
BibleGateway Links Shortcode Security & Risk Analysis
wordpress.org/plugins/biblegateway-links-shortcodeShortcode for linking Bible references to a BibleGateway page.
Is BibleGateway Links Shortcode Safe to Use in 2026?
Generally Safe
Score 85/100BibleGateway Links Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The biblegateway-links-shortcode plugin, version 0.1.7, exhibits a generally positive security posture with no known vulnerabilities or critical code signals. The absence of dangerous functions, external HTTP requests, and the consistent use of prepared statements for all SQL queries are strong indicators of good security practices. Furthermore, the plugin demonstrates a controlled attack surface, with only one shortcode identified and no AJAX handlers or REST API routes that lack authorization checks.
However, a notable concern lies in the output escaping. With 57% of outputs properly escaped, there is a significant risk that the remaining 43% could be vulnerable to cross-site scripting (XSS) attacks. The lack of nonces and capability checks, while not directly flagged as a risk given the current attack surface, could become a concern if the plugin were to evolve and introduce more complex functionalities or if its attack surface were to expand without proper security controls.
The plugin's clean vulnerability history, with zero recorded CVEs, is a significant strength. This suggests a history of responsible development and a low likelihood of undiscovered critical flaws. In conclusion, while the plugin demonstrates good foundational security, the unescaped output presents a tangible risk that should be addressed to achieve a more robust security profile.
Key Concerns
- Output escaping is not fully implemented
- No nonce checks
- No capability checks
BibleGateway Links Shortcode Security Vulnerabilities
BibleGateway Links Shortcode Code Analysis
Output Escaping
BibleGateway Links Shortcode Attack Surface
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
BibleGateway Links Shortcode Maintenance & Trust
Maintenance Signals
Community Trust
BibleGateway Links Shortcode Alternatives
Forget About Shortcode Buttons
forget-about-shortcode-buttons
A visual way to add CSS buttons in the rich text editor and to your themes.
Crazy Pills
crazy-pills
Build buttons, boxes, beautiful lists, and highlight text right from your editor, with live preview.
Easy Tinymce Editor Add Button
easy-tinymce-editor-add-button
Simple plugin for adding buttons to the html wp panel of the tinymce editor. Features: Ease of use Ability to add any content Unlimited number of b …
AddQuicktag
addquicktag
This plugin makes it easy to add Quicktags to the html - and visual-editor.
WP Edit
wp-edit
Take complete control over the WordPress content editor.
BibleGateway Links Shortcode Developer Profile
8 plugins · 301K total installs
How We Detect BibleGateway Links Shortcode
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/biblegateway-links-shortcode/register-bg.js/wp-content/plugins/biblegateway-links-shortcode/register-bg-html.js/wp-content/plugins/biblegateway-links-shortcode/register-bg.js/wp-content/plugins/biblegateway-links-shortcode/register-bg-html.jsbiblegateway-links-shortcode/register-bg.js?ver=biblegateway-links-shortcode/register-bg-html.js?ver=HTML / DOM Fingerprints
biblerefbible-gatewayhttp://bibles.org/pages/highlighterhttps://wordpress.org/plugins/biblegateway-links-shortcode/https://wordpress.org/plugins/biblegateway-links-shortcode/data-versionbiblegwlinkpop_bhparsebw-highlighter-src<cite class="bibleref"<a class="bible-gateway" href="