Influencer Marketing – LinkX.fan Security & Risk Analysis

wordpress.org/plugins/influencer-marketing-linkx-fan

Track Influencer with LinkX.fan - Evaluate influencers and see sales.

0 active installs v1.0.1 PHP 7.0+ WP 5.0+ Updated Aug 19, 2022
influencer-affiliateinfluencer-marketingwoocommerce-influencer
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Influencer Marketing – LinkX.fan Safe to Use in 2026?

Generally Safe

Score 85/100

Influencer Marketing – LinkX.fan has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "influencer-marketing-linkx-fan" plugin v1.0.1 demonstrates a seemingly strong security posture based on the provided static analysis. The absence of any detected dangerous functions, SQL injection vulnerabilities (all queries use prepared statements), file operations, external HTTP requests, and taint flows is a significant positive. Furthermore, the plugin has no recorded vulnerability history, suggesting it has either been free of known security flaws or has been diligently patched.

However, there are notable areas of concern that temper this positive assessment. The extremely low percentage of properly escaped output (24%) represents a significant risk of Cross-Site Scripting (XSS) vulnerabilities. While the plugin has zero entry points identified, this might be due to the static analysis tool's limitations rather than an absence of functionality. Crucially, the complete lack of nonce checks and capability checks on any potential functionality, coupled with zero AJAX handlers and REST API routes without permission callbacks (which implies there are no such handlers or routes exposed), raises questions about how the plugin secures its operations. If any functionality were to be added or discovered, the absence of these fundamental security checks would create an immediate and severe risk.

In conclusion, while the plugin benefits from a clean vulnerability history and secure data handling practices like prepared statements, the high risk of XSS due to inadequate output escaping and the concerning lack of authorization checks are significant weaknesses. The security posture is therefore mixed, with strong foundations in some areas but critical oversights in others that require immediate attention.

Key Concerns

  • Low percentage of properly escaped output
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Influencer Marketing – LinkX.fan Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Influencer Marketing – LinkX.fan Release Timeline

v1.0.2
v1.0.1Current
v1.0
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Influencer Marketing – LinkX.fan Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
19
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

24% escaped25 total outputs
Attack Surface

Influencer Marketing – LinkX.fan Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuadmin.php:11
actionadmin_initadmin.php:41
actionwp_enqueue_scriptsfunction.php:16
actionwoocommerce_thankyoufunction.php:21
Maintenance & Trust

Influencer Marketing – LinkX.fan Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedAug 19, 2022
PHP min version7.0
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Influencer Marketing – LinkX.fan Developer Profile

sahumedia

5 plugins · 1K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Influencer Marketing – LinkX.fan

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/influencer-marketing-linkx-fan/admin.php/wp-content/plugins/influencer-marketing-linkx-fan/function.php
Script Paths
https://linkx.fan/influ/settrack.js

HTML / DOM Fingerprints

JS Globals
emidordertokentrigger_idcurrencyvouchercodeordertotal+1 more
FAQ

Frequently Asked Questions about Influencer Marketing – LinkX.fan