
PDF lightbox viewer by csomorelwood Security & Risk Analysis
wordpress.org/plugins/lightbox-pdf-viewer-by-csomorWith this plugin you will be able to view PDF files in lighbox popup, and play mp3 files via shortcodes.
Is PDF lightbox viewer by csomorelwood Safe to Use in 2026?
Generally Safe
Score 85/100PDF lightbox viewer by csomorelwood has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "lightbox-pdf-viewer-by-csomor" v1.0 plugin demonstrates a generally good security posture in its static analysis. The absence of dangerous functions, file operations, external HTTP requests, and SQL queries without prepared statements are strong indicators of secure coding practices. The high percentage of properly escaped output further mitigates risks associated with cross-site scripting (XSS).
However, there are notable areas for concern. The complete lack of nonce checks and capability checks is a significant weakness, especially given the presence of a shortcode as an entry point. While there are no AJAX handlers or REST API routes currently, if functionality were to be added without proper authentication and authorization mechanisms, it could expose the plugin to vulnerabilities. The vulnerability history being entirely clear is positive, but it doesn't negate the inherent risks identified in the code analysis.
In conclusion, while the plugin avoids several common pitfalls, the lack of essential security checks like nonces and capability checks on its existing entry point (the shortcode) presents a notable risk. Developers should prioritize implementing these checks to harden the plugin's security, especially if its functionality is expanded in the future.
Key Concerns
- No nonce checks found
- No capability checks found
- Unescaped output detected (14%)
PDF lightbox viewer by csomorelwood Security Vulnerabilities
PDF lightbox viewer by csomorelwood Release Timeline
PDF lightbox viewer by csomorelwood Code Analysis
Output Escaping
PDF lightbox viewer by csomorelwood Attack Surface
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
PDF lightbox viewer by csomorelwood Maintenance & Trust
Maintenance Signals
Community Trust
PDF lightbox viewer by csomorelwood Alternatives
Wonder PDF Embed
wonderplugin-pdf-embed
Embed PDF to your WordPress website by using Mozilla's PDF.js
PDF Embedder
pdf-embedder
Seamlessly embed PDFs into your content, with customizations and intelligent responsive resizing, and no third-party services or iframes.
Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer
3d-flipbook-dflip-lite
Dear Flipbook creates PDF Flipbook, 3D Flipbook, PDF viewer, PDF embed for WordPress sites. Create impressive and realistic 3D flipbooks with PDFs.
3D FlipBook – PDF Embedder, PDF Flipbook Viewer, Flipbook Image Gallery
interactive-3d-flipbook-powered-physics-engine
3D FlipBook is PDF Viewer, allowing to browse images, PDFs or HTMLs as flipbook. Flipbook attracts user attention and makes more impression on him.
Embed Any Document – Embed PDF, Word, PowerPoint and Excel Files
embed-any-document
Embed PDF, DOC, PPT and XLS documents easily on your WordPress website with the help of Google Docs Viewer or Microsoft Office Online.
PDF lightbox viewer by csomorelwood Developer Profile
5 plugins · 120 total installs
How We Detect PDF lightbox viewer by csomorelwood
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lightbox-pdf-viewer-by-csomor/assets/css/style.css/wp-content/plugins/lightbox-pdf-viewer-by-csomor/assets/js/pdf.min.js/wp-content/plugins/lightbox-pdf-viewer-by-csomor/assets/js/lightbox_pdf_viewer.js/wp-content/plugins/lightbox-pdf-viewer-by-csomor/assets/js/pdf.min.js/wp-content/plugins/lightbox-pdf-viewer-by-csomor/assets/js/lightbox_pdf_viewer.jslightbox-pdf-viewer-by-csomor/assets/css/style.css?ver=lightbox-pdf-viewer-by-csomor/assets/js/pdf.min.js?ver=lightbox-pdf-viewer-by-csomor/assets/js/lightbox_pdf_viewer.js?ver=HTML / DOM Fingerprints
lightbox_pdf-cardrounded-boxpdf-shadowopen-lbpdfPDF attachment to custom post typeMP3 attachment to custom post typeSet up Options pageselected_lightbox_pdfselected_lightbox_mp3selected-audioplugin_urlopenLightBoxPDFView/wp-json/wp/v2/lightbox_pdf_post_type_generated_by_the_god_himself[lbpdfviewr id=type=buttontype=thumbnailaudio=true