
Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Security & Risk Analysis
wordpress.org/plugins/image-hover-effects-ultimateAdd stunning image hover effects to WordPress. 500+ CSS3 animations, 10 effect modules, no coding needed. Support Elementor & Gutenberg.
Is Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Safe to Use in 2026?
Generally Safe
Score 96/100Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "image-hover-effects-ultimate" plugin exhibits a mixed security posture. While it demonstrates good practices like a high percentage of prepared SQL statements and properly escaped output, several concerning factors remain. The presence of an unprotected AJAX handler significantly increases the attack surface and presents a direct avenue for exploitation without proper authentication. The plugin's history of 8 known CVEs, including one critical and one high severity vulnerability, is a significant red flag, indicating a recurring pattern of security weaknesses despite the absence of currently unpatched CVEs. The common vulnerability types like Authorization Bypass and Cross-site Scripting, coupled with the taint analysis showing a flow with unsanitized paths, suggest that input validation and access control are areas that have historically and potentially currently require careful attention. While the majority of its code appears secure, the identified unprotected entry point and past vulnerability trends warrant caution.
Key Concerns
- AJAX handler without authentication
- Flow with unsanitized paths
- Multiple past CVEs (1 critical, 1 high)
- Bundled outdated library (Freemius v1.0)
Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Security Vulnerabilities
CVEs by Year
Severity Breakdown
8 total CVEs
Image Hover Effects Ultimate 9.8.1 - 9.8.4 - Authenticated (Admin+) Stored Cross-Site Scripting
Image Hover Effects Ultimate <= 9.7.1 - Authenticated (Admin+) Arbitrary Options Update
Image Hover Effects Ultimate <= 9.7.3 - Authenticated Stored Cross-Site Scripting via Title & Description
Image Hover Effects Ultimate <= 9.7.3 - Authenticated Stored Cross-Site Scripting via Video Link
Image Hover Effects Ultimate <= 9.7.3 - Authenticated Stored Cross-Site Scripting via Media URL
Image Hover Effects Ultimate <= 9.7.1 - Reflected Cross-Site Scripting
Image Hover Effects Ultimate <= 9.7.0 - Reflected Cross-Site Scripting via effects
Image Hover Effects Ultimate <= 9.6.1 - Unauthenticated Arbitrary Options Update
Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Release Timeline
Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Attack Surface
AJAX Handlers 6
Shortcodes 2
WordPress Hooks 17
Scheduled Events 1
Maintenance & Trust
Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Maintenance & Trust
Maintenance Signals
Community Trust
Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Alternatives
Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery
nextgen-gallery
The most popular gallery plugin that lets you create galleries and albums in seconds.
Photo Gallery by 10Web – Mobile-Friendly Image Gallery
photo-gallery
Photo Gallery is a powerful image gallery plugin with a list of advanced options for creating responsive image galleries with beautiful lightbox.
Envira Gallery – Image Photo Gallery, Albums, Video Gallery, Slideshows & More
envira-gallery-lite
Envira Gallery is a fast, easy and powerful gallery builder with lightbox, masonry and grid layouts, albums, videos, and responsive displays and more
Gallery by FooGallery
foogallery
Photo Gallery, Image Gallery by FooGallery — fast, responsive, SEO-optimized, and packed with beautiful layouts.
Robo Gallery – Photo & Image Slider
robo-gallery
Robo Gallery is a powerful image gallery and photo gallery plugin with advanced features to create responsive galleries with a beautiful lightbox
Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier ) Developer Profile
6 plugins · 31K total installs
How We Detect Image Hover Effects Ultimate ( Image Gallery, Effects, Lightbox, Comparison & Magnifier )
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/image-hover-effects-ultimate/assets/backend/css/oxi-image-hover-admin.css/wp-content/plugins/image-hover-effects-ultimate/assets/frontend/css/image-hover-effects.css/wp-content/plugins/image-hover-effects-ultimate/assets/frontend/js/image-hover-effects.js/wp-content/plugins/image-hover-effects-ultimate/assets/backend/js/oxi-image-hover-admin.jswp-content/plugins/image-hover-effects-ultimate/assets/backend/js/oxi-image-hover-admin.jswp-content/plugins/image-hover-effects-ultimate/assets/frontend/js/image-hover-effects.jsimage-hover-effects-ultimate/assets/backend/css/oxi-image-hover-admin.css?ver=image-hover-effects-ultimate/assets/frontend/css/image-hover-effects.css?ver=image-hover-effects-ultimate/assets/frontend/js/image-hover-effects.js?ver=image-hover-effects-ultimate/assets/backend/js/oxi-image-hover-admin.js?ver=HTML / DOM Fingerprints
oxi-image-hover-effectsoxi-image-hover-styleoxi-image-hover-tooltip<!-- WPKIN Image Hover Ultimate -->data-oxi-image-hover-idwindow.oxi_image_hover_data[iheu_ultimate_oxi