Holy Quran random verse Multilanguage Security & Risk Analysis

wordpress.org/plugins/holy-quran-random-verse-multilanguage

to fix error "quran_random block was affected by errors and may not function properly."

50 active installs v1.2.10 PHP + WP 3.0.1+ Updated May 15, 2022
corancoran-en-textemuslimquranquran-text
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Holy Quran random verse Multilanguage Safe to Use in 2026?

Generally Safe

Score 85/100

Holy Quran random verse Multilanguage has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The plugin "holy-quran-random-verse-multilanguage" v1.2.10 exhibits a concerning security posture despite having no recorded vulnerabilities or critical taint flows. The static analysis reveals significant weaknesses, particularly in output escaping, with 0% of 23 identified outputs being properly escaped. This lack of proper output sanitization presents a high risk for cross-site scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the site. Furthermore, the plugin performs SQL queries without using prepared statements, which is a significant security risk that could lead to SQL injection vulnerabilities. The absence of nonce checks and capability checks on any entry points is also alarming, as it means that these critical security mechanisms are not being utilized to protect against unauthorized actions or data manipulation. While the attack surface appears minimal (0 entry points), the identified weaknesses within the code itself are substantial and create exploitable conditions. The vulnerability history shows no past issues, which could indicate either good security development practices historically or simply a lack of prior comprehensive security analysis. However, the current state of the code analysis presents immediate and serious risks that need to be addressed.

Key Concerns

  • No proper output escaping
  • SQL queries without prepared statements
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Holy Quran random verse Multilanguage Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Holy Quran random verse Multilanguage Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
23
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

0% escaped23 total outputs
Attack Surface

Holy Quran random verse Multilanguage Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionwidgets_initquran-multilanguage-widget.php:10
actionadmin_enqueue_scriptsquran-multilanguage-widget.php:24
actionwp_enqueue_scriptsquran-multilanguage-widget.php:33
Maintenance & Trust

Holy Quran random verse Multilanguage Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedMay 15, 2022
PHP min version
Downloads7K

Community Trust

Rating100/100
Number of ratings2
Active installs50
Developer Profile

Holy Quran random verse Multilanguage Developer Profile

karim42

4 plugins · 760 total installs

92
trust score
Avg Security Score
88/100
Avg Patch Time
4 days
View full developer profile
Detection Fingerprints

How We Detect Holy Quran random verse Multilanguage

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/holy-quran-random-verse-multilanguage/js/jscolor/jscolor.js/wp-content/plugins/holy-quran-random-verse-multilanguage/js/soundmanager.js/wp-content/plugins/holy-quran-random-verse-multilanguage/js/player.js/wp-content/plugins/holy-quran-random-verse-multilanguage/img/play.png
Script Paths
/wp-content/plugins/holy-quran-random-verse-multilanguage/js/jscolor/jscolor.js/wp-content/plugins/holy-quran-random-verse-multilanguage/js/soundmanager.js/wp-content/plugins/holy-quran-random-verse-multilanguage/js/player.js

HTML / DOM Fingerprints

CSS Classes
quran_randomimg_play
Data Attributes
id="label_random_quran"
JS Globals
jscolor.init()
FAQ

Frequently Asked Questions about Holy Quran random verse Multilanguage