
Easy Popup Maker Security & Risk Analysis
wordpress.org/plugins/easy-popup-makerThis plugin will help you create effective marketing popups for your blog. Create the most optimal popup to boost your site sales.
Is Easy Popup Maker Safe to Use in 2026?
Generally Safe
Score 100/100Easy Popup Maker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "easy-popup-maker" v1.4 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for SQL queries and having a high percentage of properly escaped output. There's no recorded vulnerability history, which suggests a relatively stable and secure past.
However, significant concerns arise from the static analysis. The plugin exposes two AJAX handlers without any authentication checks, creating a considerable attack surface. Additionally, the taint analysis indicates two flows with unsanitized paths, and while no critical or high severity issues were identified in taint analysis, the presence of unsanitized paths is a potential entry point for malicious input. The lack of nonce checks on the AJAX handlers further exacerbates this risk.
In conclusion, while the plugin avoids common pitfalls like raw SQL injection and significant output escaping issues, the unprotected AJAX endpoints and unsanitized path flows are critical weaknesses. These present a notable risk that requires immediate attention, overshadowing the positive aspects of its SQL and output handling.
Key Concerns
- AJAX handlers without authentication
- Taint flows with unsanitized paths
- Lack of nonce checks on AJAX
Easy Popup Maker Security Vulnerabilities
Easy Popup Maker Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Easy Popup Maker Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 16
Maintenance & Trust
Easy Popup Maker Maintenance & Trust
Maintenance Signals
Community Trust
Easy Popup Maker Alternatives
Advanced Popups
advanced-popups
Display high-converting newsletter popups, a cookie notice, or a notification with the light-weight yet feature-rich plugin.
Easy Notify Lite
easy-notify-lite
The best Popup Builder plugin to display image, video, notify or announcement with very ease and elegant.
Epic Popup Creator
epic-popup-creator
An easy to use and light plugin for creating popup with user friendly interface.
Popup Builder & Popup Maker for WordPress – OptinMonster Email Marketing and Lead Generation
optinmonster
🤩 Make popups & optin forms to get more email newsletter subscribers, leads, and sales - #1 most popular popup builder plugin! 🚀
Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popups Builder
popup-maker
Want to boost sales & marketing efforts? Use your favorite forms & builder. Unlimited popups & impressions, keep your data, no monthly subscription.
Easy Popup Maker Developer Profile
13 plugins · 355K total installs
How We Detect Easy Popup Maker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easy-popup-maker/assets/js/popup.js/wp-content/plugins/easy-popup-maker/assets/css/popup.css/wp-content/plugins/easy-popup-maker/assets/js/popup.jseasy-popup-maker/assets/js/popup.js?ver=easy-popup-maker/assets/css/popup.css?ver=HTML / DOM Fingerprints
radio_sellectedradio_sellected_posradio_image_posradio_image_iconradio_image_sliddata-templatedata-popup-idCPWPWM_POST_IDCPWPWM_POPUP_ID/wp-json/cpwpwm/v1/get_popup_data[easy_popup_maker id="[easy_popup_maker template="