
Link To Bible Security & Risk Analysis
wordpress.org/plugins/link-to-bibleLinks bible-references in posts automatically to the appropriate bible-verse(s) at bibleserver.com.
Is Link To Bible Safe to Use in 2026?
Generally Safe
Score 99/100Link To Bible has a strong security track record. Known vulnerabilities have been patched promptly.
The "link-to-bible" plugin v3.0.6 exhibits a mixed security posture. On the positive side, the static analysis reveals no identified AJAX handlers, REST API routes, shortcodes, or cron events, resulting in zero entry points and a seemingly minimal attack surface. Furthermore, all SQL queries are correctly utilizing prepared statements, and there are no reported critical or high-severity vulnerabilities in its history. However, significant concerns arise from the complete lack of output escaping (0% properly escaped) and the absence of any nonce or capability checks. This indicates a high likelihood of cross-site scripting (XSS) vulnerabilities, as user-controlled data is likely being rendered directly into the page without sanitization. The single medium-severity vulnerability in its history, identified as Cross-site Scripting, further corroborates this risk, despite being patched. The presence of file operations and external HTTP requests, while not directly flagged as vulnerable in this analysis, warrants careful scrutiny in conjunction with the lack of proper output escaping.
Key Concerns
- 0% output escaping
- No nonce checks
- No capability checks
- 1 medium CVE (XSS)
Link To Bible Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Link To Bible <= 2.5.9 - Authenticated (Administrator+) Stored Cross-Site Scripting
Link To Bible Code Analysis
Output Escaping
Link To Bible Attack Surface
Maintenance & Trust
Link To Bible Maintenance & Trust
Maintenance Signals
Community Trust
Link To Bible Alternatives
Show and Link Bible Verse
show-and-link-bible-verse
Converts Bible references into interactive links with an option to display full verses in a popup
The Word Widget
the-word-widget
Shows two Bible verses per day: "The Word" by project Bible 2.0, available in more than 20 languages, got remotely for each day
VerseLinker
verselinker
VerseLinker detects Bible references in WordPress content, converting them into links with tooltips and quick access to verses on Bibliatodo.com.
Bible Verses – Random Bible Verses
bible-verses
Shows random Bible verses as widget or using shortcode.
Verse of the Day Widget for WP
verse-of-the-day-widget-for-wp
Displays daily Bible verses over AI-generated nature backgrounds, with static or video options. Includes translation into 100+ languages via ChatGPT.
Link To Bible Developer Profile
1 plugin · 200 total installs
How We Detect Link To Bible
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/link-to-bible/resources/css/admin-style.css/wp-content/plugins/link-to-bible/resources/css/style.css/wp-content/plugins/link-to-bible/resources/js/admin.js/wp-content/plugins/link-to-bible/resources/js/link-to-bible.js/wp-content/plugins/link-to-bible/resources/js/admin.js/wp-content/plugins/link-to-bible/resources/js/link-to-bible.jslink-to-bible/resources/css/admin-style.css?ver=link-to-bible/resources/css/style.css?ver=link-to-bible/resources/js/admin.js?ver=link-to-bible/resources/js/link-to-bible.js?ver=HTML / DOM Fingerprints
ltb_options_formid="langsel"id="bversel"id="ltb_aak_cb"id="ltb_apikey_inp"id="ltb_apikeynote"name="ltb_options[aak_on]"+4 morejQuery(document).readyjQuery.getJSON