Daily Bible Verse Security & Risk Analysis

wordpress.org/plugins/daily-bible-verse

This plugin lets you add a Bible Verse of the Day widget to your WordPress page.

30 active installs v1.0 PHP + WP + Updated May 23, 2022
biblechristianityfaithgodinspiration
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Daily Bible Verse Safe to Use in 2026?

Generally Safe

Score 85/100

Daily Bible Verse has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "daily-bible-verse" plugin v1.0 exhibits a generally positive security posture based on the provided static analysis. There are no identified dangerous functions, raw SQL queries, file operations, or external HTTP requests without apparent controls, suggesting a good foundation. The absence of known CVEs and a clean vulnerability history further bolster this impression, indicating responsible development and maintenance regarding past security issues.

However, a significant concern arises from the extremely low percentage of properly escaped output (18%). This represents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied or dynamic content is likely being rendered without proper sanitization. Furthermore, the complete lack of nonce checks and capability checks across all identified entry points (though the attack surface is currently zero) signifies a potential vulnerability if new entry points are added without proper security controls. The presence of an external HTTP request also warrants caution, as its purpose and handling are not detailed, and it could be a vector for other vulnerabilities if not implemented securely.

In conclusion, while the plugin benefits from a lack of critical security flaws and historical vulnerabilities, the widespread unescaped output and the absence of fundamental security checks on potential entry points present a notable risk. Developers should prioritize addressing the output escaping issue and implement robust authentication and authorization mechanisms for any new features or exposed functionalities to mitigate these risks effectively.

Key Concerns

  • Low output escaping percentage
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Daily Bible Verse Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Daily Bible Verse Release Timeline

v1.0Current
Code Analysis
Analyzed Apr 16, 2026

Daily Bible Verse Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

18% escaped11 total outputs
Attack Surface

Daily Bible Verse Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionwp_enqueue_scriptsdaily-bible-verse.php:22
actionwidgets_initdaily-bible-verse.php:102
Maintenance & Trust

Daily Bible Verse Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedMay 23, 2022
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Daily Bible Verse Developer Profile

Bibleverses

1 plugin · 30 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Daily Bible Verse

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/daily-bible-verse/daily-bible-verse.css
Version Parameters
daily-bible-verse.css?ver=

HTML / DOM Fingerprints

CSS Classes
bibleverses_link
Data Attributes
id="daily_bible_verse_widget"
FAQ

Frequently Asked Questions about Daily Bible Verse