
WP Tabby – Ultimate WP Tabs Plugin for WordPress Security & Risk Analysis
wordpress.org/plugins/tabby-freeWP Tabby is the cleanest, easy-to-use, lightweight, customizable, responsive WordPress tabs plugin to show your content in a beautiful way.
Is WP Tabby – Ultimate WP Tabs Plugin for WordPress Safe to Use in 2026?
Generally Safe
Score 92/100WP Tabby – Ultimate WP Tabs Plugin for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'tabby-free' v1.1.1 exhibits a generally strong security posture based on the static analysis. It demonstrates good security practices by implementing nonce checks for all identified entry points and performing capability checks where appropriate. The absence of dangerous functions, file operations, and external HTTP requests further bolsters its security. The high percentage of properly escaped output and the moderate use of prepared statements in SQL queries are positive indicators. The lack of any historical vulnerabilities, including critical or high severity ones, suggests a consistent commitment to security by the developers.
However, there are a few areas that warrant attention. While the static analysis found no critical or high severity taint flows, the fact that 50% of SQL queries are not using prepared statements presents a potential risk for SQL injection vulnerabilities if user input is not meticulously sanitized before being incorporated into these queries. The presence of AJAX handlers without explicit authentication checks, although currently zero, is a critical detail to monitor. Any future additions to the AJAX handlers without robust authorization checks would significantly increase the attack surface and risk. The plugin's vulnerability history is a significant strength, indicating developer diligence. Overall, 'tabby-free' v1.1.1 is well-secured, with the primary area for improvement being the complete adoption of prepared statements for all SQL queries.
Key Concerns
- SQL queries not using prepared statements
WP Tabby – Ultimate WP Tabs Plugin for WordPress Security Vulnerabilities
WP Tabby – Ultimate WP Tabs Plugin for WordPress Release Timeline
WP Tabby – Ultimate WP Tabs Plugin for WordPress Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WP Tabby – Ultimate WP Tabs Plugin for WordPress Attack Surface
AJAX Handlers 6
Shortcodes 1
WordPress Hooks 28
Maintenance & Trust
WP Tabby – Ultimate WP Tabs Plugin for WordPress Maintenance & Trust
Maintenance Signals
Community Trust
WP Tabby – Ultimate WP Tabs Plugin for WordPress Alternatives
Tabs Responsive – With WooCommerce Product Tabs Extension
tabs-responsive
Tabs Responsive is the most easiest drag & drop Tabs builder for WordPress. You can add unlimited Tabs with unlimited color Scheme.
Gutena Tabs
gutena-tabs
Gutena Tabs is a simple and easy-to-use WordPress plugin which allows you to create beautiful tabs in your posts and pages.
WP Responsive Tabs horizontal vertical and accordion Tabs
responsive-horizontal-vertical-and-accordion-tabs
Create beautiful responsive tabs with a very easy interface. This plugin is all in one tabs plugin means it supports responsive horizontal, vertical a …
Easy Tabs Block – Fast & Responsive Tabs with Built-in Smooth Accordion
easy-tabs-block
Add responsive tabbed content to posts, pages, and products. 70+ pre-built patterns, no code, and minimal load.
Tabs & Sliders
tabs-sliders-by-bestaddon
A simple, lightweight, blazing-fast tabs vanilla JavaScript library for the wordpress.
WP Tabby – Ultimate WP Tabs Plugin for WordPress Developer Profile
8 plugins · 110 total installs
How We Detect WP Tabby – Ultimate WP Tabs Plugin for WordPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tabby-free/public/css/wptabby-public.css/wp-content/plugins/tabby-free/public/js/wptabby-public.js/wp-content/plugins/tabby-free/public/js/wptabby-public.jstabby-free/public/css/wptabby-public.css?ver=tabby-free/public/js/wptabby-public.js?ver=HTML / DOM Fingerprints
wptabby-navwptabby-content-wrapperwptabby-tab-contentdata-tabby-idwptabby_frontend[wptabby]