
Lightbox Images for Divi Enhanced Security & Risk Analysis
wordpress.org/plugins/lightbox-images-for-diviExtends Divi's native lightbox effect to all auto-linked images. Requires Divi Theme or Divi Builder Plugin. Compatible with Divi 4.10+ and Divi 5.
Is Lightbox Images for Divi Enhanced Safe to Use in 2026?
Generally Safe
Score 100/100Lightbox Images for Divi Enhanced has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided static analysis and vulnerability history, the "lightbox-images-for-divi" plugin v2.1.1 exhibits a seemingly strong security posture. There are no identified vulnerabilities in its history, and the static analysis reveals a remarkably small attack surface with no identified AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, the code signals indicate no dangerous functions, no direct SQL queries (all are prepared), no file operations, and no external HTTP requests. This suggests a clean codebase with good development practices concerning potential attack vectors and data handling.
However, a significant concern arises from the absence of any capability checks or nonce checks. While the attack surface is minimal, any potential entry points that *might* exist and were not detected in this analysis would be entirely unprotected. The low percentage of properly escaped output (25%) is also a notable weakness. This means that a quarter of the plugin's outputs are potentially vulnerable to cross-site scripting (XSS) attacks if user-supplied data is not properly sanitized before being displayed. Given the lack of any historical vulnerabilities, it's possible that the plugin's limited functionality and attack surface have not yet exposed these potential weaknesses, or that any such issues have been mitigated by other factors not detailed here. The absence of taint analysis data is also a gap, as it could reveal complex data flow vulnerabilities.
Key Concerns
- Output escaping is only 25% proper
- No capability checks detected
- No nonce checks detected
Lightbox Images for Divi Enhanced Security Vulnerabilities
Lightbox Images for Divi Enhanced Code Analysis
Output Escaping
Lightbox Images for Divi Enhanced Attack Surface
WordPress Hooks 5
Maintenance & Trust
Lightbox Images for Divi Enhanced Maintenance & Trust
Maintenance Signals
Community Trust
Lightbox Images for Divi Enhanced Alternatives
Firelight Lightbox
easy-fancybox
Formerly Easy Fancybox. The most popular WordPress lightbox plugin. Simple, fast, and responsive. Opens images, videos, PDFs, and custom popups.
Lightbox & Modal Popup WordPress Plugin – FooBox
foobox-image-lightbox
A responsive image lightbox for WordPress galleries, WordPress attachments & FooGallery
Gallery by FooGallery
foogallery
Photo Gallery, Image Gallery by FooGallery — fast, responsive, SEO-optimized, and packed with beautiful layouts.
Responsive Lightbox & Gallery
responsive-lightbox
The most popular lightbox plugin and responsive gallery builder for WordPress.
Simple Lightbox
simple-lightbox
The highly customizable lightbox for WordPress
Lightbox Images for Divi Enhanced Developer Profile
21 plugins · 24K total installs
How We Detect Lightbox Images for Divi Enhanced
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lightbox-images-for-divi/assets/js/lightbox-images-for-divi.js/wp-content/plugins/lightbox-images-for-divi/assets/js/lightbox-images-for-divi.jslightbox-images-for-divi/assets/js/lightbox-images-for-divi.js?ver=