Emercury Add-on for Elementor PRO Security & Risk Analysis

wordpress.org/plugins/emercury-add-on-for-elementor-pro

Join the 10,000+ customers who use Emercury, an email marketing platform made for lead generators. Sync your customer’s first name, last name, email a …

0 active installs v1.0.5 PHP 7.0+ WP 4.6+ Updated Jun 8, 2025
add-onelementoremailemercurysubscription
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Emercury Add-on for Elementor PRO Safe to Use in 2026?

Generally Safe

Score 100/100

Emercury Add-on for Elementor PRO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The security posture of the "emercury-add-on-for-elementor-pro" v1.0.5 plugin appears to be generally strong based on the static analysis and vulnerability history provided. There are no identified entry points such as AJAX handlers, REST API routes, or shortcodes that are exposed without authentication, which is a significant positive. The code also avoids dangerous functions and utilizes prepared statements for all SQL queries, indicating good practices in these areas. There is also no recorded vulnerability history, which suggests a history of secure development or a lack of past discoveries.

However, there are a couple of areas that warrant attention. The fact that 100% of the output is not properly escaped is a notable concern. While the current analysis shows no active taint flows or exploitable paths, unescaped output can lead to Cross-Site Scripting (XSS) vulnerabilities if malicious data is ever introduced into these output points. Additionally, the absence of nonce checks and capability checks on any potential (though currently non-existent) entry points, along with the presence of an external HTTP request without explicit security context, represent potential weaknesses that could be exploited if new entry points are added or existing code is modified in the future.

In conclusion, the plugin demonstrates a solid foundation in terms of attack surface minimization and secure data handling for SQL. The primary weakness lies in output escaping, which, while not currently leading to exploitable issues, is a persistent risk. The lack of recorded vulnerabilities is positive but should not breed complacency, especially given the identified areas for improvement.

Key Concerns

  • 0% of output properly escaped
  • No nonce checks on entry points
  • No capability checks on entry points
  • External HTTP requests present
Vulnerabilities
None known

Emercury Add-on for Elementor PRO Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Emercury Add-on for Elementor PRO Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

0% escaped2 total outputs
Attack Surface

Emercury Add-on for Elementor PRO Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionplugins_loadedelementor-emercury-add-on.php:46
actionadmin_noticeselementor-emercury-add-on.php:57
filterhttp_request_timeoutelementor-emercury-add-on.php:85
actionelementor_pro/initelementor-emercury-add-on.php:93
Maintenance & Trust

Emercury Add-on for Elementor PRO Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJun 8, 2025
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Emercury Add-on for Elementor PRO Developer Profile

Emercury

5 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Emercury Add-on for Elementor PRO

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/emercury-add-on-for-elementor-pro/assets/css/emercury-custom-style.css/wp-content/plugins/emercury-add-on-for-elementor-pro/assets/js/emercury-custom-script.js
Script Paths
/wp-content/plugins/emercury-add-on-for-elementor-pro/assets/js/emercury-custom-script.js
Version Parameters
/emercury-add-on-for-elementor-pro/assets/css/emercury-custom-style.css?ver=/emercury-add-on-for-elementor-pro/assets/js/emercury-custom-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
elementor-emercury-custom-class
Data Attributes
data-emercury-attribute
JS Globals
EmercuryCustomScript
FAQ

Frequently Asked Questions about Emercury Add-on for Elementor PRO