
Banner Hover List Security & Risk Analysis
wordpress.org/plugins/banner-hover-listA quick, easy way to add an Responsive header Banner Hover List OR Responsive Banner Hover List inside wordpress page OR Template.
Is Banner Hover List Safe to Use in 2026?
Generally Safe
Score 85/100Banner Hover List has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "banner-hover-list" plugin version 1.0 presents a generally good security posture, primarily due to its limited attack surface and adherence to secure coding practices in critical areas. The plugin has zero known vulnerabilities (CVEs) and a clean vulnerability history, suggesting a commitment to security by its developers. The code analysis reveals no dangerous functions, no raw SQL queries (all use prepared statements), and no file operations or external HTTP requests, which significantly reduces common attack vectors.
However, there are areas that warrant caution. The static analysis indicates a low output escaping rate (25% properly escaped), meaning a significant portion of outputs may be vulnerable to cross-site scripting (XSS) if user-supplied data is not properly sanitized before being displayed. While the plugin includes nonce and capability checks, the limited number of entry points and the absence of taint analysis results do not provide a comprehensive understanding of how data flows are handled. The lack of taint analysis can mask potential vulnerabilities in complex data handling scenarios.
In conclusion, the plugin's strengths lie in its minimal attack surface and responsible handling of database queries and dangerous functions. The primary weakness is the potential for XSS vulnerabilities due to insufficient output escaping. Users should be aware of this and ensure that any data displayed by the plugin is thoroughly validated and escaped, especially if it originates from user input. The absence of a vulnerability history is a positive sign, but the low output escaping rate remains a notable concern.
Key Concerns
- Low output escaping rate
Banner Hover List Security Vulnerabilities
Banner Hover List Code Analysis
Output Escaping
Banner Hover List Attack Surface
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
Banner Hover List Maintenance & Trust
Maintenance Signals
Community Trust
Banner Hover List Alternatives
Article Gallery Slider
article-gallery-slider
A quick, easy way to add an Responsive header Image Gallery Vertical OR Responsive Article Gallery Slider inside wordpress page OR Template.
Banner Display Thumbnail
banner-display-thumbnail
A quick, easy way to add an Responsive header Banner Display Thumbnail OR Responsive Banner Display Thumbnail inside wordpress page OR Template.
Banner Info Effect
banner-info-effect
A quick, easy way to add an Responsive header Banner Info Effect OR Responsive Banner Info Effect inside wordpress page OR Template.
Banner Introduction Slider
banner-introduction-slider
A quick, easy way to add an Responsive header Banner Introduction Slider OR Responsive Banner Introduction Slider inside wordpress page OR Template.
Feature List Slider
feature-list-slider
A quick, easy way to add an Responsive header Feature List Slider OR Responsive Feature List Slider inside wordpress page OR Template.
Banner Hover List Developer Profile
14 plugins · 140 total installs
How We Detect Banner Hover List
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/banner-hover-list/css/responsiveimgslider.css/wp-content/plugins/banner-hover-list/css/hovelist.css/wp-content/plugins/banner-hover-list/js/jssor.core.js/wp-content/plugins/banner-hover-list/js/jssor.utils.js/wp-content/plugins/banner-hover-list/js/jssor.slider.js/wp-content/plugins/banner-hover-list/js/jssor.core.js/wp-content/plugins/banner-hover-list/js/jssor.utils.js/wp-content/plugins/banner-hover-list/js/jssor.slider.jsHTML / DOM Fingerprints
[sp_banner.hover.list cat_id="