
Native Fullscreen Security & Risk Analysis
wordpress.org/plugins/native-fullscreenFullscreen mode just got real.
Is Native Fullscreen Safe to Use in 2026?
Generally Safe
Score 85/100Native Fullscreen has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The native-fullscreen plugin version 1.0 exhibits a mixed security posture. On the positive side, it demonstrates excellent practices regarding SQL queries, exclusively using prepared statements, and has no recorded vulnerabilities or CVEs in its history. The absence of file operations and external HTTP requests also reduces the attack surface. However, there are notable concerns that warrant attention. The plugin utilizes the dangerous `create_function` function, which is a known security risk due to its potential for code injection. Furthermore, a significant portion of its output (69%) is not properly escaped, posing a risk of cross-site scripting (XSS) vulnerabilities, especially if user-supplied data is involved in the output. The lack of nonce and capability checks on its single entry point, the shortcode, means that it is potentially accessible and executable without proper authentication or authorization, although the static analysis indicates no unprotected entry points directly. The absence of taint analysis results is also a weakness, preventing a deeper understanding of potential data flow vulnerabilities. Overall, while the plugin has a clean vulnerability history and good SQL practices, the presence of `create_function` and insufficient output escaping are significant risks that require immediate remediation.
Key Concerns
- Use of dangerous function 'create_function'
- Insufficient output escaping
- Missing nonce checks
- Missing capability checks
Native Fullscreen Security Vulnerabilities
Native Fullscreen Code Analysis
Dangerous Functions Found
Output Escaping
Native Fullscreen Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Native Fullscreen Maintenance & Trust
Maintenance Signals
Community Trust
Native Fullscreen Alternatives
Simple Full Screen Background Image
simple-full-screen-background-image
This plugin provides a simple way to set an automatically scaled full screen background image.
Fullscreen Menu
animated-fullscreen-menu
Boost user engagement with a fullscreen menu on your website.
Full Screen Background
fullscreen-background
Full Screen Background is a lightweight plugin to add full screen image or video on wordpress websites. You can choose which page or post you want to …
Webyx for Gutenberg – Fullpage Fullscreen Scrolling Websites
webyx
Webyx for Gutenberg it's a simple way to create amazing fullpage full screen scrollable websites in WordPress with Gutenberg editor.
Webyx for Elementor – Fullpage Fullscreen Scrolling Websites
webyx-fe
Webyx for Elementor is a simple way to create amazing fullpage full screen scrollable websites in WordPress with Elementor builder.
Native Fullscreen Developer Profile
5 plugins · 140 total installs
How We Detect Native Fullscreen
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/native-fullscreen/js/nativefullscreen.js/wp-content/plugins/native-fullscreen/css/nativefullscreen.css/wp-content/plugins/native-fullscreen/js/nativefullscreen.jsHTML / DOM Fingerprints
request-fullscreenrel<input type="button" value="