Simple Lightbox for WordPress Security & Risk Analysis

wordpress.org/plugins/simple-lightbox-fslight

Provides an easy was to add a Lightbox to Images in Gutenberg image, gallery and Media-with-Text-Blocks. Additionally to Youtube and HTML5 Videos but …

400 active installs v3.2.0 PHP 8.0+ WP 5.9+ Updated Dec 11, 2025
fslightboxgallerygutenberglightboxvideo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Lightbox for WordPress Safe to Use in 2026?

Generally Safe

Score 100/100

Simple Lightbox for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'simple-lightbox-fslight' v3.2.0 plugin exhibits a generally strong security posture. The absence of identified vulnerabilities in its history and the clean static analysis results, particularly the lack of critical taint flows, dangerous functions, and unescaped output, are significant strengths. The plugin also appears to adhere to good practices by using prepared statements for its SQL queries. However, there are some areas that warrant attention. The complete lack of any capability checks or nonce checks across all identified entry points (even though the number of entry points is zero) suggests a potential oversight. While the current implementation might be secure due to the absence of exploitable entry points, a future addition of functionality could introduce risks if these security mechanisms are not considered. The file operations without explicit context also represent a minor area of concern, as their purpose and potential for misuse would need further investigation.

Key Concerns

  • Missing capability checks
  • Missing nonce checks
  • File operations without clear context
Vulnerabilities
None known

Simple Lightbox for WordPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Simple Lightbox for WordPress Release Timeline

v3.2.0Current
v3.1.0
v3.0.0
v2.2.0
v2.1.2
v2.1.1
v2.1.0
v2.0.0
v1.5.0
v1.4.0
v1.3.3
v1.3.0
v1.2.0
v1.1.1
v1.1.0
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

Simple Lightbox for WordPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
6
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries
Attack Surface

Simple Lightbox for WordPress Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
filterupgrader_pre_installadmin\pre-post-install.php:19
filterupgrader_post_installadmin\pre-post-install.php:20
actionadmin_noticesadmin\pre-post-install.php:102
actionwp_enqueue_scriptsclasses\RewriteFigureTagsClass.php:180
filterthe_contentclasses\RewriteFigureTagsClass.php:183
actiontemplate_redirectclasses\RewriteFigureTagsClass.php:230
Maintenance & Trust

Simple Lightbox for WordPress Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 11, 2025
PHP min version8.0
Downloads7K

Community Trust

Rating100/100
Number of ratings10
Active installs400
Developer Profile

Simple Lightbox for WordPress Developer Profile

Martin von Berg

3 plugins · 620 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple Lightbox for WordPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-lightbox-fslight/assets/css/fslightbox.min.css/wp-content/plugins/simple-lightbox-fslight/assets/js/fslightbox.min.js
Script Paths
/wp-content/plugins/simple-lightbox-fslight/assets/js/fslightbox.min.js
Version Parameters
simple-lightbox-fslight/assets/css/fslightbox.min.css?ver=simple-lightbox-fslight/assets/js/fslightbox.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
wp-block-imagewp-block-media-textwp-block-videopostie-image
Data Attributes
data-fslightboxdata-type
JS Globals
fslightbox
FAQ

Frequently Asked Questions about Simple Lightbox for WordPress