. Four out of seven total entry points, specifically AJAX handlers, lack authentication checks. This presents a considerable risk, as unauthenticated users could potentially interact with these handlers, leading to unintended actions or information disclosure.

The taint analysis shows one flow with an unsanitized path, though it is not classified as critical or high severity. This indicates a potential for subtle vulnerabilities that might not be immediately apparent. The absence of any recorded vulnerabilities in its history is a positive sign, suggesting a relatively stable codebase. However, this cannot solely offset the identified risks associated with unprotected entry points.

In conclusion, the plugin has strengths in its coding practices regarding data handling and SQL queries. Nevertheless, the unprotected AJAX handlers are a critical weakness that requires immediate attention. The single unsanitized taint flow also warrants further investigation. The lack of historical vulnerabilities is encouraging but does not eliminate the present risks.

Key Concerns

  • Unprotected AJAX handlers
  • Taint flow with unsanitized path
Vulnerabilities
None known

Cryptocurrency – Coins List, Price List, Ticker & ICOs Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Cryptocurrency – Coins List, Price List, Ticker & ICOs Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
8 prepared
Unescaped Output
54
140 escaped
Nonce Checks
3
Capability Checks
8
File Operations
0
External Requests
1
Bundled Libraries
2

Bundled Libraries

Select2DataTables

SQL Query Safety

73% prepared11 total queries

Output Escaping

72% escaped194 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<clpti-settings> (includes\clpti-settings.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
4 unprotected

Cryptocurrency – Coins List, Price List, Ticker & ICOs Attack Surface

Entry Points7
Unprotected4

AJAX Handlers 6

authwp_ajax_cmb2_oembed_handlercmb2\includes\CMB2_Ajax.php:51
noprivwp_ajax_cmb2_oembed_handlercmb2\includes\CMB2_Ajax.php:52
authwp_ajax_crypto_clpti_crypto_server_datacryptocurrency-coins-list-price-list-ticker-icos.php:33
noprivwp_ajax_crypto_clpti_crypto_server_datacryptocurrency-coins-list-price-list-ticker-icos.php:34
authwp_ajax_crypto_clpti_getCryptodatacryptocurrency-coins-list-price-list-ticker-icos.php:35
noprivwp_ajax_crypto_clpti_getCryptodatacryptocurrency-coins-list-price-list-ticker-icos.php:36

