
Twitter for WordPress Extended 2 Security & Risk Analysis
wordpress.org/plugins/twitter-extentedTwitter for WordPress Extended 2 shows your tweets, tweets for a search term (e.g. a tag), your friends timeline or the current twitter trends.
Is Twitter for WordPress Extended 2 Safe to Use in 2026?
Generally Safe
Score 85/100Twitter for WordPress Extended 2 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "twitter-extented" v1.0.3.1 plugin exhibits a mixed security posture. On the positive side, the plugin has no recorded vulnerabilities (CVEs) and shows no evidence of critical or high-severity issues from taint analysis, indicating good development practices regarding common vulnerability types and known exploits. Furthermore, all SQL queries are prepared, and there are no external HTTP requests or bundled libraries to worry about.
However, significant concerns arise from the static analysis. The complete absence of nonce and capability checks, coupled with a lack of proper output escaping (only 6% properly escaped), creates a substantial risk. This means that data displayed to users or processed by the plugin could be manipulated by unauthenticated or low-privileged users, potentially leading to cross-site scripting (XSS) or other injection attacks. The presence of file operations without clear context also warrants attention.
In conclusion, while the plugin benefits from a clean vulnerability history and secure database practices, the identified weaknesses in input validation and output sanitization present a clear and present danger. The lack of fundamental security checks makes it highly susceptible to common web attacks, outweighing its strengths.
Key Concerns
- Low output escaping percentage
- Missing nonce checks
- Missing capability checks
- File operations without context
Twitter for WordPress Extended 2 Security Vulnerabilities
Twitter for WordPress Extended 2 Code Analysis
Output Escaping
Twitter for WordPress Extended 2 Attack Surface
WordPress Hooks 3
Maintenance & Trust
Twitter for WordPress Extended 2 Maintenance & Trust
Maintenance Signals
Community Trust
Twitter for WordPress Extended 2 Alternatives
Custom Twitter Feeds – A Tweets Widget or X Feed Widget
custom-twitter-feeds
Display X posts (Twitter tweets) from any public user account in a clean, attractive looking feed that updates weekly.
Easy Twitter Feed Widget Plugin
easy-twitter-feed-widget
Add twitter feeds on your WordPress site by using the Easy Twitter Feed Widget plugin.
Customize Feeds for Twitter
twitter-tweets
Customize Feeds for Twitter plugin for WordPress. You can use this to display real time Twitter feeds on any where on your website by using shortcode …
WP Twitter Feeds
wp-twitter-feeds
WP Twitter Feeds - A simple widget which lets you add your latest tweets in just a few clicks on your website.
Juiz Last Tweet Widget
juiz-last-tweet-widget
Add a widget to your sidebar to show your latest tweet(s) with style and without JavaScript! Retweet, Favorite and Reply links are available.
Twitter for WordPress Extended 2 Developer Profile
1 plugin · 10 total installs
How We Detect Twitter for WordPress Extended 2
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/twitter-extented/twitter_extended.css/wp-content/plugins/twitter-extented/twitter_extended.jstwitter-extented/twitter_extended.css?ver=twitter-extented/twitter_extended.js?ver=HTML / DOM Fingerprints
twittertwitter-itemtwitter-tag-messagedata-twitter-widget-idtwitter_extended_options/wp-json/twitter/v1/get_tweets[twitter_extended_display]