Look Inside PDF Security & Risk Analysis

wordpress.org/plugins/look-inside-pdf

Look Inside a pdf book to read or book sample to read

10 active installs v1.0.0 PHP + WP 5.0+ Updated Nov 18, 2020
book-sampleread-somerokomari
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Look Inside PDF Safe to Use in 2026?

Generally Safe

Score 85/100

Look Inside PDF has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "look-inside-pdf" v1.0.0 plugin exhibits a generally good security posture based on the provided static analysis. The absence of known CVEs and the lack of identified critical or high-severity taint flows are positive indicators. Furthermore, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and incorporating at least one nonce check, which helps prevent certain types of cross-site request forgery attacks.

However, there are areas for improvement. The most significant concern is the low percentage (27%) of properly escaped outputs. This indicates a potential risk of cross-site scripting (XSS) vulnerabilities, where malicious scripts could be injected into the website through user-controlled input that is not adequately sanitized before being displayed. The lack of capability checks on any entry points is also a weakness, as it means that potentially sensitive actions might be accessible to users without the necessary permissions.

Overall, while the plugin has a clean vulnerability history and avoids common pitfalls like raw SQL queries or extensive attack surfaces without authentication, the unescaped output is a notable security flaw that requires attention. Addressing this would significantly enhance the plugin's security.

Key Concerns

  • Low percentage of properly escaped output
  • No capability checks on entry points
Vulnerabilities
None known

Look Inside PDF Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Look Inside PDF Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
19
7 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

27% escaped26 total outputs
Attack Surface

Look Inside PDF Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actionwoocommerce_product_options_general_product_dataincludes\Admin\Product.php:22
actionwoocommerce_process_product_metaincludes\Admin\Product.php:23
actionadmin_menuincludes\Admin.php:23
actionadmin_initincludes\Admin.php:24
actionadmin_enqueue_scriptsincludes\Assets.php:20
actionwp_enqueue_scriptsincludes\Assets.php:22
actionwoocommerce_product_thumbnailsincludes\Frontend\Product.php:22
actionwoocommerce_after_add_to_cart_buttonincludes\Frontend\Product.php:25
actionwoocommerce_loadedlook-inside-pdf.php:84
actioninitlook-inside-pdf.php:219
actioninitlook-inside-pdf.php:222
Maintenance & Trust

Look Inside PDF Maintenance & Trust

Maintenance Signals

WordPress version tested5.5.18
Last updatedNov 18, 2020
PHP min version
Downloads1K

Community Trust

Rating70/100
Number of ratings2
Active installs10
Alternatives

Look Inside PDF Alternatives

No alternatives data available yet.

Developer Profile

Look Inside PDF Developer Profile

Kapil Paul

4 plugins · 1K total installs

82
trust score
Avg Security Score
83/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Look Inside PDF

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/look-inside-pdf/assets/css/main.css/wp-content/plugins/look-inside-pdf/assets/js/main.js
Script Paths
/wp-content/plugins/look-inside-pdf/assets/js/main.js
Version Parameters
look-inside-pdf/assets/css/main.css?ver=look-inside-pdf/assets/js/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
lipdf-preview
Data Attributes
data-lipdf-iddata-lipdf-widthdata-lipdf-heightdata-lipdf-url
JS Globals
LookInsidePDF
Shortcode Output
[look_inside_pdf]
FAQ

Frequently Asked Questions about Look Inside PDF