T4B News Ticker – Responsive News Scroller, Slider, and Animations Security & Risk Analysis

wordpress.org/plugins/t4b-news-ticker

T4B News Ticker is a flexible and user-friendly news ticker plugin for WordPress, designed to create horizontal news tickers with 4 unique animations.

7K active installs v1.4.4 PHP 7.4+ WP 5.2+ Updated Mar 7, 2026
breaking-newsnews-tickerscrolltickertrending
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is T4B News Ticker – Responsive News Scroller, Slider, and Animations Safe to Use in 2026?

Generally Safe

Score 100/100

T4B News Ticker – Responsive News Scroller, Slider, and Animations has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 27d ago
Risk Assessment

The t4b-news-ticker plugin version 1.4.4 exhibits a generally strong security posture based on the provided static analysis. The absence of any identified critical or high severity taint flows, dangerous functions, or raw SQL queries is commendable. Furthermore, the plugin demonstrates good practices in output escaping, with 91% of outputs being properly handled, and utilizes prepared statements for its SQL queries. The presence of a capability check on its single entry point, the shortcode, suggests some level of authorization is considered.

However, there are areas for improvement. The lack of nonce checks across all entry points, especially since there are no explicit authentication checks on the identified AJAX handlers (though the count is zero), represents a potential weakness. While there are currently no known CVEs or vulnerability history, this doesn't guarantee future safety. A robust security strategy often involves proactive measures against common attack vectors, even if specific vulnerabilities haven't manifested yet.

In conclusion, t4b-news-ticker v1.4.4 appears to be a relatively secure plugin with a good foundation. The developers have clearly put effort into sanitizing output and using prepared statements. The primary concern lies in the absence of nonce checks, which could be a vector for certain types of attacks if the plugin's functionality were to evolve or if it interacts with other components in unexpected ways. The zero vulnerability history is a positive sign, but ongoing vigilance and implementation of best practices like nonce checks are crucial for maintaining security.

Key Concerns

  • Missing nonce checks on entry points
Vulnerabilities
None known

T4B News Ticker – Responsive News Scroller, Slider, and Animations Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

T4B News Ticker – Responsive News Scroller, Slider, and Animations Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
18
187 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

91% escaped205 total outputs
Attack Surface

T4B News Ticker – Responsive News Scroller, Slider, and Animations Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[t4b-ticker] actions\ticker-shortcode.php:26
WordPress Hooks 10
actionpre_get_postsactions\t4bnt-functions.php:24
actionplugins_loadedinc\init-t4bnt.php:29
actionadmin_initinc\init-t4bnt.php:32
actionadmin_initinc\init-t4bnt.php:35
actionadmin_noticesinc\init-t4bnt.php:130
actionwp_enqueue_scriptsinc\t4bnt-enqueue.php:24
actionplugins_loadednews-ticker.php:27
actionadmin_enqueue_scriptssettings\t4bnt-class.settings-api.php:34
actionadmin_initsettings\ticker-settings.php:38
actionadmin_menusettings\ticker-settings.php:41
Maintenance & Trust

T4B News Ticker – Responsive News Scroller, Slider, and Animations Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 7, 2026
PHP min version7.4
Downloads126K

Community Trust

Rating90/100
Number of ratings15
Active installs7K
Developer Profile

T4B News Ticker – Responsive News Scroller, Slider, and Animations Developer Profile

Realwebcare

9 plugins · 9K total installs

75
trust score
Avg Security Score
94/100
Avg Patch Time
119 days
View full developer profile
Detection Fingerprints

How We Detect T4B News Ticker – Responsive News Scroller, Slider, and Animations

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/t4b-news-ticker/css/owl.carousel.min.css/wp-content/plugins/t4b-news-ticker/css/owl.theme.default.min.css/wp-content/plugins/t4b-news-ticker/css/style.css/wp-content/plugins/t4b-news-ticker/js/owl.carousel.min.js/wp-content/plugins/t4b-news-ticker/js/t4bnt-script.js
Script Paths
/wp-content/plugins/t4b-news-ticker/js/owl.carousel.min.js/wp-content/plugins/t4b-news-ticker/js/t4bnt-script.js
Version Parameters
t4b-news-ticker/css/owl.carousel.min.css?ver=t4b-news-ticker/css/owl.theme.default.min.css?ver=t4b-news-ticker/css/style.css?ver=t4b-news-ticker/js/owl.carousel.min.js?ver=t4b-news-ticker/js/t4bnt-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
t4bnt-news-ticker-wrapper
HTML Comments
<!-- BEGIN T4B NT --><!-- END T4B NT -->
Data Attributes
data-ticker-id
JS Globals
t4bnt_settings
Shortcode Output
[t4b-ticker]
FAQ

Frequently Asked Questions about T4B News Ticker – Responsive News Scroller, Slider, and Animations