
Informational Popup Plugin Security & Risk Analysis
wordpress.org/plugins/informational-popupInformational Popup. Create dynamic foot notes, explore digressions, extend your posts.
Is Informational Popup Plugin Safe to Use in 2026?
Generally Safe
Score 100/100Informational Popup Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "informational-popup" plugin version 1.0 presents a mixed security profile. On the positive side, it exhibits excellent practices regarding database interaction, using prepared statements exclusively, and it has no known vulnerabilities or CVEs. The attack surface is also minimal, with only one shortcode identified and no AJAX handlers or REST API routes without authentication checks. Furthermore, the absence of file operations and external HTTP requests reduces potential attack vectors. However, a significant concern arises from the complete lack of output escaping. This means that any data processed by the plugin and subsequently displayed to users is not sanitized, making it highly susceptible to Cross-Site Scripting (XSS) attacks. Additionally, the taint analysis revealed a flow with an unsanitized path, which, while not classified as critical or high severity in this analysis, warrants attention. The absence of nonce and capability checks is another area of weakness, though the limited attack surface mitigates the immediate risk.
Key Concerns
- 0% output escaping
- Taint flow with unsanitized path
- 0 Nonce checks
- 0 Capability checks
Informational Popup Plugin Security Vulnerabilities
Informational Popup Plugin Code Analysis
Output Escaping
Data Flow Analysis
Informational Popup Plugin Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Informational Popup Plugin Maintenance & Trust
Maintenance Signals
Community Trust
Informational Popup Plugin Alternatives
Alligator Menu Popup
alligator-menu-popup
Add the 'mpopup' class to a menu item in a custom menu to open the target in a popup Window.
Alligator Popup
alligator-popup
Add popups to your site. Add links to pages/posts via a shortcode which will be opened in a popup browser window.
Video Lightbox for YouTube/Vimeo
youtubefancybox
Embed YouTube/Vimeo videos in a lightbox popup. Easily create thumbnails and customize playback settings. Supports both platforms and is compatible wi …
Smart Popup
smart-popup
Smart Popup:: an exclusive popup (Modal) plugin for WordPress. You can show any content in your wordpress post or page as popup.
Video PopUp
video-popup
The ultimate Video Popup plugin for WordPress. Create unlimited and responsive popups for YouTube, Vimeo, MP4 & WebM videos on click or On-Page Load.
Informational Popup Plugin Developer Profile
1 plugin · 10 total installs
How We Detect Informational Popup Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/informational-popup/farbtastic.js/wp-content/plugins/informational-popup/info_popup.jshttp://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.jshttp://ajax.googleapis.com/ajax/libs/jqueryui/1.8/jquery-ui.min.jsHTML / DOM Fingerprints
clicked_text_<!--<img src="<!--<div id="loading_video_<!--<img src="<!--<div id="loading_video_id="img_tag_id="popup_div_id="h2_id="h4_id="close_btn_id="loading_video_+1 moredeploy_info_popup_js<span class="clicked_text_<div id="popup_div_<h2 id="h2_<div style="font-size:15px" id="h4_