The Pope Video Security & Risk Analysis

wordpress.org/plugins/the-pope-video

Show the oficial The Pope Video of the Vatican, with the prayer intention of Pope Francis. Always up-to-date and easy to install

50 active installs v1.1.2.11 PHP 7.4+ WP 5.0+ Updated Dec 26, 2025
catholicchurch
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is The Pope Video Safe to Use in 2026?

Generally Safe

Score 100/100

The Pope Video has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'the-pope-video' plugin v1.1.2.11 exhibits an exceptionally strong security posture. The absence of any identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events, coupled with zero unprotected points, significantly limits the plugin's attack surface. Furthermore, the code analysis reveals no dangerous functions, all SQL queries utilize prepared statements, and all output is properly escaped. There are also no file operations, external HTTP requests, nonce checks, or capability checks, indicating a minimal and well-contained implementation. The vulnerability history is equally clean, with no recorded CVEs of any severity. This plugin appears to follow best practices by design, avoiding common web application vulnerabilities. The only potential area for consideration, though not a demonstrated risk in this specific analysis, is the complete lack of nonce and capability checks. While not explicitly exploitable given the other findings, in more complex plugins, these are essential for preventing various types of attacks. However, for this particular version and its apparent functionality, the lack of active security features is overshadowed by the lack of exploitable pathways.

Vulnerabilities
None known

The Pope Video Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

The Pope Video Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

The Pope Video Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionadmin_menuindex.php:346
Maintenance & Trust

The Pope Video Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 26, 2025
PHP min version7.4
Downloads6K

Community Trust

Rating0/100
Number of ratings0
Active installs50
Developer Profile

The Pope Video Developer Profile

thepopevideo

1 plugin · 50 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect The Pope Video

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
wpb_video_widgetwpb_content_elementvc_clearfixvc_video-aspect-ratio-169vc_video-el-width-100vc_video-align-leftwpb_wrapperwpb_video_wrapper
Data Attributes
mozallowfullscreenmsallowfullscreenoallowfullscreenwebkitallowfullscreen
Shortcode Output
[ThePopeVideo-EN][ThePopeVideo-ES][ThePopeVideo-IT][ThePopeVideo-PT]
FAQ

Frequently Asked Questions about The Pope Video