
cbParallax Security & Risk Analysis
wordpress.org/plugins/cb-parallaxCustom background images with parallax effect for posts, pages and products.
Is cbParallax Safe to Use in 2026?
Generally Safe
Score 100/100cbParallax has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "cb-parallax" v1.0.0 plugin exhibits a generally good security posture with several positive attributes. The complete absence of known CVEs and a robust implementation of prepared statements for SQL queries are significant strengths. Furthermore, the plugin demonstrates a conscious effort towards security by incorporating nonce and capability checks, along with performing a substantial number of output escaping operations. The limited attack surface, consisting solely of AJAX handlers with no apparent unauthenticated entry points, also contributes positively to its security profile.
However, the static analysis did reveal two concerning taint flows with unsanitized paths. While the taint analysis did not flag these as critical or high severity, the presence of unsanitized paths is a potential indicator of vulnerabilities related to file path manipulation or directory traversal if user input is not handled with extreme care. The fact that 35% of output operations are not properly escaped also presents a risk of Cross-Site Scripting (XSS) vulnerabilities, especially if the unescaped data originates from user input or external sources.
Given the lack of historical vulnerabilities, it suggests a mature development process or a relatively new plugin. The current version's strengths in prepared statements, nonce/capability checks, and contained attack surface outweigh the identified taint flows and unescaped outputs. However, these specific findings warrant careful review and remediation to ensure the plugin remains secure.
Key Concerns
- Unsanitized paths in taint flows
- Significant percentage of unescaped output
cbParallax Security Vulnerabilities
cbParallax Code Analysis
Output Escaping
Data Flow Analysis
cbParallax Attack Surface
AJAX Handlers 2
WordPress Hooks 34
Maintenance & Trust
cbParallax Maintenance & Trust
Maintenance Signals
Community Trust
cbParallax Alternatives
Parallax Section Block – Add Parallax Scrolling Effects to Sections.
parallax-section
Add Parallax scrolling effects in any section of your website.
Parallax Scroll – Parallax Scrolling Backgrounds & Call to Action WordPress Plugin
parallax-scroll-wp
Enhance your WordPress website with dynamic parallax scrolling backgrounds. Parallax Scroll WP offers an easy way to create visually appealing and eng …
Advanced WordPress Backgrounds
advanced-backgrounds
Easy to use advanced Parallax, Image and Video backgrounds block plugin with parallax and video support.
Simple Full Screen Background Image
simple-full-screen-background-image
This plugin provides a simple way to set an automatically scaled full screen background image.
Full Screen Background
fullscreen-background
Full Screen Background is a lightweight plugin to add full screen image or video on wordpress websites. You can choose which page or post you want to …
cbParallax Developer Profile
3 plugins · 150 total installs
How We Detect cbParallax
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cb-parallax/assets/css/cb-parallax.css/wp-content/plugins/cb-parallax/assets/js/cb-parallax.js/wp-content/plugins/cb-parallax/assets/js/cb-parallax.jscb-parallax.css?ver=cb-parallax.js?ver=HTML / DOM Fingerprints
cb-parallax-sectioncb-parallax-background<!-- cb-parallax section START --><!-- cb-parallax section END -->data-cb-parallax-speeddata-cb-parallax-directiondata-cb-parallax-imagecbParallaxFrontend[cb_parallax]