
Flexible AB Results Security & Risk Analysis
wordpress.org/plugins/flexible-ab-resultsFlexible AB Testing is an easy to use plugin that will help you handle your A/B Testing in less than a few minutes.
Is Flexible AB Results Safe to Use in 2026?
Generally Safe
Score 85/100Flexible AB Results has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "flexible-ab-results" v1.0.0 plugin presents a mixed security posture. On one hand, the lack of known CVEs and a clean vulnerability history is a positive indicator. Furthermore, the majority of SQL queries utilize prepared statements, which is a good practice. However, the static analysis reveals significant areas of concern. The taint analysis showing 6 high severity flows with unsanitized paths is a critical finding, indicating a strong potential for various injection attacks. The extremely low rate of proper output escaping (13%) suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities. The absence of any nonce checks or capability checks on potential entry points, although the attack surface is currently reported as zero, means that if any entry points were introduced or discoverable, they would be unprotected.
While the plugin has no recorded vulnerabilities, this could be due to limited exposure or insufficient prior analysis. The high number of unsanitized taint flows and the poor output escaping are substantial risks that outweigh the lack of historical CVEs. Immediate attention should be given to sanitizing these taint flows and implementing proper output escaping mechanisms to mitigate the risks of code injection and XSS. The presence of file operations without explicit mention of sanitization or context also warrants further investigation.
Key Concerns
- High severity unsanitized taint flows
- Low rate of proper output escaping
- No nonce checks
- No capability checks
Flexible AB Results Security Vulnerabilities
Flexible AB Results Release Timeline
Flexible AB Results Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Flexible AB Results Attack Surface
WordPress Hooks 3
Maintenance & Trust
Flexible AB Results Maintenance & Trust
Maintenance Signals
Community Trust
Flexible AB Results Alternatives
Broken Link Checker
broken-link-checker
Broken Link Checker helps you catch broken links & images fast, before they hurt your SEO or UX. Scan and bulk-fix issues from one easy dashboard.
Broken Link Checker by AIOSEO – Easily Fix/Monitor Internal and External links
broken-link-checker-seo
Broken Link Checker by AIOSEO ensures all links on your website are working. Check your site for broken links and easily fix them to improve SEO.
Flexible SSL for CloudFlare
cloudflare-flexible-ssl
Fix For Redirect Loops on WordPress with CloudFlare's Flexible/Universal SSL.
External Links – nofollow, noopener & new window
wp-external-links
Internal links & external links manager: open in new window or tab, control nofollow, ugc, sponsored & noopener. SEO friendly.
External Links in New Window / New Tab
open-external-links-in-a-new-window
Open external links in a new window or new tab. SEO optimized and XHTML Strict compliant.
Flexible AB Results Developer Profile
2 plugins · 40 total installs
How We Detect Flexible AB Results
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/flexible-ab-results/assets/hint.css/wp-content/plugins/flexible-ab-results/assets/bootstrap.min.js/wp-content/plugins/flexible-ab-results/assets/admin-style-bootstrap.css/wp-content/plugins/flexible-ab-results/assets/admin-style.css/wp-content/plugins/flexible-ab-results/assets/bootstrap.min.jsHTML / DOM Fingerprints
bootstrap_environmentdata-hint