Strx Zurb CSS3 Awesome Buttons Security & Risk Analysis

wordpress.org/plugins/strx-zurb-css3-awesome-buttons

CSS3 Buttons made by the zurb team

10 active installs v1.0.3 PHP + WP 2.5+ Updated Dec 19, 2010
awesomebuttonscss3zurb
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Strx Zurb CSS3 Awesome Buttons Safe to Use in 2026?

Generally Safe

Score 85/100

Strx Zurb CSS3 Awesome Buttons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 15yr ago
Risk Assessment

The 'strx-zurb-css3-awesome-buttons' plugin v1.0.3 presents a generally positive security posture based on the static analysis. The absence of any known CVEs and the complete avoidance of dangerous functions and raw SQL queries are strong indicators of good development practices. The plugin also appears to have a limited attack surface, with only one shortcode identified as an entry point, and no AJAX handlers or REST API routes that are unprotected. Furthermore, the lack of external HTTP requests reduces the risk of dependency on potentially compromised external resources.

However, there are notable concerns stemming from the code analysis. The most significant is the complete lack of output escaping for its single identified output. This means that any user-provided data displayed by the plugin is susceptible to cross-site scripting (XSS) attacks. Additionally, the absence of nonce and capability checks on the identified entry point, the shortcode, is a critical oversight. This opens the door for potential unauthorized actions or data manipulation if the shortcode's functionality can be exploited without proper authentication or authorization.

The vulnerability history being completely clean is a positive sign, suggesting that the developers have historically prioritized security or have not introduced exploitable flaws. However, this does not negate the immediate risks identified in the current code. The plugin exhibits strengths in its avoidance of common risky practices like raw SQL and dangerous functions, but the critical weaknesses in output escaping and authorization controls on its entry point warrant significant attention to mitigate potential security breaches.

Key Concerns

  • Unescaped output detected
  • Missing capability checks on entry point
  • Missing nonce checks on entry point
Vulnerabilities
None known

Strx Zurb CSS3 Awesome Buttons Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Strx Zurb CSS3 Awesome Buttons Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
1

Bundled Libraries

TinyMCE

Output Escaping

0% escaped1 total outputs
Attack Surface

Strx Zurb CSS3 Awesome Buttons Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[szb] strx-zurb-css3-awesome-buttons.php:50
WordPress Hooks 5
actionwp_print_stylesstrx-zurb-css3-awesome-buttons.php:52
filtermce_external_pluginstinymce\mceplugins.class.php:23
filtermce_external_languagestinymce\mceplugins.class.php:26
filtertiny_mce_before_inittinymce\mceplugins.class.php:30
filtermce_buttonstinymce\mceplugins.class.php:33
Maintenance & Trust

Strx Zurb CSS3 Awesome Buttons Maintenance & Trust

Maintenance Signals

WordPress version tested3.0.5
Last updatedDec 19, 2010
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Strx Zurb CSS3 Awesome Buttons Developer Profile

straps

4 plugins · 120 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Strx Zurb CSS3 Awesome Buttons

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/strx-zurb-css3-awesome-buttons/css/strx-zurb-css3-awesome-buttons-css.php

HTML / DOM Fingerprints

CSS Classes
strx-zurb-css3-awesomeblackredgreenbluemagentaorangeyellow+4 more
Shortcode Output
<a class="strx-zurb-css3-awesome
FAQ

Frequently Asked Questions about Strx Zurb CSS3 Awesome Buttons