
NS Tweet Security & Risk Analysis
wordpress.org/plugins/ns-tweetTwitter Widget for your Site with Slider option.
Is NS Tweet Safe to Use in 2026?
Generally Safe
Score 85/100NS Tweet has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The ns-tweet plugin v1.0 exhibits a mixed security posture. While it demonstrates good practices in avoiding raw SQL queries by using prepared statements and has no recorded historical vulnerabilities, several significant concerns are present. The complete lack of output escaping is a critical flaw, exposing users to potential Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the absence of nonce and capability checks on its single entry point (a shortcode) means that any user, regardless of their privilege level, can trigger its functionality, potentially leading to unintended actions or information disclosure. The use of `create_function`, a deprecated and often unsafe PHP function, adds another layer of risk. While the attack surface is small and there are no identified taint flows or unpatched CVEs, the critical issues in output escaping and authentication are substantial and require immediate attention. The plugin's historical lack of vulnerabilities is positive, but this should not overshadow the current, significant security weaknesses.
Key Concerns
- 0% properly escaped output
- 0 nonce checks
- 0 capability checks
- 1 dangerous function (create_function)
NS Tweet Security Vulnerabilities
NS Tweet Code Analysis
Dangerous Functions Found
Output Escaping
NS Tweet Attack Surface
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
NS Tweet Maintenance & Trust
Maintenance Signals
Community Trust
NS Tweet Alternatives
Customize Feeds for Twitter
twitter-tweets
Customize Feeds for Twitter plugin for WordPress. You can use this to display real time Twitter feeds on any where on your website by using shortcode …
Twiget Twitter Widget
twiget
A widget to display the latest Twitter status updates.
Ultimate Twitter Feeds
ultimate-twitter-feeds
Ultimate Twitter Feeds allows you to display customizable Twitter Tweets from any user timeline, any user Twitter List and single Tweet on your websi …
FireCask’s Twitter Follow Button
twitter-follow
Quickly adds the Twitter follow button. Can be easily implemented into your page, post or theme template
Ultimate twitter profile widget
ultimate-twitter-profile-widget
Ultimate twitter profile widget. Plugin shows your tweets on Page/Post/Widget area.
NS Tweet Developer Profile
2 plugins · 40 total installs
How We Detect NS Tweet
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.