
Animation Hover Box Security & Risk Analysis
wordpress.org/plugins/animation-hover-boxAmazing hover effects is an impressive hover effects collection.It is the fastest and most easiest plugin to set up in just few minutes
Is Animation Hover Box Safe to Use in 2026?
Generally Safe
Score 85/100Animation Hover Box has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "animation-hover-box" plugin v1.0 demonstrates a strong adherence to secure coding practices in several key areas. The absence of any known CVEs, dangerous functions, file operations, or external HTTP requests is a significant positive indicator. Furthermore, the analysis shows no critical or high-severity taint flows, suggesting that data processed by the plugin is unlikely to be manipulated by attackers in a way that leads to immediate compromise. The complete lack of raw SQL queries, with all queries utilizing prepared statements, is another excellent security practice that prevents SQL injection vulnerabilities.
However, the plugin's security posture is significantly weakened by the complete absence of output escaping for its sole output. This means any data displayed to users, particularly if it originates from user input or external sources, is not sanitized and could be vulnerable to Cross-Site Scripting (XSS) attacks. The lack of nonce checks and capability checks on its single entry point (a shortcode) also raises concerns. While the attack surface is small, an unprotected entry point can still be exploited if it interacts with data in an insecure manner, especially when combined with unsanitized output.
The vulnerability history being completely clear is a testament to the developers' current efforts, but it does not mitigate the inherent risks identified in the static analysis. The plugin has strengths in areas like SQL handling and avoiding dangerous functions, but the identified unescaped output and lack of authorization checks on its shortcode present clear and present dangers that need immediate attention. Addressing the XSS risk is paramount.
Key Concerns
- Output not properly escaped
- No nonce checks on entry points
- No capability checks on entry points
Animation Hover Box Security Vulnerabilities
Animation Hover Box Code Analysis
Output Escaping
Animation Hover Box Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Animation Hover Box Maintenance & Trust
Maintenance Signals
Community Trust
Animation Hover Box Alternatives
Page scroll to id
page-scroll-to-id
Create links that scroll the page smoothly to any id within the document.
Blocks Animation: CSS Animations for Gutenberg Blocks
blocks-animation
Blocks Animation allows you to add CSS Animations to all of your Gutenberg blocks in the most elegant way.
Greenshift – animation and page builder blocks
greenshift-animation-and-page-builder-blocks
More than 20 special blocks for Gutenberg to build complex pages and animations with highest possible web vitals score.
UiCore Animate – Free Animations, Transitions, and Interactions Addon for Elementor & Gutenberg blocks
uicore-animate
UiCore Animate adds page transitions, smooth scroll, and engaging animations to Elementor and Gutenberg blocks, for smoother, engaging experiences.
Animate It!
animate-it
Add cool CSS3 animations to your content.
Animation Hover Box Developer Profile
12 plugins · 820 total installs
How We Detect Animation Hover Box
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/animation-hover-box/css/bootstrap.min.css/wp-content/plugins/animation-hover-box/css/style.css/wp-content/plugins/animation-hover-box/js/bootstrap.min.js/wp-content/plugins/animation-hover-box/js/bootstrap.min.jsHTML / DOM Fingerprints
projectwowanimatedanimated4 fadeInLeftproject-hover<div class="container"><div style="background-image: url('')" class="col-xl-3 col-lg-3 col-md-3 col-sm-3 project wow animated animated4 fadeInLeft"><div class="project-hover">