
Ethne Favorites Button Security & Risk Analysis
wordpress.org/plugins/ethne-favouritesFavorite buttons for WordPress, Shortcodes to save and list favorite posts and pages for each user.
Is Ethne Favorites Button Safe to Use in 2026?
Generally Safe
Score 85/100Ethne Favorites Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'ethne-favourites' plugin v1.0.8 exhibits a poor security posture due to a significant number of unprotected entry points. The static analysis reveals 5 total entry points, with a concerning 4 of them lacking authentication checks. This indicates a high likelihood of unauthorized access and potential manipulation of plugin functionalities. Furthermore, the complete absence of output escaping and the use of raw SQL queries without prepared statements are critical security flaws that can lead to cross-site scripting (XSS) and SQL injection vulnerabilities, respectively. The lack of nonce checks on AJAX handlers exacerbates the risk of CSRF attacks. Despite no recorded vulnerability history or critical taint flows, the observed coding practices present substantial inherent risks that could be exploited by attackers. While the plugin has no known vulnerabilities and a clean history, this is likely due to its current lack of rigorous security testing or the absence of widespread adoption, rather than robust security measures. Therefore, immediate remediation of the identified security weaknesses is strongly advised.
Key Concerns
- 4 AJAX handlers without auth checks
- 1 shortcode without auth checks
- 1 SQL query without prepared statements
- 5 outputs not properly escaped
- 0 Nonce checks
- 0 Capability checks
Ethne Favorites Button Security Vulnerabilities
Ethne Favorites Button Code Analysis
SQL Query Safety
Output Escaping
Ethne Favorites Button Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Ethne Favorites Button Maintenance & Trust
Maintenance Signals
Community Trust
Ethne Favorites Button Alternatives
WP Favorite Posts Extended
wp-favorite-posts-extended
wp-favorite-posts, reading list, post list, post lists, lists Requires at least: 3.5 Tested up to: 4.0 Stable tag: 0.1 Based on plugin "WP Favor …
Jiali User Bookmarks
jiali-user-bookmarks
Let your visitors easily bookmark, save, or favorite posts! Lightweight, AJAX-powered plugin to boost user engagement and interactivity. 📑✨
Techvoot Favourites for WooCommerce
techvoot-favourites-for-woocommerce
Lets WooCommerce customers save products as Favourites for quick reordering, with admin tools to manage each user's saved products.
Favorites
favorites
Favorites for any post type. Easily add favoriting/liking, wishlists, or any other similar functionality using the developer-friendly API.
HivePress Favorites
hivepress-favorites
Allow users to keep a list of favorite listings.
Ethne Favorites Button Developer Profile
1 plugin · 0 total installs
How We Detect Ethne Favorites Button
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ethne-favourites/ethne-base.css/wp-content/plugins/ethne-favourites/ethne.js/wp-content/plugins/ethne-favourites/ethne.jsethne-favourites/ethne-base.css?ver=ethne-favourites/ethne.js?ver=HTML / DOM Fingerprints
favorites-buttonfavorites-remove-buttonfavorite-displaydata-idethne<button class="favorites-button"<button class='favorites-remove-button'<div class="favorite-display"><a href='