UE Tracker – UTM Track and Analyze Leads For Elementor Security & Risk Analysis
wordpress.org/plugins/ue-tracker-utm-track-and-analyze-leads-for-elementorDiscover which marketing campaigns are actually profitable; which are wasting your time and money. UE Tracker - UTM Track and Analyze Elementor Leads …
Is UE Tracker – UTM Track and Analyze Leads For Elementor Safe to Use in 2026?
Generally Safe
Score 85/100UE Tracker – UTM Track and Analyze Leads For Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "ue-tracker-utm-track-and-analyze-leads-for-elementor" v1.0 demonstrates some good security practices, such as exclusively using prepared statements for all SQL queries and implementing nonce checks on its AJAX handlers. However, there are significant areas of concern. The most alarming finding is a taint flow with an unsanitized path, indicating a potential for vulnerability, even though it's not classified as critical or high severity in the provided data. Furthermore, the output escaping is only at 38%, meaning a substantial portion of output may be vulnerable to cross-site scripting (XSS) attacks. The absence of capability checks on AJAX handlers is also a weakness, as it could allow unauthorized users to trigger sensitive actions.
The plugin's vulnerability history is currently clean, with no recorded CVEs. This, combined with the use of prepared statements and nonce checks, suggests a potentially diligent development approach in some areas. However, the static analysis reveals a lack of comprehensive security measures, particularly regarding output sanitization and authorization checks. The clean vulnerability history might be due to the plugin's limited exposure, recent release, or simply luck, and should not overshadow the identified code-level risks. Overall, while the plugin has a good foundation in terms of SQL security and basic AJAX protection, the significant percentage of unescaped output and the presence of a taint flow with unsanitized paths pose a considerable risk that needs to be addressed.
Key Concerns
- Unsanitized paths in taint flow
- Low percentage of proper output escaping
- No capability checks on AJAX handlers
UE Tracker – UTM Track and Analyze Leads For Elementor Security Vulnerabilities
UE Tracker – UTM Track and Analyze Leads For Elementor Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
UE Tracker – UTM Track and Analyze Leads For Elementor Attack Surface
AJAX Handlers 2
WordPress Hooks 6
Maintenance & Trust
UE Tracker – UTM Track and Analyze Leads For Elementor Maintenance & Trust
Maintenance Signals
Community Trust
UE Tracker – UTM Track and Analyze Leads For Elementor Alternatives
Website Pop-up Builder by BDOW! (formerly Sumo): Pop-ups + forms for email opt-ins and lead generation
sumome
Sumo is trusted by over 600,000 businesses — small and large — in growing their email lists, customer base, and revenue online.
Email Template Designer – WP HTML Mail
wp-html-mail
All in one email template designer for WooCommerce, Ninja Forms, Elementor Forms, Gravity Forms, CF7, Support Plus, EDD, ...
Elemailer Lite – Elementor email template & campaign builder
elemailer-lite
Elemailer is an Elementor addon to create Email templates. It gives you the most flexible design environment to design emails through drag and drop bu …
Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms
cf7-salesforce
Send Contact Form 7, WPforms, Elementor, Ninja Forms, Contact Form Entries Plugin and many other contact form submissions to salesforce.
Email Blacklist For Elementor Forms
email-blacklist-for-elementor-forms
Adds a text area control called "Blacklist" to the Elementor Forms control. Blocks outgoing emails if they match with any on the blacklist.
UE Tracker – UTM Track and Analyze Leads For Elementor Developer Profile
1 plugin · 10 total installs
How We Detect UE Tracker – UTM Track and Analyze Leads For Elementor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ue-tracker-utm-track-and-analyze-leads-for-elementor/assets/images/logo.svgHTML / DOM Fingerprints
ue_track_showsdata-testdata-test2ajaxurl