
Bangla Al Quraner Bani Security & Risk Analysis
wordpress.org/plugins/bangla-al-quranRandomly Display Bangla meaning from Holy Al Quran.
Is Bangla Al Quraner Bani Safe to Use in 2026?
Generally Safe
Score 100/100Bangla Al Quraner Bani has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'bangla-al-quran' plugin v2.5 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, exclusively using prepared statements, and has no recorded vulnerability history or known CVEs. The total attack surface is minimal with only one entry point, a shortcode, which is noted as unprotected. However, significant concerns arise from the code analysis. The presence of the `create_function` dangerous function is a critical red flag, potentially allowing for remote code execution if exploited. Furthermore, a complete lack of output escaping on all eight identified output points is highly problematic, creating a high risk of Cross-Site Scripting (XSS) vulnerabilities. The absence of nonce checks and capability checks on entry points also leaves the plugin vulnerable to various unauthorized actions or data manipulation.
The vulnerability history is clean, which is a positive indicator, but it does not negate the immediate risks identified in the static code analysis. The plugin's strengths lie in its SQL handling and lack of known historical exploits. Its weaknesses are starkly revealed in the potential for code execution and XSS due to absent sanitization and escaping, coupled with a lack of authentication checks on its entry points. A thorough review and remediation of the identified security weaknesses are crucial to mitigate the substantial risks.
Key Concerns
- Dangerous function create_function detected
- 0% output escaping
- Unprotected shortcode entry point
- No nonce checks
- No capability checks
Bangla Al Quraner Bani Security Vulnerabilities
Bangla Al Quraner Bani Code Analysis
Dangerous Functions Found
Output Escaping
Bangla Al Quraner Bani Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Bangla Al Quraner Bani Maintenance & Trust
Maintenance Signals
Community Trust
Bangla Al Quraner Bani Alternatives
Ramadan Calendar Bangladesh
ramadan-calendar-bangladesh
Display Ramadan 2026 prayer times (Sehri & Iftar) for all divisions of Bangladesh in Bangla language with automatic time adjustments.
Muslim Prayer Time-Salah/Iqamah
masjidal
Display the prayer(Athan) and/or Iqamah time for you masjid or location. Use as a widget or use the short codes and format it as you like.
Zakah Calculator
zakah-calculator
It is a simple and easy way to know how to fulfill the obligation of Zakah.
Hijri Calendar
hijri-calendar
Easily display current Hijri/Islamic date (according to hijri calendar), anywhere in your wordpress blog!
Xllentech English Islamic Calendar
xllentech-english-islamic-calendar
The Best English Islamic Calendar plugin on WordPress.
Bangla Al Quraner Bani Developer Profile
4 plugins · 60 total installs
How We Detect Bangla Al Quraner Bani
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
BanglaAlQuranWidget<h1>Bangla Al-Quran</h1>