
Kings Caption Hover Security & Risk Analysis
wordpress.org/plugins/kings-caption-hoverThis plugin will add multiple awesome hover effects for the captions of your portfolio/ gallery items in your WordPress site using shortcodes and cust …
Is Kings Caption Hover Safe to Use in 2026?
Generally Safe
Score 85/100Kings Caption Hover has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "kings-caption-hover" v2.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, SQL injection vulnerabilities, file operations, and external HTTP requests is commendable. Furthermore, all identified SQL queries utilize prepared statements, and output escaping is reported as 100% proper, indicating good development practices in these areas. The plugin also lacks any recorded historical vulnerabilities, suggesting a history of secure development and maintenance.
However, a significant concern arises from the complete absence of nonce checks and capability checks. While the static analysis indicates a small attack surface with only one shortcode and no unprotected entry points, the lack of authorization mechanisms means that if a vulnerability were ever introduced, it could potentially be exploited by any user, regardless of their logged-in status or role. The taint analysis also shows zero flows, which is positive but could also be a reflection of limited analysis scope or the absence of complex data manipulation within the plugin.
In conclusion, "kings-caption-hover" v2.0 demonstrates good foundational security practices by avoiding common coding pitfalls. Its clean vulnerability history further reinforces this. The primary weakness lies in the fundamental lack of authorization checks (nonces and capabilities), which is a critical oversight in web application security. While the current attack surface is small and protected, this omission leaves the plugin vulnerable to privilege escalation or unauthorized actions should any future coding errors occur. Developers should prioritize implementing nonce and capability checks to address this significant risk.
Key Concerns
- Missing Nonce Checks
- Missing Capability Checks
Kings Caption Hover Security Vulnerabilities
Kings Caption Hover Code Analysis
Kings Caption Hover Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Kings Caption Hover Maintenance & Trust
Maintenance Signals
Community Trust
Kings Caption Hover Alternatives
PowerFolio – Portfolio & Image Gallery for Elementor
portfolio-elementor
A powerful portfolio and gallery plugin for WP, Elementor and Gutenberg. Create portfolio and image galleries in seconds using any page builder!
Creative Portfolio
creative-portfolio
Creative portfolio for creative people. This plugin Registers a custom post type for portfolio items and display them on a filterable creative grid.
Portfolio
tc-portfolio
Portfolio is a custom post type based Responsive Filterable Portfolio showing plugin. Users can create stunning portfolio WordPress site using Shortc …
Fancy Grid Portfolio
fancy-grid-portfolio
Create portfolio in nice grid format that is animated and filterable with beautiful hover overlay of project title and description.
Classic Image Hovers for Elementor
classic-image-hovers-for-elementor
Classic Image Hovers adds stylish hover effects to your images with captions in Elementor.
Kings Caption Hover Developer Profile
2 plugins · 20 total installs
How We Detect Kings Caption Hover
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/kings-caption-hover/js/modernizr.custom.js/wp-content/plugins/kings-caption-hover/js/toucheffects.js/wp-content/plugins/kings-caption-hover/css/component.css/wp-content/plugins/kings-caption-hover/js/modernizr.custom.js/wp-content/plugins/kings-caption-hover/js/toucheffects.jsHTML / DOM Fingerprints
kings_gridcs-style-1<ul class="kings_grid cs-style-1">