
Easy Textillate Security & Risk Analysis
wordpress.org/plugins/easy-textillateVery beautiful text animations (shortcodes in posts and widgets or PHP code in theme files).
Is Easy Textillate Safe to Use in 2026?
Mostly Safe
Score 78/100Easy Textillate is generally safe to use. 2 past CVEs were resolved. Keep it updated.
The "easy-textillate" plugin v2.02 presents a mixed security posture. On the positive side, the code analysis shows good practices like 100% use of prepared statements for SQL queries and a high percentage (95%) of properly escaped output, indicating an effort to prevent common web vulnerabilities. There are no detected dangerous functions, file operations, or external HTTP requests, which are generally positive signs for security. Furthermore, the attack surface appears limited with only two shortcodes identified and no AJAX handlers or REST API routes found to be unprotected.
However, significant concerns arise from the vulnerability history. The plugin has a history of two known CVEs, with one still unpatched. Both historical vulnerabilities were of medium severity and related to Cross-site Scripting (XSS). This suggests a recurring pattern of input sanitization or output escaping issues, despite the otherwise good static analysis results for output escaping in the current version. The absence of nonce and capability checks in the static analysis is also a notable weakness, particularly as the identified entry points (shortcodes) could potentially be leveraged in attack chains if not properly secured elsewhere.
In conclusion, while the current version of "easy-textillate" exhibits some good coding practices, the persistent unpatched medium-severity XSS vulnerabilities in its history are a significant red flag. This indicates a potential for similar issues to exist or re-emerge, and the lack of explicit nonce and capability checks on the identified entry points warrants caution.
Key Concerns
- Unpatched medium severity CVE
- Vulnerability history of XSS
- 0 Nonce checks
- 0 Capability checks
Easy Textillate Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Easy Textillate <= 2.02 - Authenticated(Contributor+) Stored Cross-Site Scripting
Easy Textillate <= 2.01 - Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcode
Easy Textillate Code Analysis
Output Escaping
Easy Textillate Attack Surface
Shortcodes 2
WordPress Hooks 11
Maintenance & Trust
Easy Textillate Maintenance & Trust
Maintenance Signals
Community Trust
Easy Textillate Alternatives
Animated Blocks on Scroll
animated-blocks
Add scroll based animations to WordPress Gutenberg blocks.
Page Transition
page-transition
Page Transition is a simple and easy wordpress plugin used to add page transition using CSS3 animations. Show your page with modern animations.
Animated Featured Image
animated-featured-image
Responsive Featured Image for Sidebar Widgets with CSS3 Animations and Styles
Image Hover Effects for Visual Composer
image-hover-effect-for-visual-composer
Requires at least: 3.5 Tested up to: 4.9 Stable tag: 1.0 License: GPLv2 or later License URI: http://www.gnu.org/licenses/gpl-2.0.
Ultimate Image Hover Effects CSS3 – Photo Gallery Pro
ultimate-image-hover-effects-css3-photo-gallery-pro
An ultimate and Flexible way to add images anywhere in your site with 70+ css3 Image hover effects.
Easy Textillate Developer Profile
15 plugins · 44K total installs
How We Detect Easy Textillate
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easy-textillate/inc/jquery.lettering.js/wp-content/plugins/easy-textillate/inc/jquery.textillate.js/wp-content/plugins/easy-textillate/inc/animate.min.css/wp-content/plugins/easy-textillate/inc/easy-textillate.js/wp-content/plugins/easy-textillate/inc/easy-textillate.css/wp-content/plugins/easy-textillate/inc/jquery.lettering.js/wp-content/plugins/easy-textillate/inc/jquery.textillate.js/wp-content/plugins/easy-textillate/inc/easy-textillate.jseasy-textillate/inc/easy-textillate.js?ver=easy-textillate/inc/easy-textillate.css?ver=HTML / DOM Fingerprints
foptionstbonhidetcodeplaygroundviewporttlttexts+5 more<!--
Plugin Name: Easy Textillate
Plugin URI: https://wordpress.org/plugins/easy-textillate/
Description: Very beautiful text animations (shortcodes in posts and widgets or PHP code in theme files).
Version: 2.02
Author: Flector
Author URI: https://profiles.wordpress.org/flector#content-plugins
Text Domain: easy-textillate
--><!--загрузка файла локализации плагина begin<!--загрузка файла локализации плагина end<!--добавление ссылки "Настройки" на странице со списком плагинов begin+9 moredata-keydata-typeclosedonatet-close-donat<div class="tlt">
<ul class="texts" style="display: none">
<span class="mytext"></span>
</ul>
</div>