
Huge Addons for Visual Composer Lite Security & Risk Analysis
wordpress.org/plugins/huge-addons-for-visual-composer-liteHuge collections of addons for Visual Composer.
Is Huge Addons for Visual Composer Lite Safe to Use in 2026?
Generally Safe
Score 85/100Huge Addons for Visual Composer Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "huge-addons-for-visual-composer-lite" v1.0.1 reveals a generally strong security posture with no identified vulnerabilities in its attack surface, code signals, or taint analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits potential entry points for attackers. Furthermore, the use of prepared statements for all SQL queries and the presence of nonce checks are positive security practices. The plugin also demonstrates no file operations or external HTTP requests, reducing risks associated with those areas.
However, a notable concern is the low percentage (12%) of properly escaped output. This indicates a potential risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not correctly sanitized before being displayed. The lack of capability checks, while not directly indicative of a vulnerability given the limited attack surface, could become a concern if new entry points are introduced in future versions without proper authorization checks. The plugin's vulnerability history is clean, with no recorded CVEs, suggesting a historically secure codebase.
In conclusion, while the plugin exhibits strong practices in areas like SQL sanitization and attack surface reduction, the insufficient output escaping presents a clear, albeit potentially manageable, risk. The absence of capability checks on any entry points is a weakness that could be exploited if the plugin evolves. The lack of known vulnerabilities is a positive indicator, but the output escaping issue warrants attention.
Key Concerns
- Low percentage of properly escaped output
- No capability checks on entry points
Huge Addons for Visual Composer Lite Security Vulnerabilities
Huge Addons for Visual Composer Lite Release Timeline
Huge Addons for Visual Composer Lite Code Analysis
Output Escaping
Huge Addons for Visual Composer Lite Attack Surface
WordPress Hooks 10
Maintenance & Trust
Huge Addons for Visual Composer Lite Maintenance & Trust
Maintenance Signals
Community Trust
Huge Addons for Visual Composer Lite Alternatives
Mega Addons For WPBakery Page Builder
mega-addons-for-visual-composer
34+ Addons WPBakery extension, Beautifully designed unique elements, Includes Premium quality addons For WPBakery Page Builder.
HT Mega Addons for Elementor – Elementor Widgets & Template Builder
ht-mega-for-elementor
Elementor addon offering 135+ widgets — Mega Menu, Ready Templates, Page Builder, Slider, Gallery, Post Grid, AI Writer & more.
Livemesh Addons by Elementor
addons-for-elementor
Elementor Addons that saves time with multiple ready-to-use drag and drop styles for 30+ essential widgets built for Elementor page builder.
WPBakery Page Builder Addons by Livemesh
addons-for-visual-composer
A collection of 25+ beautifully designed premium quality addons or extensions for WPBakery Page Builder.
Header Footer for Beaver Builder
bb-header-footer
An easy-to-use Beaver Builder addon to import pages or templates as a header or a footer across a Beaver Builder website.
Huge Addons for Visual Composer Lite Developer Profile
5 plugins · 50 total installs
How We Detect Huge Addons for Visual Composer Lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/huge-addons-for-visual-composer-lite/assets/fonts.css/wp-content/plugins/huge-addons-for-visual-composer-lite/assets/havc.css/wp-content/plugins/huge-addons-for-visual-composer-lite/assets/admin-style.csshuge-addons-for-visual-composer-lite/assets/fonts.css?ver=huge-addons-for-visual-composer-lite/assets/havc.css?ver=huge-addons-for-visual-composer-lite/assets/admin-style.css?ver=HTML / DOM Fingerprints
havc-module-tabshavc_tabwpb_widgetised_column<!-- Module is activated --><!-- Module is not activated -->data-havc-module-iddata-module-activeHAVC_SLUG<li class="all"><a href="<li class="active"><a href="<li class="inactive"><a href="<table class="wp-list-table widefat plugins">