Website Article Monetization By MageNet Security & Risk Analysis

wordpress.org/plugins/website-article-monetization-by-magenet

Get additional income from your website or blog by placing text ads automatically.

20K active installs v1.0.12 PHP 5.2.4+ WP 4.9+ Updated May 21, 2025
advertisingcontextual-adscontextual-advertisingearn-money-onlinewebsite-monetization
100
A · Safe
CVEs total1
Unpatched0
Last CVEMar 19, 2024
Download
Safety Verdict

Is Website Article Monetization By MageNet Safe to Use in 2026?

Generally Safe

Score 100/100

Website Article Monetization By MageNet has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.

1 known CVELast CVE: Mar 19, 2024Updated 12mo ago
Risk Assessment

This plugin exhibits a mixed security posture. While it demonstrates good practices in areas like SQL query sanitization and a lack of external HTTP requests, significant concerns arise from its unprotected entry points and output escaping vulnerabilities. The presence of one AJAX handler without authentication checks presents a direct attack vector. Furthermore, the fact that only 55% of output is properly escaped suggests a risk of Cross-Site Scripting (XSS) vulnerabilities, which aligns with its vulnerability history. The plugin has a known medium severity CVE related to XSS, and the lack of proper output escaping reinforces this concern.

While the static analysis found no critical or high severity taint flows, the combination of an unprotected AJAX endpoint and insufficient output escaping creates a considerable risk of potential XSS attacks. The plugin's history of a medium severity XSS vulnerability further emphasizes this. The lack of capability checks on the exposed AJAX handler is particularly concerning. Despite the plugin using prepared statements for SQL and not making external requests, these strengths are overshadowed by the critical issues in input handling and output sanitization, suggesting a need for thorough review and remediation.

Key Concerns

  • Unprotected AJAX handler detected
  • Insufficient output escaping detected (45%)
  • Medium severity CVE in vulnerability history
  • No capability checks on entry point
Vulnerabilities
1 published

Website Article Monetization By MageNet Security Vulnerabilities

CVEs by Year

1 CVE in 2024
2024
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2024-1379medium · 6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Website Article Monetization By MageNet <= 1.0.11 - Unauthenticated Stored Cross-Site Scripting

Mar 19, 2024 Patched in 1.0.12 (25d)
Version History

Website Article Monetization By MageNet Release Timeline

v1.0.111 CVE
v1.0.0.101 CVE
v1.0.0.91 CVE
v1.0.0.81 CVE
v1.0.0.71 CVE
v1.0.0.61 CVE
v1.0.0.51 CVE
v1.0.0.41 CVE
v1.0.0.31 CVE
v1.0.0.21 CVE
v1.0.0.11 CVE
v1.0.0.01 CVE
v0.91 CVE
v0.81 CVE
v0.71 CVE
v0.61 CVE
v0.51 CVE
v0.41 CVE
v0.31 CVE
v0.21 CVE
Code Analysis
Analyzed Mar 16, 2026

Website Article Monetization By MageNet Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
5
6 escaped
Nonce Checks
1
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

55% escaped11 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

1 flows
<article-backlinks-admin> (admin\article-backlinks-admin.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

Website Article Monetization By MageNet Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_abp_actionabp-functions.php:366
WordPress Hooks 7
actionwp_loadedabp-functions.php:359
actionadmin_enqueue_scriptsabp-functions.php:374
actionadmin_enqueue_scriptsabp-functions.php:383
actionadmin_noticesabp-functions.php:391
actionupgrader_process_completeadmin\article-backlinks-admin.php:65
actionadmin_menuadmin\article-backlinks-admin.php:92
actionadmin_noticesadmin\article-backlinks-admin.php:151
Maintenance & Trust

Website Article Monetization By MageNet Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 21, 2025
PHP min version5.2.4
Downloads95K

Community Trust

Rating0/100
Number of ratings0
Active installs20K
Developer Profile

Website Article Monetization By MageNet Developer Profile

MageNet

2 plugins · 40K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
169 days
View full developer profile
Detection Fingerprints

How We Detect Website Article Monetization By MageNet

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/website-article-monetization-by-magenet/assets/css/style.css/wp-content/plugins/website-article-monetization-by-magenet/assets/js/script.js
Script Paths
/wp-content/plugins/website-article-monetization-by-magenet/assets/js/script.js
Version Parameters
website-article-monetization-by-magenet/assets/css/style.css?ver=website-article-monetization-by-magenet/assets/js/script.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-magenet-id
JS Globals
abp_params
FAQ

Frequently Asked Questions about Website Article Monetization By MageNet