SyntaxHighlighter Evolved: ABAP Brush Security & Risk Analysis

wordpress.org/plugins/syntaxhighlighter-evolved-abap-brush

This is a Advanced Business Application Programming (ABAP) brush for the "SyntaxHighlighter Evolved" plugin.

10 active installs v0.2 PHP + WP 3.1+ Updated Mar 13, 2011
codehtmlphpsourcecodexhtml
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is SyntaxHighlighter Evolved: ABAP Brush Safe to Use in 2026?

Generally Safe

Score 85/100

SyntaxHighlighter Evolved: ABAP Brush has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 15yr ago
Risk Assessment

The syntaxhighlighter-evolved-abap-brush v0.2 plugin exhibits a remarkably strong security posture based on the provided static analysis. The complete absence of any detected dangerous functions, SQL queries without prepared statements, unescaped output, file operations, or external HTTP requests is highly commendable. Furthermore, the zero attack surface, meaning no exposed AJAX handlers, REST API routes, shortcodes, or cron events, significantly reduces the plugin's exploitability. The vulnerability history is equally clean, with no recorded CVEs, indicating a stable and well-maintained codebase or a lack of prior research targeting this specific plugin version.

While the static analysis reveals an excellent security foundation, the lack of explicit nonce or capability checks across the zero entry points might be a minor observation. However, given that there are no entry points to begin with, this is more of a theoretical observation rather than a practical concern. The taint analysis also shows no unsanitized paths, reinforcing the impression of a secure implementation. In conclusion, this plugin appears to be very secure with no immediate, evident risks. The developers have demonstrated good security practices by minimizing the attack surface and avoiding common vulnerability patterns. The absence of any past vulnerabilities further supports this positive assessment.

Vulnerabilities
None known

SyntaxHighlighter Evolved: ABAP Brush Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

SyntaxHighlighter Evolved: ABAP Brush Release Timeline

v0.2Current
v0.1
Code Analysis
Analyzed Mar 17, 2026

SyntaxHighlighter Evolved: ABAP Brush Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

SyntaxHighlighter Evolved: ABAP Brush Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actioninitsyntaxhighlighter-evolved-abap-brush.php:12
filtersyntaxhighlighter_brushessyntaxhighlighter-evolved-abap-brush.php:15
Maintenance & Trust

SyntaxHighlighter Evolved: ABAP Brush Maintenance & Trust

Maintenance Signals

WordPress version tested3.1.4
Last updatedMar 13, 2011
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

SyntaxHighlighter Evolved: ABAP Brush Developer Profile

Fanninger Thomas

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SyntaxHighlighter Evolved: ABAP Brush

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/syntaxhighlighter-evolved-abap-brush/shBrushAbap.js
Script Paths
/wp-content/plugins/syntaxhighlighter-evolved-abap-brush/shBrushAbap.js
Version Parameters
syntaxhighlighter-brush-abap=1.0.0

HTML / DOM Fingerprints

JS Globals
SyntaxHighlighter.brushes.Abap
FAQ

Frequently Asked Questions about SyntaxHighlighter Evolved: ABAP Brush