Hover Highlights – Editor highlighting Security & Risk Analysis

wordpress.org/plugins/hover-highlights-editor-highlighting

Adds highlighting on hover with a distraction-free experience for the Gutenberg/Block Editor.

20 active installs v1.1.0 PHP 7.3.0+ WP 5.8+ Updated Apr 8, 2025
a11yaccessibilityblock-editorblocksgutenberg
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Hover Highlights – Editor highlighting Safe to Use in 2026?

Generally Safe

Score 100/100

Hover Highlights – Editor highlighting has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12mo ago
Risk Assessment

The plugin 'hover-highlights-editor-highlighting' v1.1.0 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified dangerous functions, SQL injection vulnerabilities through prepared statements, and properly escaped output signals robust coding practices. Furthermore, the plugin has no recorded CVEs, indicating a clean security history and a lack of common vulnerability types. The very limited attack surface, with zero AJAX handlers, REST API routes, shortcodes, and cron events, significantly reduces potential entry points for attackers. The complete lack of any taint flows with unsanitized paths further reinforces this positive assessment. While the plugin demonstrates excellent security implementation, the near-zero attack surface and limited feature set might also mean its functionality is also very basic, which is a contextual observation rather than a security flaw. In conclusion, this plugin appears to be highly secure, with no identified vulnerabilities or concerning code patterns in the analyzed version.

Vulnerabilities
None known

Hover Highlights – Editor highlighting Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Hover Highlights – Editor highlighting Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Hover Highlights – Editor highlighting Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

Hover Highlights – Editor highlighting Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 8, 2025
PHP min version7.3.0
Downloads1K

Community Trust

Rating100/100
Number of ratings2
Active installs20
Developer Profile

Hover Highlights – Editor highlighting Developer Profile

Sybre Waaijer

11 plugins · 204K total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
259 days
View full developer profile
Detection Fingerprints

How We Detect Hover Highlights – Editor highlighting

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
wp-block:hover:not(:has(:focus),:focus)
FAQ

Frequently Asked Questions about Hover Highlights – Editor highlighting