
Kw Modern Advertise Security & Risk Analysis
wordpress.org/plugins/kw-modern-advertiseMake background images clickable with randomize options and priority displaying option.
Is Kw Modern Advertise Safe to Use in 2026?
Generally Safe
Score 100/100Kw Modern Advertise has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "kw-modern-advertise" plugin v1.2.3 presents a mixed security posture. On the positive side, there is no recorded vulnerability history, suggesting a potentially well-maintained or less targeted plugin. The static analysis also indicates a small attack surface with no publicly documented entry points like AJAX handlers, REST API routes, or shortcodes without authentication checks, which is a strong security indicator.
However, significant concerns arise from the code signals. The most critical finding is that 100% of output is not properly escaped, posing a high risk of Cross-Site Scripting (XSS) vulnerabilities. Additionally, the taint analysis reveals two flows with unsanitized paths, both flagged as high severity. These indicate potential pathways where untrusted input could be processed without adequate sanitization, leading to security issues. The absence of nonce and capability checks further exacerbates these risks, as there are no built-in mechanisms to verify user authorization or prevent Cross-Site Request Forgery (CSRF) on any identified entry points (even though the attack surface appears limited).
While the plugin's lack of historical CVEs is reassuring, the current static analysis reveals critical areas for improvement. The high percentage of unescaped output combined with unsanitized taint flows is a significant weakness that needs immediate attention. The absence of nonce and capability checks, while not directly indicated as exploitable due to the limited attack surface, represents a missed security best practice that could become an issue if new entry points are added or if existing ones have subtle bypasses. Therefore, despite the clean vulnerability history, the internal code analysis flags substantial risks.
Key Concerns
- 100% of output not properly escaped
- 2 high severity unsanitized taint flows
- 0 nonce checks
- 0 capability checks
Kw Modern Advertise Security Vulnerabilities
Kw Modern Advertise Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Kw Modern Advertise Attack Surface
WordPress Hooks 4
Maintenance & Trust
Kw Modern Advertise Maintenance & Trust
Maintenance Signals
Community Trust
Kw Modern Advertise Alternatives
Enable Media Replace
enable-media-replace
Easily replace any attached image/file by simply uploading a new file in the Media Library edit view - a real time saver!
Companion Auto Update
companion-auto-update
Manage all updates on your WordPress site. Stay in the know with several optional e-mail notifications and logs. For free.
OoohBoi Steroids for Elementor
ooohboi-steroids-for-elementor
Boost your Elementor with some fresh and yet innovative options.
Advanced WordPress Backgrounds
advanced-backgrounds
Easy to use advanced Parallax, Image and Video backgrounds block plugin with parallax and video support.
Simple Full Screen Background Image
simple-full-screen-background-image
This plugin provides a simple way to set an automatically scaled full screen background image.
Kw Modern Advertise Developer Profile
7 plugins · 70 total installs
How We Detect Kw Modern Advertise
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/kw-modern-advertise/css/admin.css/wp-content/plugins/kw-modern-advertise/js/jpages.min.jsHTML / DOM Fingerprints
cliczone-advert-leftcliczone-advert-rightkma-wrapper<div id="kma-wrapper"><a href=""><div id="cliczone-advert-left"> </div></a><a href=""><div id="cliczone-advert-right"> </div></a></div>