WP Simple Adsense Insertion Security & Risk Analysis

wordpress.org/plugins/wordpress-plugin-for-simple-google-adsense-insertion

Easy to use Wordpress plugin to insert Google Adsense to your posts, pages and sidebar.

3K active installs vv2.1 PHP + WP 5.5+ Updated Jul 4, 2024
adsenseadsense-adgooglegoogle-adsenseinsert-adsense
91
A · Safe
CVEs total1
Unpatched0
Last CVEMay 12, 2022
Safety Verdict

Is WP Simple Adsense Insertion Safe to Use in 2026?

Generally Safe

Score 91/100

WP Simple Adsense Insertion has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: May 12, 2022Updated 1yr ago
Risk Assessment

The wordpress-plugin-for-simple-google-adsense-insertion plugin, version 2.1, exhibits a generally positive security posture based on the static analysis. The absence of dangerous functions, SQL injection vulnerabilities (all queries use prepared statements), and properly escaped output are significant strengths. Furthermore, the plugin demonstrates good security practices by including nonce and capability checks. There are no identified critical or high severity taint flows, indicating that user-supplied data is handled with appropriate sanitization.

However, the plugin is not entirely without risk. It has a history of known vulnerabilities, including one high-severity Cross-Site Request Forgery (CSRF) in the past, although it appears to be patched. The presence of shortcodes as entry points, while not explicitly reported as unprotected, warrants attention as they can sometimes become vectors for attacks if not carefully managed. The lack of any external HTTP requests or file operations reduces potential attack vectors. Overall, the plugin is reasonably secure, but its past vulnerability history and the presence of shortcodes as entry points suggest a need for continued vigilance and potential future code review.

Key Concerns

  • Past high severity vulnerability (CSRF)
  • Presence of shortcodes as entry points
Vulnerabilities
1

WP Simple Adsense Insertion Security Vulnerabilities

CVEs by Year

1 CVE in 2022
2022
Patched Has unpatched

Severity Breakdown

High
1

1 total CVE

CVE-2022-1695high · 8.8Cross-Site Request Forgery (CSRF)

WP Simple Adsense Insertion <= 2.0 - Cross-Site Request Forgery

May 12, 2022 Patched in 2.1 (621d)
Code Analysis
Analyzed Mar 16, 2026

WP Simple Adsense Insertion Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
15 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped15 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
ad_insertion_options_page (WP-Simple-Adsense-Insertion.php:153)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

WP Simple Adsense Insertion Attack Surface

Entry Points5
Unprotected0

Shortcodes 5

[wp_ad_camp_1] WP-Simple-Adsense-Insertion.php:75
[wp_ad_camp_2] WP-Simple-Adsense-Insertion.php:86
[wp_ad_camp_3] WP-Simple-Adsense-Insertion.php:97
[wp_ad_camp_4] WP-Simple-Adsense-Insertion.php:108
[wp_ad_camp_5] WP-Simple-Adsense-Insertion.php:119
WordPress Hooks 7
filterthe_contentWP-Simple-Adsense-Insertion.php:17
filterthe_contentWP-Simple-Adsense-Insertion.php:48
filterthe_contentWP-Simple-Adsense-Insertion.php:144
actionadmin_menuWP-Simple-Adsense-Insertion.php:286
filterthe_contentWP-Simple-Adsense-Insertion.php:288
filterwidget_textWP-Simple-Adsense-Insertion.php:292
filterthe_excerptWP-Simple-Adsense-Insertion.php:293
Maintenance & Trust

WP Simple Adsense Insertion Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedJul 4, 2024
PHP min version
Downloads219K

Community Trust

Rating90/100
Number of ratings19
Active installs3K
Developer Profile

WP Simple Adsense Insertion Developer Profile

mra13

15 plugins · 210K total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
629 days
View full developer profile
Detection Fingerprints

How We Detect WP Simple Adsense Insertion

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Version Parameters
wordpress-plugin-for-simple-google-adsense-insertion/wp-simple-adsense-insertion.php?ver=

HTML / DOM Fingerprints

CSS Classes
wpsai_spacing_before_adsense
HTML Comments
wp_ad_camp_1 wp_ad_camp_2 wp_ad_camp_3 wp_ad_camp_4
Shortcode Output
[wp_ad_camp_1][wp_ad_camp_2][wp_ad_camp_3][wp_ad_camp_4]
FAQ

Frequently Asked Questions about WP Simple Adsense Insertion