
Three Viewer Security & Risk Analysis
wordpress.org/plugins/three-viewerThree Viewer provide an free and easy solution to visualize any 3D Models on your website,
Is Three Viewer Safe to Use in 2026?
Generally Safe
Score 85/100Three Viewer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "three-viewer" v1.0.0 plugin demonstrates an excellent security posture based on the provided static analysis. The absence of any detected attack surface entry points, dangerous functions, file operations, or external HTTP requests is a significant strength. Furthermore, all SQL queries are properly prepared, and all output is correctly escaped, indicating robust defense against common web vulnerabilities like SQL injection and Cross-Site Scripting (XSS). The lack of any recorded vulnerabilities, including CVEs, reinforces this positive assessment.
While the plugin exhibits strong coding practices, the data does highlight a few areas that, while not immediate risks, are worth noting. The total absence of nonce checks is unusual for WordPress plugins that typically interact with the backend, and the low number of capability checks suggests that user roles might not be extensively leveraged for access control. However, given the zero attack surface, these are theoretical concerns rather than immediate threats. The absence of taint analysis results is also worth noting, as it might suggest the analysis tool did not find any flows to analyze, or that the plugin's structure did not lend itself to such analysis. Overall, "three-viewer" v1.0.0 appears to be a securely developed plugin, with a focus on preventing direct code execution vulnerabilities.
Key Concerns
- No nonce checks detected
- Limited capability checks detected
Three Viewer Security Vulnerabilities
Three Viewer Code Analysis
SQL Query Safety
Output Escaping
Three Viewer Attack Surface
WordPress Hooks 8
Maintenance & Trust
Three Viewer Maintenance & Trust
Maintenance Signals
Community Trust
Three Viewer Alternatives
3D Viewer Block – Interactive 3D Model Display
3d-viewer-block
Embed 3D models. Display interactive 3D models within a few clicks using the Gutenberg Editor.
3D viewer by Visody
visody-3d-product-viewer
Easily add beautiful, fully-customizable 3D viewers to your WooCommerce product galleries and WordPress pages! AR capabilies included.
3D Viewer Online
3dvieweronline-wp
An easy, realistic and customizable 3D Viewer to embed 3D models of your products/designs into your Wordpress/WooCommerce website (responsive layout)
3D Viewer – glb/gltf Viewer by WPSE
advanced-3d-model-viewer
Embed and interact with 3D models in your WordPress content using a block, shortcode, or custom post type.
ExploreXR
explorexr
Interactive 3D models for WordPress. Upload GLB/GLTF files, embed via shortcode, and extend with modular add-ons. No coding required.
Three Viewer Developer Profile
8 plugins · 10 total installs
How We Detect Three Viewer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/three-viewer/css/style.css/wp-content/plugins/three-viewer/three/three.js/wp-content/plugins/three-viewer/three/controls.js/wp-content/plugins/three-viewer/three/zilb.js/wp-content/plugins/three-viewer/three/glb.js/wp-content/plugins/three-viewer/three/fbx.js/wp-content/plugins/three-viewer/client.js/wp-content/plugins/three-viewer/css/adminCss.css+4 morethree/style.cssthree/three.jsthree/controls.jsthree/zilb.jsthree/glb.jsthree/fbx.js+6 morethree-viewer/css/style.css?ver=three-viewer/css/adminCss.css?ver=three-viewer/css/editor.css?ver=HTML / DOM Fingerprints
allSetupallTitlesallModels[wp_three_viewer