MAIRDUMONT NETLETIX Ads Security & Risk Analysis

wordpress.org/plugins/nx-ads

MAIRDUMONT NETLETIX ads integration. This plugin is only for publishers who have a marketing contract with MAIRDUMONT NETLETIX.

30 active installs v1.0.1 PHP 5.2.4+ WP 4.0+ Updated Jun 25, 2020
adsadvertisingbannerbanner-adsnetletix
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is MAIRDUMONT NETLETIX Ads Safe to Use in 2026?

Generally Safe

Score 85/100

MAIRDUMONT NETLETIX Ads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The nx-ads plugin version 1.0.1 presents a mixed security posture. On the positive side, there are no known vulnerabilities (CVEs) recorded, and the code demonstrates a good adherence to secure coding practices, particularly in its SQL query handling, which exclusively uses prepared statements. Furthermore, the plugin implements nonce and capability checks, indicating an effort to protect its functionalities. However, significant concerns arise from the static analysis. The taint analysis reveals two flows with unsanitized paths, which, while not classified as critical or high severity in this instance, represent potential avenues for injection vulnerabilities if exploited under different conditions. A more pronounced issue is the low percentage (19%) of properly escaped outputs, suggesting a high risk of Cross-Site Scripting (XSS) vulnerabilities, as a large number of potential outputs are not being adequately sanitized before rendering.

The absence of known vulnerabilities in its history is a strength, but it doesn't negate the risks identified in the static analysis. The low number of entry points and the presence of some auth checks are positive indicators, but the 0 unprotected entry points might be misleading given the identified unsanitized paths and poor output escaping. The plugin's strengths lie in its SQL handling and use of nonces/capabilities. Its primary weaknesses are the unsanitized paths identified in taint analysis and, most critically, the widespread lack of output escaping, which opens it up to XSS attacks. Developers should prioritize addressing the output escaping issues.

Key Concerns

  • Unsanitized paths in taint analysis
  • Low percentage of properly escaped output
Vulnerabilities
None known

MAIRDUMONT NETLETIX Ads Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

MAIRDUMONT NETLETIX Ads Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
62
15 escaped
Nonce Checks
1
Capability Checks
5
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

19% escaped77 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

3 flows2 with unsanitized paths
edit_form_before_permalink (admin\class-nx-ads-admin.php:222)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

MAIRDUMONT NETLETIX Ads Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 20
actionplugins_loadedincludes\class-nx-ads.php:31
actionadmin_enqueue_scriptsincludes\class-nx-ads.php:37
actionadmin_menuincludes\class-nx-ads.php:38
actionwidgets_initincludes\class-nx-ads.php:39
actionadmin_initincludes\class-nx-ads.php:40
actionafter_wp_tiny_mceincludes\class-nx-ads.php:41
actionadmin_noticesincludes\class-nx-ads.php:42
actionedit_form_before_permalinkincludes\class-nx-ads.php:43
actionpage_row_actionsincludes\class-nx-ads.php:44
actionpost_row_actionsincludes\class-nx-ads.php:45
actionadd_meta_boxesincludes\class-nx-ads.php:46
actionsave_postincludes\class-nx-ads.php:47
filtermce_external_pluginsincludes\class-nx-ads.php:53
filtermce_buttonsincludes\class-nx-ads.php:54
actionwp_enqueue_scriptsincludes\class-nx-ads.php:64
actionwp_enqueue_scriptsincludes\class-nx-ads.php:65
actionwp_headincludes\class-nx-ads.php:66
actionwp_headincludes\class-nx-ads.php:67
actionthe_contentincludes\class-nx-ads.php:68
filterscript_loader_tagincludes\class-nx-ads.php:69
Maintenance & Trust

MAIRDUMONT NETLETIX Ads Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedJun 25, 2020
PHP min version5.2.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

MAIRDUMONT NETLETIX Ads Developer Profile

mdnx

1 plugin · 30 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MAIRDUMONT NETLETIX Ads

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/nx-ads/admin/css/nx-ads-admin.css/wp-content/plugins/nx-ads/admin/js/nx-ads-app.js/wp-content/plugins/nx-ads/admin/js/nx-ads-admin.js/wp-content/plugins/nx-ads/admin/js/nx-ads-editor-plugin.js
Script Paths
/wp-content/plugins/nx-ads/admin/js/nx-ads-app.js/wp-content/plugins/nx-ads/admin/js/nx-ads-admin.js/wp-content/plugins/nx-ads/admin/js/nx-ads-editor-plugin.js
Version Parameters
nx-ads-admin.css?ver=nx-ads-app.js?ver=nx-ads-admin.js?ver=nx-ads-editor-plugin.js?ver=

HTML / DOM Fingerprints

CSS Classes
nx-ads-editor-pluginnxAdsData
HTML Comments
<!-- Insert MD-NX ad container --><!-- Default -->
Data Attributes
id="nxAdsData"name="nx_ads_zone"
JS Globals
NX_ADS_FULLBRANDNX_ADS_BRANDNX_ADS_TITLENX_ADS_VERSIONNX_ADS_VARNX_ADS_DOMAIN
FAQ

Frequently Asked Questions about MAIRDUMONT NETLETIX Ads