
Strx Zurb CSS3 Awesome Buttons Security & Risk Analysis
wordpress.org/plugins/strx-zurb-css3-awesome-buttonsCSS3 Buttons made by the zurb team
Is Strx Zurb CSS3 Awesome Buttons Safe to Use in 2026?
Generally Safe
Score 85/100Strx Zurb CSS3 Awesome Buttons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'strx-zurb-css3-awesome-buttons' plugin v1.0.3 presents a generally positive security posture based on the static analysis. The absence of any known CVEs and the complete avoidance of dangerous functions and raw SQL queries are strong indicators of good development practices. The plugin also appears to have a limited attack surface, with only one shortcode identified as an entry point, and no AJAX handlers or REST API routes that are unprotected. Furthermore, the lack of external HTTP requests reduces the risk of dependency on potentially compromised external resources.
However, there are notable concerns stemming from the code analysis. The most significant is the complete lack of output escaping for its single identified output. This means that any user-provided data displayed by the plugin is susceptible to cross-site scripting (XSS) attacks. Additionally, the absence of nonce and capability checks on the identified entry point, the shortcode, is a critical oversight. This opens the door for potential unauthorized actions or data manipulation if the shortcode's functionality can be exploited without proper authentication or authorization.
The vulnerability history being completely clean is a positive sign, suggesting that the developers have historically prioritized security or have not introduced exploitable flaws. However, this does not negate the immediate risks identified in the current code. The plugin exhibits strengths in its avoidance of common risky practices like raw SQL and dangerous functions, but the critical weaknesses in output escaping and authorization controls on its entry point warrant significant attention to mitigate potential security breaches.
Key Concerns
- Unescaped output detected
- Missing capability checks on entry point
- Missing nonce checks on entry point
Strx Zurb CSS3 Awesome Buttons Security Vulnerabilities
Strx Zurb CSS3 Awesome Buttons Code Analysis
Bundled Libraries
Output Escaping
Strx Zurb CSS3 Awesome Buttons Attack Surface
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
Strx Zurb CSS3 Awesome Buttons Maintenance & Trust
Maintenance Signals
Community Trust
Strx Zurb CSS3 Awesome Buttons Alternatives
MaxButtons – Create buttons
maxbuttons
Maxbuttons is the best and easiest button plugin for WordPress. Within minutes you can create beautiful buttons, share buttons and social icons.
Image Hover Effects Ultimate
image-hover-effects-ultimate
Create stunning image hover effects like gallery, lightbox, comparison, or magnifier with 500+ modern, elegant, lightweight animations.
Button
button
Create beautiful buttons and social icons. Button plugin is powerful and easy to use. You can create any types of buttons such as css3 & 3D Buttons.
Ultimate Hover Effects
ultimate-hover-effects
Ultimate Hover Effects WordPress Plugin is an impressive powerfull modern, yet stylish hover effects for image captions.
WP CSS3 Button Creator
wp-css3-button-creator-plugin
This Wordpress Plugin allows you to create beautiful CSS3 buttons that you can use on your WordPress Site
Strx Zurb CSS3 Awesome Buttons Developer Profile
4 plugins · 120 total installs
How We Detect Strx Zurb CSS3 Awesome Buttons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/strx-zurb-css3-awesome-buttons/css/strx-zurb-css3-awesome-buttons-css.phpHTML / DOM Fingerprints
strx-zurb-css3-awesomeblackredgreenbluemagentaorangeyellow+4 more<a class="strx-zurb-css3-awesome