
Algori PDF Viewer Security & Risk Analysis
wordpress.org/plugins/algori-pdf-viewerAlgori PDF Viewer is a Gutenberg Block Plugin that enables you to easily display PDF documents directly on your website.
Is Algori PDF Viewer Safe to Use in 2026?
Generally Safe
Score 91/100Algori PDF Viewer has a strong security track record. Known vulnerabilities have been patched promptly.
The "algori-pdf-viewer" plugin, version 1.0.8, presents a mixed security posture. The static analysis reveals an impressively clean codebase with zero identified dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or critical taint flows. This indicates a strong adherence to secure coding principles in these specific areas.
However, the plugin's vulnerability history is a significant concern. With one known CVE, specifically a Cross-Site Scripting (XSS) vulnerability, and a recent disclosure date, it highlights a potential for attackers to exploit weaknesses. The fact that this vulnerability is currently patched is positive, but the existence of past XSS issues suggests a potential for similar vulnerabilities to arise again if not diligently addressed.
The lack of identified entry points and unprotected handlers is a strength, as it limits the plugin's direct attack surface. Nevertheless, the presence of a past XSS vulnerability, even if patched, warrants careful consideration, as it points to a historical weakness in input sanitization or output encoding in certain scenarios. The overall security is good in terms of current static analysis findings, but the historical context necessitates ongoing vigilance.
Key Concerns
- Past XSS vulnerability with recent disclosure
Algori PDF Viewer Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
pdf.js < 2.0.943 - Authenticated (Author+) Stored Cross-Site Scripting
Algori PDF Viewer Code Analysis
Algori PDF Viewer Attack Surface
WordPress Hooks 1
Maintenance & Trust
Algori PDF Viewer Maintenance & Trust
Maintenance Signals
Community Trust
Algori PDF Viewer Alternatives
Classic Editor
classic-editor
Enables the previous "classic" editor and the old-style Edit Post screen with TinyMCE, Meta Boxes, etc. Supports all plugins that extend this screen.
Starter Templates – AI-Powered Templates for Elementor & Gutenberg
astra-sites
The growing library of 300+ ready-to-use templates that work with all WordPress themes including Astra, Hello, OceanWP, GeneratePress and more
Advanced Editor Tools
tinymce-advanced
Extends and enhances the block editor (Gutenberg) and the classic editor (TinyMCE).
Disable Gutenberg
disable-gutenberg
Disable Gutenberg Block Editor and restore the Classic Editor and original Edit Post screen (TinyMCE, meta boxes, etc.).
Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns
essential-blocks
Gutenberg block editor with AI. 70+ Gutenberg blocks, patterns, WooCommerce blocks, post grid, gallery, menu with Gutenberg block library.
Algori PDF Viewer Developer Profile
5 plugins · 15K total installs
How We Detect Algori PDF Viewer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/algori-pdf-viewer-lite/build/index.css/wp-content/plugins/algori-pdf-viewer-lite/build/index.js/wp-content/plugins/algori-pdf-viewer-lite/build/index.jsalgori-pdf-viewer-lite/build/index.css?ver=algori-pdf-viewer-lite/build/index.js?ver=HTML / DOM Fingerprints
algori-pdf-viewer-block