
Mini PopUp Security & Risk Analysis
wordpress.org/plugins/mini-popupShows a popup to share your fanpage in your blog easily.
Is Mini PopUp Safe to Use in 2026?
Generally Safe
Score 85/100Mini PopUp has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "mini-popup" plugin v1.2.3 exhibits a generally positive security posture based on the static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. Furthermore, the code demonstrates good practices by utilizing prepared statements for all SQL queries and including at least one nonce check. The lack of file operations and external HTTP requests further reduces potential vulnerabilities.
However, there are areas for improvement. A notable concern is the presence of one flow with an unsanitized path identified during taint analysis. While no critical or high severity taint flows were found, an unsanitized path can still lead to security issues if it's exploitable. The output escaping also shows room for enhancement, with 57% properly escaped, meaning 43% of outputs are not, which could expose the site to cross-site scripting (XSS) vulnerabilities if user-controlled data is involved.
The plugin's vulnerability history is exceptionally clean, with no known CVEs recorded. This suggests a history of good security development or effective patching. In conclusion, "mini-popup" v1.2.3 is a relatively secure plugin due to its limited attack surface and good SQL practices. The primary risks stem from the identified unsanitized path and the moderate rate of unescaped output, which should be addressed.
Key Concerns
- Unsanitized path in taint analysis
- Moderate percentage of unescaped output
Mini PopUp Security Vulnerabilities
Mini PopUp Release Timeline
Mini PopUp Code Analysis
Output Escaping
Data Flow Analysis
Mini PopUp Attack Surface
WordPress Hooks 9
Maintenance & Trust
Mini PopUp Maintenance & Trust
Maintenance Signals
Community Trust
Mini PopUp Alternatives
Alligator Popup
alligator-popup
Add popups to your site. Add links to pages/posts via a shortcode which will be opened in a popup browser window.
Easy Lightbox – Image, Gallery and Video Lightbox for WordPress
easy-lightbox-wp
Easy Lightbox is an Image, Gallery and Video Lightbox plugin for WordPress. This plugin will enable a smooth Lightbox in your WordPress website.
Popup Like box – Page Plugin
ays-facebook-popup-likebox
With the help of this amazing plugin you can promote your Facebook page and add number of Likes , which is very important today.
jQuery Hover Footnotes
jquery-hover-footnotes
JQuery Hover Footnotes lets you add footnotes with qualifiers of you're choosing, then dynamically displays them on hover-over.
Gravity Forms Popup Widget
gravity-forms-popup-widget
A widget to add Gravity Form in dialog popup, has an option to add a delay, a position, and an introduction page.
Mini PopUp Developer Profile
1 plugin · 100 total installs
How We Detect Mini PopUp
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mini-popup/js/colorpicker.jsjs/colorpicker.jsHTML / DOM Fingerprints
wrapform-tablemedium-textregular-textpopupcolordata-default-color