Hover Effects For Visual Composer Security & Risk Analysis

wordpress.org/plugins/hover-effects-for-visual-composer

Checkout our Latest WordPress Themes - 100% Free

100 active installs v1.6.6 PHP + WP 3.0.1+ Updated Nov 26, 2019
addondrag-and-dropvisual-composerwpbakery-hover-effects-extensionwpbakery-page-builder
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Hover Effects For Visual Composer Safe to Use in 2026?

Generally Safe

Score 85/100

Hover Effects For Visual Composer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The hover-effects-for-visual-composer plugin version 1.6.6 demonstrates a generally good security posture based on the provided static analysis. The absence of dangerous functions, reliance on prepared statements for SQL queries, and proper output escaping are strong indicators of secure coding practices. Furthermore, the plugin has no recorded vulnerabilities, suggesting a history of stable and secure development. The presence of a capability check on its single entry point, the shortcode, is also a positive sign of access control implementation.

However, the analysis does highlight a potential area for improvement. The plugin has zero nonce checks. While the single shortcode might not be inherently vulnerable without direct user input that's directly reflected in the output or database operations, the absence of nonce checks on any potential AJAX handlers or other entry points (even if currently zero) means that if such functionality were added in the future, it could be susceptible to CSRF attacks without proper sanitization. The zero taint analysis, while reassuring, could be attributed to the lack of complex data flows or the limited scope of the analysis. Overall, this plugin appears to be well-developed from a security perspective, with the primary area of concern being the lack of nonce checks as a defensive measure against potential future attack vectors.

Key Concerns

  • No nonce checks implemented
Vulnerabilities
None known

Hover Effects For Visual Composer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Hover Effects For Visual Composer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Hover Effects For Visual Composer Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[hvc-hover] inc\shortcode.php:1128
WordPress Hooks 5
actionadmin_enqueue_scriptshover-effects-for-visual-composer.php:40
actionwp_enqueue_scriptshover-effects-for-visual-composer.php:52
actionadmin_noticeshover-effects-for-visual-composer.php:68
actionadmin_inithover-effects-for-visual-composer.php:78
actionvc_before_initinc\param.php:3
Maintenance & Trust

Hover Effects For Visual Composer Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedNov 26, 2019
PHP min version
Downloads28K

Community Trust

Rating74/100
Number of ratings3
Active installs100
Developer Profile

Hover Effects For Visual Composer Developer Profile

themebon

13 plugins · 1K total installs

82
trust score
Avg Security Score
83/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Hover Effects For Visual Composer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/hover-effects-for-visual-composer/css/admin.css/wp-content/plugins/hover-effects-for-visual-composer/css/ihover.css/wp-content/plugins/hover-effects-for-visual-composer/css/square2.css/wp-content/plugins/hover-effects-for-visual-composer/css/caption.css/wp-content/plugins/hover-effects-for-visual-composer/css/custom.css
Version Parameters
hover-effects-for-visual-composer/css/admin.css?ver=hover-effects-for-visual-composer/css/ihover.css?ver=hover-effects-for-visual-composer/css/square2.css?ver=hover-effects-for-visual-composer/css/caption.css?ver=hover-effects-for-visual-composer/css/custom.css?ver=

HTML / DOM Fingerprints

CSS Classes
hvc_noticeih-itemcircleeffect1effect2effect3effect4spinner+8 more
Data Attributes
data-vc-shortcode-contentdata-vc-shortcode-param
JS Globals
hvc_notice
Shortcode Output
<div class="hvc_notice"><div class="ih-item circle effect1<div class="ih-item circle effect2<div class="ih-item circle effect3
FAQ

Frequently Asked Questions about Hover Effects For Visual Composer