Quran in Text and Audio Security & Risk Analysis

wordpress.org/plugins/quran-in-text-and-audio

Display the full Quran or specific verses with high-quality audio, translations, and interactive reading features.

60 active installs v1.1.0 PHP 7.0+ WP 3.0.1+ Updated Feb 25, 2026
ayahfull-quranislamic-audioquransurah
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Quran in Text and Audio Safe to Use in 2026?

Generally Safe

Score 100/100

Quran in Text and Audio has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "quran-in-text-and-audio" plugin v1.1.0 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, and the consistent use of prepared statements for SQL are commendable security practices. The lack of known vulnerabilities in its history further reinforces this positive assessment. The plugin's attack surface, limited to three shortcodes, is also relatively small. The critical finding is the absence of nonce checks and capability checks across all entry points. While the static analysis did not uncover any direct vulnerabilities related to these missing checks, their absence represents a significant potential security gap. An attacker could potentially exploit these entry points without proper authorization or validation, leading to unintended actions or data manipulation if any of the shortcode functionalities are sensitive.

In conclusion, the plugin demonstrates excellent coding hygiene in many areas, particularly concerning data handling and external interactions. However, the complete lack of authorization checks (nonces and capabilities) on its shortcodes is a notable weakness. This oversight, while not currently manifesting as a known vulnerability, creates a substantial risk that could be exploited by a malicious actor. Developers should prioritize implementing robust authorization mechanisms for all shortcodes to solidify the plugin's security.

Key Concerns

  • No nonce checks on entry points
  • No capability checks on entry points
Vulnerabilities
None known

Quran in Text and Audio Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Quran in Text and Audio Release Timeline

v1.1.0Current
v1.0.9
v1.0.8
v1.0.7
v1.0.6
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Quran in Text and Audio Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
20 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped20 total outputs
Attack Surface

Quran in Text and Audio Attack Surface

Entry Points3
Unprotected0

Shortcodes 3

[quran_full] public/class-quran-in-text-audio-public.php:55
[quran_surah] public/class-quran-in-text-audio-public.php:56
[quran_ayah] public/class-quran-in-text-audio-public.php:57
WordPress Hooks 3
actionplugins_loadedincludes/class-quran-in-text-audio.php:136
actionwp_enqueue_scriptsincludes/class-quran-in-text-audio.php:151
actionwp_enqueue_scriptsincludes/class-quran-in-text-audio.php:152
Maintenance & Trust

Quran in Text and Audio Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedFeb 25, 2026
PHP min version7.0
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs60
Developer Profile

Quran in Text and Audio Developer Profile

Maidul

12 plugins · 1K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
126 days
View full developer profile
Detection Fingerprints

How We Detect Quran in Text and Audio

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quran-in-text-audio/public/css/quran-in-text-audio-public.css/wp-content/plugins/quran-in-text-audio/public/js/quran-in-text-audio-public.js
Script Paths
/wp-content/plugins/quran-in-text-audio/public/js/quran-in-text-audio-public.js
Version Parameters
quran-in-text-audio/public/css/quran-in-text-audio-public.css?ver=quran-in-text-audio/public/js/quran-in-text-audio-public.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Quran in Text and Audio