
Wask Marketing Security & Risk Analysis
wordpress.org/plugins/wask-marketingManage your Facebook, Google assets and facebook pixel, facebook audience easily.
Is Wask Marketing Safe to Use in 2026?
Generally Safe
Score 85/100Wask Marketing has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wask-marketing" plugin v1.23 exhibits a concerning security posture due to a significant number of unprotected AJAX handlers and a lack of capability checks. The static analysis reveals that all 5 AJAX handlers are exposed without authentication, creating a substantial attack surface that could be exploited by unauthenticated users. Furthermore, the plugin's SQL queries are not using prepared statements, which is a significant risk for SQL injection vulnerabilities, especially when combined with the lack of input sanitization indicated by the taint analysis.
The taint analysis shows 6 out of 8 flows with unsanitized paths, suggesting potential issues with how data is handled within the plugin. While there are no known CVEs or recorded vulnerabilities for this plugin, this lack of history does not negate the immediate risks identified in the static analysis. The plugin's strengths lie in its lack of dangerous functions and file operations, and the presence of some output escaping. However, these are overshadowed by the critical security concerns related to unprotected entry points and insecure data handling practices.
Overall, "wask-marketing" v1.23 presents a high risk due to its easily exploitable AJAX endpoints and potential for SQL injection. The absence of proper authorization and sanitization on these critical entry points, coupled with the use of raw SQL queries, makes it a prime target for malicious actors. The plugin needs significant improvements in its authentication, authorization, and data sanitization mechanisms to be considered secure.
Key Concerns
- 5 AJAX handlers without auth checks
- 6 Flows with unsanitized paths
- 1 SQL query using 0% prepared statements
- 31% properly escaped output
- 0 Capability checks
- 2 Nonce checks (out of 5 entry points)
Wask Marketing Security Vulnerabilities
Wask Marketing Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Wask Marketing Attack Surface
AJAX Handlers 5
WordPress Hooks 3
Maintenance & Trust
Wask Marketing Maintenance & Trust
Maintenance Signals
Community Trust
Wask Marketing Alternatives
Insert Headers And Footers
wp-headers-and-footers
Include inline javascript, stylesheets, CSS code or anything you want in Header and Footer areas of your WordPress with ease.
Kliken: Ads + Pixel for Meta
kliken-ads-pixel-for-meta
Drive Sales on Facebook and Instagram in 5 minutes—upload your catalog, implement the Meta Pixel & Conversions API, and grow via Meta Advantage+ now.
Pixel Manager for WooCommerce – Conversion Tracking, Google Ads, GA4, TikTok, Dynamic Remarketing
woocommerce-google-adwords-conversion-tracking-tag
Conversion tracking for WooCommerce. Google Ads, GA4, Meta/Facebook Pixel, TikTok & more. Recover 30% more conversions with server-side tracking!
Tag Manager – Header, Body And Footer
tag-manager-header-body-footer
Simple plugin that allow you add head, body and footer codes for google tag manager, analytics & facebook pixel codes.
Conversios: Google Analytics (GA4), Google Ads, Conversion and Analytics Tracking for Multi-Channels
enhanced-e-commerce-for-woocommerce-store
Track GA4 Analytics, Google Ads, Microsoft Ads, & Conversion with server-side tracking (CAPI) & product feed to improve ROAS, reports for WooCommerce.
Wask Marketing Developer Profile
1 plugin · 10 total installs
How We Detect Wask Marketing
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wask-marketing/assets/css/admin.css/wp-content/plugins/wask-marketing/assets/css/sweetalert2.css/wp-content/plugins/wask-marketing/assets/js/sweetalert2.js/wp-content/plugins/wask-marketing/assets/js/facebook_countries.js/wp-content/plugins/wask-marketing/assets/js/sweetalert2.js/wp-content/plugins/wask-marketing/assets/js/facebook_countries.jsHTML / DOM Fingerprints
wask_ajax_object/wp-json/wask/v1/settings/wp-json/wask/v1/save-settings/wp-json/wask/v1/create-custom-audience/wp-json/wask/v1/create-lookalike-audience