Jeba Horizontal Timeline Security & Risk Analysis

wordpress.org/plugins/jeba-horizontal-timeline

Jeba Horizontal Timeline is an awesome Horizontal Timeline, super lightweight plugin for your wordpress website.

10 active installs v1.0 PHP + WP 3.0.1+ Updated Dec 4, 2015
horizontal-timelinejeba-horizontal-timelinetimelinetimelines
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Jeba Horizontal Timeline Safe to Use in 2026?

Generally Safe

Score 85/100

Jeba Horizontal Timeline has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The jeba-horizontal-timeline plugin version 1.0 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, SQL queries that are fully prepared, and proper output escaping are significant strengths. Furthermore, the lack of file operations, external HTTP requests, and the absence of recorded vulnerabilities in its history indicate careful development practices. The plugin also demonstrates good practices by not bundling external libraries that could introduce vulnerabilities.

However, a notable concern arises from the complete lack of nonce and capability checks across all identified entry points, including the three shortcodes. While the attack surface is relatively small and there are no AJAX or REST API routes without checks, shortcodes can still be exploited if they process user-supplied data without proper authorization or verification. The absence of taint analysis results might suggest limited complex data flows, but it doesn't negate the risk of a simple input being processed without security measures.

In conclusion, while the plugin is built on a secure foundation regarding common vulnerabilities like SQL injection and XSS, the oversight in implementing nonce and capability checks for its shortcodes presents a potential avenue for attacks, particularly if those shortcodes interact with user-controlled data. Addressing this would significantly enhance its overall security.

Key Concerns

  • Missing nonce/capability checks on entry points
Vulnerabilities
None known

Jeba Horizontal Timeline Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Jeba Horizontal Timeline Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Jeba Horizontal Timeline Attack Surface

Entry Points3
Unprotected0

Shortcodes 3

[jeba_timeline] jeba-index.php:66
[ttime] jeba-index.php:104
[tcontent] jeba-index.php:134
WordPress Hooks 4
actioninitjeba-index.php:13
actioninitjeba-index.php:19
actionwp_footerjeba-index.php:25
actionwp_headjeba-index.php:43
Maintenance & Trust

Jeba Horizontal Timeline Maintenance & Trust

Maintenance Signals

WordPress version tested4.0.38
Last updatedDec 4, 2015
PHP min version
Downloads3K

Community Trust

Rating60/100
Number of ratings2
Active installs10
Developer Profile

Jeba Horizontal Timeline Developer Profile

Md Jahed

10 plugins · 190 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Jeba Horizontal Timeline

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jeba-horizontal-timeline/js/style.css/wp-content/plugins/jeba-horizontal-timeline/js/jquery.mobile.custom.min.js/wp-content/plugins/jeba-horizontal-timeline/js/main.js
Script Paths
/wp-content/plugins/jeba-horizontal-timeline/js/jquery.mobile.custom.min.js/wp-content/plugins/jeba-horizontal-timeline/js/main.js

HTML / DOM Fingerprints

CSS Classes
cd-horizontal-timelineevents-wrappereventscd-timeline-navigationevents-content
Data Attributes
data-date
JS Globals
jQuery
Shortcode Output
<section class="cd-horizontal-timeline"><div class="timeline"><div class="events-wrapper"><div class="events">
FAQ

Frequently Asked Questions about Jeba Horizontal Timeline