Shortcodes 1

[clpti-crypto-widget] includes\clpti-shortcode.php:16
WordPress Hooks 60
filtercmb2_render_pw_selectcmb2\cmb-field-select2\cmb-field-select2.php:17
filtercmb2_render_pw_multiselectcmb2\cmb-field-select2\cmb-field-select2.php:18
filtercmb2_sanitize_pw_multiselectcmb2\cmb-field-select2\cmb-field-select2.php:19
filtercmb2_types_esc_pw_multiselectcmb2\cmb-field-select2\cmb-field-select2.php:20
filtercmb2_repeat_table_row_typescmb2\cmb-field-select2\cmb-field-select2.php:21
actionadmin_initcmb2\cmb2-conditionals.php:53
actionadmin_footercmb2\cmb2-conditionals.php:54
actionplugins_loadedcmb2\cmb2-conditionals.php:218
filterwp_prepare_attachment_for_jscmb2\includes\CMB2.php:1549
actionadmin_enqueue_scriptscmb2\includes\CMB2.php:1567
actioncmb2_save_options-page_fieldscmb2\includes\CMB2_Ajax.php:54
filterget_post_metadatacmb2\includes\CMB2_Ajax.php:147
filterupdate_post_metadatacmb2\includes\CMB2_Ajax.php:150
filtercmb2_show_oncmb2\includes\CMB2_hookup.php:79
actionedit_form_topcmb2\includes\CMB2_hookup.php:115
actionedit_form_before_permalinkcmb2\includes\CMB2_hookup.php:119
actionedit_form_after_titlecmb2\includes\CMB2_hookup.php:123
actionedit_form_after_editorcmb2\includes\CMB2_hookup.php:127
actionadd_meta_boxescmb2\includes\CMB2_hookup.php:131
actionadd_meta_boxescmb2\includes\CMB2_hookup.php:134
actionadd_attachmentcmb2\includes\CMB2_hookup.php:135
actionedit_attachmentcmb2\includes\CMB2_hookup.php:136
actionsave_postcmb2\includes\CMB2_hookup.php:137
actionpre_get_postscmb2\includes\CMB2_hookup.php:144
actionadd_meta_boxes_commentcmb2\includes\CMB2_hookup.php:152
actionedit_commentcmb2\includes\CMB2_hookup.php:153
filtermanage_edit-comments_columnscmb2\includes\CMB2_hookup.php:156
actionmanage_comments_custom_columncmb2\includes\CMB2_hookup.php:157
filtermanage_edit-comments_sortable_columnscmb2\includes\CMB2_hookup.php:158
actionpre_get_postscmb2\includes\CMB2_hookup.php:159
actionshow_user_profilecmb2\includes\CMB2_hookup.php:168
actionedit_user_profilecmb2\includes\CMB2_hookup.php:169
actionuser_new_formcmb2\includes\CMB2_hookup.php:170
actionpersonal_options_updatecmb2\includes\CMB2_hookup.php:172
actionedit_user_profile_updatecmb2\includes\CMB2_hookup.php:173
actionuser_registercmb2\includes\CMB2_hookup.php:174
filtermanage_users_columnscmb2\includes\CMB2_hookup.php:177
filtermanage_users_custom_columncmb2\includes\CMB2_hookup.php:178
filtermanage_users_sortable_columnscmb2\includes\CMB2_hookup.php:179
actionpre_get_postscmb2\includes\CMB2_hookup.php:180
actionpre_get_postscmb2\includes\CMB2_hookup.php:226
actioncreated_termcmb2\includes\CMB2_hookup.php:230
actionedited_termscmb2\includes\CMB2_hookup.php:231
actiondelete_termcmb2\includes\CMB2_hookup.php:232
actioncmb2_do_oembedcmb2\includes\helper-functions.php:131
filteris_protected_metacmb2\includes\rest-api\CMB2_REST.php:144
actioninitcmb2\init.php:118
actioninitcryptocurrency-coins-list-price-list-ticker-icos.php:27
actionwp_enqueue_scriptscryptocurrency-coins-list-price-list-ticker-icos.php:37
filtermanage_crypto_clpti_post_posts_columnscryptocurrency-coins-list-price-list-ticker-icos.php:39
actionmanage_crypto_clpti_post_posts_custom_columncryptocurrency-coins-list-price-list-ticker-icos.php:40
actionafter_setup_themecryptocurrency-coins-list-price-list-ticker-icos.php:42
actionwp_headcryptocurrency-coins-list-price-list-ticker-icos.php:43
actionwp_footercryptocurrency-coins-list-price-list-ticker-icos.php:44
filtermce_external_pluginscryptocurrency-coins-list-price-list-ticker-icos.php:151
filtermce_buttonscryptocurrency-coins-list-price-list-ticker-icos.php:153
actioninitincludes\clpti-settings.php:32
actioncmb2_initincludes\clpti-settings.php:33
actioninitincludes\clpti-settings.php:34
actionadd_meta_boxesincludes\clpti-settings.php:35
Maintenance & Trust

Cryptocurrency – Coins List, Price List, Ticker & ICOs Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedFeb 14, 2020
PHP min version
Downloads8K

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

Cryptocurrency – Coins List, Price List, Ticker & ICOs Developer Profile

Attinder Singh

2 plugins · 10K total installs

71
trust score
Avg Security Score
88/100
Avg Patch Time
175 days
View full developer profile
Detection Fingerprints

How We Detect Cryptocurrency – Coins List, Price List, Ticker & ICOs

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cryptocurrency-coins-list-price-list-ticker-icos/css/clpti-style.css/wp-content/plugins/cryptocurrency-coins-list-price-list-ticker-icos/js/clpti-script.js/wp-content/plugins/cryptocurrency-coins-list-price-list-ticker-icos/js/clpti-mce-button.js
Version Parameters
cryptocurrency-coins-list-price-list-ticker-icos/css/clpti-style.css?ver=cryptocurrency-coins-list-price-list-ticker-icos/js/clpti-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
clpti-chart-wrapperclpti-coin-tableclpti-coin-priceclpti-coin-symbolclpti-coin-name
Data Attributes
data-coin-iddata-symboldata-pricedata-marketcapdata-volumedata-change+5 more
JS Globals
crypto_clpti_ajax_object
REST Endpoints
/wp-json/crypto_clpti/v1/data
Shortcode Output
[crypto_list][crypto_price_list][crypto_ticker][crypto_icos]
FAQ

Frequently Asked Questions about Cryptocurrency – Coins List, Price List, Ticker & ICOs