2FOX4 Before After Security & Risk Analysis

wordpress.org/plugins/2fox4-before-after

Compare two images with an interactive before/after slider. Supports Gutenberg, Shortcode and Elementor.

0 active installs v1.1.3 PHP 8.0+ WP 6.4+ Updated Mar 30, 2026
before-aftercompareimage-comparisonimage-sliderslider
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is 2FOX4 Before After Safe to Use in 2026?

Generally Safe

Score 100/100

2FOX4 Before After has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "2fox4-before-after" plugin version 1.1.3 exhibits a strong security posture based on the provided static analysis. All identified entry points, including the AJAX handler and shortcode, are protected by nonce and capability checks respectively, which is a significant positive indicator. Furthermore, the code demonstrates excellent practices regarding SQL queries, with 100% utilizing prepared statements, and all output is properly escaped, mitigating common injection and cross-site scripting (XSS) risks.

There are no observed dangerous functions, file operations, or external HTTP requests, further reducing the attack surface. The absence of any recorded CVEs or historical vulnerabilities is also a positive sign, suggesting a commitment to secure coding or simply a lack of discovered flaws. The taint analysis showing zero flows with unsanitized paths reinforces the findings of good input sanitization and output encoding.

While the overall security posture is excellent, the limited number of entry points and the thoroughness of the analysis should be considered. The static analysis did not reveal any critical or high-severity issues. The vulnerability history being entirely clean is highly encouraging. Therefore, based on the data, this plugin appears to be very secure.

Vulnerabilities
None known

2FOX4 Before After Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

2FOX4 Before After Release Timeline

v1.1.3Current
Code Analysis
Analyzed Apr 16, 2026

2FOX4 Before After Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
43 escaped
Nonce Checks
1
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped43 total outputs
Attack Surface

2FOX4 Before After Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 1

authwp_ajax_bfas_dismiss_coffeeincludes/class-bfas-coffee-notice.php:51

Shortcodes 1

[bfas_before_after_slider] includes/class-bfas-shortcode.php:24
WordPress Hooks 11
actionadmin_init2fox4-before-after.php:63
actioninit2fox4-before-after.php:72
actioninit2fox4-before-after.php:81
actionwp_enqueue_scripts2fox4-before-after.php:102
actionadmin_enqueue_scripts2fox4-before-after.php:115
actionplugins_loaded2fox4-before-after.php:125
actionenqueue_block_editor_assetsincludes/class-bfas-block.php:21
actionadmin_noticesincludes/class-bfas-coffee-notice.php:50
actionadmin_enqueue_scriptsincludes/class-bfas-coffee-notice.php:52
actionelementor/widgets/registerincludes/class-bfas-elementor-widget.php:24
actionelementor/preview/enqueue_scriptsincludes/class-bfas-elementor-widget.php:33
Maintenance & Trust

2FOX4 Before After Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 30, 2026
PHP min version8.0
Downloads90

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

2FOX4 Before After Developer Profile

2fox4oliver

3 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect 2FOX4 Before After

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/2fox4-before-after/public/css/bfas-frontend.css/wp-content/plugins/2fox4-before-after/public/js/bfas-frontend.js/wp-content/plugins/2fox4-before-after/admin/css/bfas-editor.css/wp-content/plugins/2fox4-before-after/block/bfas-block.js
Script Paths
/wp-content/plugins/2fox4-before-after/public/js/bfas-frontend.js/wp-content/plugins/2fox4-before-after/block/bfas-block.js
Version Parameters
2fox4-before-after/public/css/bfas-frontend.css?ver=2fox4-before-after/public/js/bfas-frontend.js?ver=2fox4-before-after/admin/css/bfas-editor.css?ver=2fox4-before-after/block/bfas-block.js?ver=

HTML / DOM Fingerprints

CSS Classes
bfas-container
Data Attributes
data-bfas-beforedata-bfas-afterdata-bfas-startdata-bfas-modedata-bfas-orientationdata-bfas-label-before+5 more
JS Globals
BFAS_VERSIONBFAS_PLUGIN_URLBFAS_PLUGIN_DIRBFAS_PLUGIN_BASENAME
Shortcode Output
[bfas_before_after_slider]
FAQ

Frequently Asked Questions about 2FOX4 Before After