
Show Twitter Followers Security & Risk Analysis
wordpress.org/plugins/show-twitter-followersShow Twitter Followers does what its name says-display your twitter followers in the sidebar as a widget.
Is Show Twitter Followers Safe to Use in 2026?
Generally Safe
Score 85/100Show Twitter Followers has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "show-twitter-followers" plugin, v1.0.4, presents a mixed security posture. On the positive side, there are no recorded vulnerabilities (CVEs), no critical or high-severity taint flows, and no dangerous functions are used. The plugin also demonstrates good practices with a high percentage of SQL queries utilizing prepared statements.
However, significant concerns arise from the static analysis. The complete lack of nonce checks and capability checks, especially in conjunction with potential file operations and external HTTP requests, creates a substantial risk. While the attack surface appears small, the absence of authentication and authorization checks on any potential entry points (even if currently reported as zero) is a critical oversight. Furthermore, only 35% of output is properly escaped, indicating a risk of cross-site scripting (XSS) vulnerabilities. The presence of file operations and external HTTP requests without these crucial checks further exacerbates the security concerns.
In conclusion, while the plugin has a clean vulnerability history, the static analysis reveals a lack of fundamental security controls. The absence of nonce and capability checks, coupled with insufficient output escaping, points to a plugin that could be exploited for XSS or other malicious actions. The current data suggests a need for significant security hardening before it can be considered safe for production use.
Key Concerns
- No nonce checks present
- No capability checks present
- Insufficient output escaping (35% proper)
- File operations present without auth checks
- External HTTP requests present without auth checks
Show Twitter Followers Security Vulnerabilities
Show Twitter Followers Release Timeline
Show Twitter Followers Code Analysis
SQL Query Safety
Output Escaping
Show Twitter Followers Attack Surface
WordPress Hooks 4
Scheduled Events 1
Maintenance & Trust
Show Twitter Followers Maintenance & Trust
Maintenance Signals
Community Trust
Show Twitter Followers Alternatives
My Twitter Timelines
my-twitter-timelines
My Twitter Timelines is an all-in-one Twitter widget. With this widget, you can display the following: Twitter user timelines, User favorites, Search …
Custom Twitter Feeds – A Tweets Widget or X Feed Widget
custom-twitter-feeds
Display X posts (Twitter tweets) from any public user account in a clean, attractive looking feed that updates weekly.
Easy Twitter Feed Widget Plugin
easy-twitter-feed-widget
Add twitter feeds on your WordPress site by using the Easy Twitter Feed Widget plugin.
Social Like Box and Page by WpDevArt
like-box
WordPress Facebook Like box plugin will help you to display like box on your website, just add our plugin widget to your sidebar and use it.
Customize Feeds for Twitter
twitter-tweets
Customize Feeds for Twitter plugin for WordPress. You can use this to display real time Twitter feeds on any where on your website by using shortcode …
Show Twitter Followers Developer Profile
1 plugin · 30 total installs
How We Detect Show Twitter Followers
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/show-twitter-followers/css/style.css/wp-content/plugins/show-twitter-followers/js/twitter-followers.js/wp-content/plugins/show-twitter-followers/js/twitter-followers.jsshow-twitter-followers/css/style.css?ver=show-twitter-followers/js/twitter-followers.js?ver=HTML / DOM Fingerprints
widget_show_twitter_followersstfstfheadstfstatusstfheadlinkstfbodystffandata-stf_usernamedata-stf_numberdata-stf_borderdata-stf_head_linkdata-stf_head_bgdata-stf_body_bg+3 morewindow.stf_usernamewindow.stf_numberwindow.stf_borderwindow.stf_head_linkwindow.stf_head_bgwindow.stf_body_bg+12 more[show_twitter_followers][show-twitter-followers]