Tabs Awesome – Reponsive WordPress Tabs Plugin Security & Risk Analysis

wordpress.org/plugins/tab-awesome

Create tabs in WordPress become easy. Multiple layout to choose and combine it with icon. Create stuninng responsive tabs.

100 active installs v1.0.1 PHP 5.6+ WP 5.4+ Updated Jun 25, 2024
horizontal-tabsresponsive-tabstabstabs-plugin
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Tabs Awesome – Reponsive WordPress Tabs Plugin Safe to Use in 2026?

Generally Safe

Score 92/100

Tabs Awesome – Reponsive WordPress Tabs Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The 'tab-awesome' plugin version 1.0.1 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests is highly positive. Furthermore, the near-perfect output escaping suggests diligent handling of user-provided data to prevent XSS vulnerabilities. The lack of any recorded vulnerabilities or CVEs in its history is also a good indicator of past secure development practices.

However, a significant concern arises from the absence of nonce checks and capability checks across all identified entry points. While the current analysis shows no unprotected AJAX handlers or REST API routes, relying solely on the implicit security of these entry points is risky. The single shortcode, if it processes any user-controllable input without proper validation and authorization checks, could become a vector for attacks, especially in conjunction with the lack of explicit security measures. The taint analysis showing zero unsanitized paths is encouraging, but this could be due to the limited scope of the analysis or the plugin's simple functionality; the lack of explicit checks on the shortcode remains a point of concern.

In conclusion, 'tab-awesome' v1.0.1 appears to be built with good coding practices regarding data sanitization and prevention of direct code execution vulnerabilities. Its clean vulnerability history further supports this. The primary weakness lies in the lack of explicit security checks (nonces and capabilities) on its identified entry points, particularly the shortcode. While the current attack surface is small and appears to be implicitly protected, this oversight could lead to vulnerabilities if the plugin's functionality evolves or is used in unexpected contexts.

Key Concerns

  • No nonce checks found
  • No capability checks found
  • Minor output escaping issue (less than 100%)
Vulnerabilities
None known

Tabs Awesome – Reponsive WordPress Tabs Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Tabs Awesome – Reponsive WordPress Tabs Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
91 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped95 total outputs
Attack Surface

Tabs Awesome – Reponsive WordPress Tabs Plugin Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[tab_awesome] tab-awesome.php:192
WordPress Hooks 16
actionadmin_menuadmin\class-tab-awesome-admin.php:55
actionplugins_loadedincludes\class-tab-awesome.php:142
actionadmin_enqueue_scriptsincludes\class-tab-awesome.php:157
actionadmin_enqueue_scriptsincludes\class-tab-awesome.php:158
actionwp_enqueue_scriptsincludes\class-tab-awesome.php:173
actionwp_enqueue_scriptsincludes\class-tab-awesome.php:174
actionelementor/initincludes\element-helper.php:14
actioninittab-awesome-post-type.php:7
actioncarbon_fields_register_fieldstab-awesome-post-type.php:54
actionelementor/widgets/widgets_registeredtab-awesome.php:87
filtermanage_tab-awesome_posts_columnstab-awesome.php:106
actionmanage_tab-awesome_posts_custom_columntab-awesome.php:110
filtersingle_templatetab-awesome.php:114
actionafter_setup_themetab-awesome.php:124
actionelementor/preview/enqueue_stylestab-awesome.php:130
actionwp_headtab-awesome.php:214
Maintenance & Trust

Tabs Awesome – Reponsive WordPress Tabs Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedJun 25, 2024
PHP min version5.6
Downloads4K

Community Trust

Rating80/100
Number of ratings2
Active installs100
Developer Profile

Tabs Awesome – Reponsive WordPress Tabs Plugin Developer Profile

themesawesome

11 plugins · 3K total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Tabs Awesome – Reponsive WordPress Tabs Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/tab-awesome/public/css/hovers.css/wp-content/plugins/tab-awesome/public/css/fontawesome.min.css/wp-content/plugins/tab-awesome/public/css/thaw-flexgrid.css/wp-content/plugins/tab-awesome/public/css/tab-awesome-public.css
Version Parameters
tab-awesome-public.css?ver=1.0.0

HTML / DOM Fingerprints

CSS Classes
tab-style-4tab-style-11
Data Attributes
tab_style_choice
Shortcode Output
[tab_awesome id=
FAQ

Frequently Asked Questions about Tabs Awesome – Reponsive WordPress Tabs Plugin