
TwitterRSS Stats Security & Risk Analysis
wordpress.org/plugins/twitter-rss-social-statsSimple plug-in that displays your Twitter Followers & Rss Subscibers Stats. Just activate & setup this widget.
Is TwitterRSS Stats Safe to Use in 2026?
Generally Safe
Score 85/100TwitterRSS Stats has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The security posture of the 'twitter-rss-social-stats' v1.0 plugin presents a mixed bag of good practices and concerning omissions. On the positive side, the plugin exhibits a clean bill of health regarding known vulnerabilities, with zero recorded CVEs. Furthermore, its SQL queries are correctly implemented using prepared statements, and there are no external HTTP requests, reducing certain attack vectors. However, the static analysis reveals significant weaknesses, most notably the complete absence of output escaping for all 12 identified outputs. This is a critical flaw that could lead to cross-site scripting (XSS) vulnerabilities if any user-controlled data is displayed without proper sanitization. Additionally, the lack of nonce checks and capability checks, coupled with zero protected entry points, means that any potential interaction points could be exploited without proper authentication or authorization, especially if a future version expands the attack surface. The absence of taint analysis results might indicate limited analysis depth or that the current codebase, despite its flaws, didn't present obvious taint flows in the analyzed scope.
Key Concerns
- No output escaping
- No nonce checks
- No capability checks
TwitterRSS Stats Security Vulnerabilities
TwitterRSS Stats Code Analysis
SQL Query Safety
Output Escaping
TwitterRSS Stats Attack Surface
WordPress Hooks 2
Maintenance & Trust
TwitterRSS Stats Maintenance & Trust
Maintenance Signals
Community Trust
TwitterRSS Stats Alternatives
iconcy.com Website Toolbar
mit3xxxde-toolbar
Adds the iconcy.com toolbar to your website.
Juiz Last Tweet Widget
juiz-last-tweet-widget
Add a widget to your sidebar to show your latest tweet(s) with style and without JavaScript! Retweet, Favorite and Reply links are available.
Twiget Twitter Widget
twiget
A widget to display the latest Twitter status updates.
Good Old Twitter Feed Widget
good-old-twitter-feed-widget
Shows the latest tweets from a Twitter account in a sidebar widget.
Any User Twitter Feed
any-user-twitter-feed
Embed anyone's Twitter Timeline using only their username, or display tweets based on a keyword. Fully compatible with the latest Twitter API and …
TwitterRSS Stats Developer Profile
2 plugins · 20 total installs
How We Detect TwitterRSS Stats
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/twitter-rss-social-stats/css/style.css/wp-content/plugins/twitter-rss-social-stats/img/twitter.png/wp-content/plugins/twitter-rss-social-stats/img/rss_feed.png/wp-content/plugins/twitter-rss-social-stats/img/rss_email.pngHTML / DOM Fingerprints
widget_hello_worldsidebarContainersubscribeSidebarBoxicontitlecountid="sidebarSubscribe"id="followTwitter"class="subscribeSidebarBox"id="subscribeRSS"id="subscribeEmail"