
WP AdPosts by Kader Bouyakoub Security & Risk Analysis
wordpress.org/plugins/wp-adpostsEasy ads creation and management using images or codes. display your ads anywhere, automatically or using shortcodes, with views and clicks counters.
Is WP AdPosts by Kader Bouyakoub Safe to Use in 2026?
Generally Safe
Score 85/100WP AdPosts by Kader Bouyakoub has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-adposts plugin v1.3.0 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices regarding SQL queries, exclusively using prepared statements, and a high percentage of output escaping, which mitigates common cross-site scripting (XSS) vulnerabilities. The absence of known CVEs and a clean vulnerability history are also positive indicators, suggesting a generally well-maintained codebase. However, significant security concerns arise from its attack surface. The plugin exposes two AJAX handlers without authentication checks, creating a clear entry point for unauthorized actions or information disclosure. This, coupled with the absence of any nonce checks, further exacerbates the risk associated with these unprotected AJAX endpoints. The taint analysis, while showing no critical or high severity flows, did identify one flow with unsanitized paths, which, when combined with the unprotected AJAX handlers, could potentially lead to file system manipulation or path traversal if exploited. The lack of capability checks on any entry points is also a notable weakness.
Key Concerns
- AJAX handlers without authentication checks
- Missing nonce checks on AJAX
- Flow with unsanitized paths (taint analysis)
- No capability checks on entry points
- Partially unescaped output
WP AdPosts by Kader Bouyakoub Security Vulnerabilities
WP AdPosts by Kader Bouyakoub Release Timeline
WP AdPosts by Kader Bouyakoub Code Analysis
Output Escaping
Data Flow Analysis
WP AdPosts by Kader Bouyakoub Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 19
Maintenance & Trust
WP AdPosts by Kader Bouyakoub Maintenance & Trust
Maintenance Signals
Community Trust
WP AdPosts by Kader Bouyakoub Alternatives
Banner Upload
banner-upload
Easy way to display the different size of banner advertisements in WordPress using widgets
AADS
a-ads
This plugin allows you to easily integrate https://aads.com/ banner advertisement into your website.
Go Ads widget
go-ads-widget
Simple plugin for displaying different sizes of image ads and adsense ads.
Image Widget
image-widget
A simple image widget that uses the native WordPress media manager to add image widgets to your site.
Fixed Widget and Sticky Elements for WordPress
q2w3-fixed-widget
More attention and a higher ad performance with fixed sticky widgets.
WP AdPosts by Kader Bouyakoub Developer Profile
1 plugin · 10 total installs
How We Detect WP AdPosts by Kader Bouyakoub
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-adposts/js/admin.js/wp-content/plugins/wp-adposts/js/frontend.js/wp-content/plugins/wp-adposts/css/admin.css/wp-content/plugins/wp-adposts/css/frontend.css/wp-content/plugins/wp-adposts/js/admin.js/wp-content/plugins/wp-adposts/js/frontend.jswp-adposts/js/admin.js?ver=wp-adposts/js/frontend.js?ver=wp-adposts/css/admin.css?ver=wp-adposts/css/frontend.css?ver=HTML / DOM Fingerprints
wpap_ad_wrapperwpap_ad_titlewpap_ad_counterwpap_ad_clickswpap_ad_viewswpap_location_wrapperwpap_location_titlewpap_location_adsdata-ad-idwpAdPosts[wp-adpostswp-adposts