Easy Announcement Bar Security & Risk Analysis

wordpress.org/plugins/easy-announcement-bar

Easy Announcement Bar plugin adds a customizable, scrolling announcement bar to your WordPress site.

30 active installs v1.2.0 PHP 7.4+ WP 6.0+ Updated Apr 17, 2025
announcementmessagesnotificationpromotionvisibility
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy Announcement Bar Safe to Use in 2026?

Generally Safe

Score 100/100

Easy Announcement Bar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The static analysis of easy-announcement-bar v1.2.0 indicates a strong security posture from a code perspective. There are no identified dangerous functions, SQL queries are all prepared, and all output is properly escaped. The absence of file operations, external HTTP requests, and bundled libraries further reduces potential attack vectors. Taint analysis also shows no critical or high severity flows, suggesting that data handling within the plugin is generally safe.

However, the complete lack of any authorization checks (nonce, capability) across all entry points (AJAX, REST API, shortcodes, cron events) is a significant concern. While the current version may have a small attack surface, any future addition of features that introduce these entry points without proper authentication could lead to immediate vulnerabilities. The plugin's history of zero known CVEs is positive and suggests good development practices, but it cannot entirely mitigate the risk posed by the current absence of security controls on its entry points.

Key Concerns

  • No capability checks on entry points
  • No nonce checks on entry points
Vulnerabilities
None known

Easy Announcement Bar Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Easy Announcement Bar Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
34 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped34 total outputs
Attack Surface

Easy Announcement Bar Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_initannouncement-bar.php:68
actionadmin_enqueue_scriptsannouncement-bar.php:78
actionwp_enqueue_scriptsannouncement-bar.php:87
actionwp_body_openannouncement-bar.php:144
actionadmin_menuincludes\admin-settings.php:13
Maintenance & Trust

Easy Announcement Bar Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 17, 2025
PHP min version7.4
Downloads567

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Easy Announcement Bar Developer Profile

Amzil Ayoub

6 plugins · 30 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy Announcement Bar

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-announcement-bar/assets/css/admin.css/wp-content/plugins/easy-announcement-bar/assets/js/admin.js/wp-content/plugins/easy-announcement-bar/assets/css/frontend.css/wp-content/plugins/easy-announcement-bar/assets/js/frontend.js
Script Paths
/wp-content/plugins/easy-announcement-bar/assets/js/admin.js/wp-content/plugins/easy-announcement-bar/assets/js/frontend.js
Version Parameters
easy-announcement-bar/assets/css/admin.css?ver=easy-announcement-bar/assets/js/admin.js?ver=easy-announcement-bar/assets/css/frontend.css?ver=easy-announcement-bar/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
announcement-barmarquee-containermarqueemarquee-leftmarquee-rightab-close-button
Data Attributes
data-timer
FAQ

Frequently Asked Questions about Easy Announcement Bar