
viversum: Mondphase Security & Risk Analysis
wordpress.org/plugins/viversum-mondphaseviversum Mondphase als Widget
Is viversum: Mondphase Safe to Use in 2026?
Generally Safe
Score 85/100viversum: Mondphase has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "viversum-mondphase" v1.0c plugin exhibits a mixed security posture. While it demonstrates good practices by not exposing a significant attack surface through AJAX, REST API, shortcodes, or cron events, and all its SQL queries utilize prepared statements, there are several notable concerns. The presence of the `create_function` is a significant red flag due to its potential for arbitrary code execution. Furthermore, the complete lack of output escaping across all 15 identified outputs is a critical vulnerability, exposing the plugin to cross-site scripting (XSS) attacks. The absence of any nonce checks or capability checks on the limited entry points further exacerbates this risk, as any user could potentially trigger unintended actions. The plugin's vulnerability history is clean, with no recorded CVEs, which might suggest a lack of targeted attacks or a relatively new codebase. However, this clean history should not be mistaken for robust security, given the significant flaws identified in the static analysis.
Key Concerns
- Dangerous function detected (create_function)
- All outputs are unescaped
- No nonce checks on entry points
- No capability checks on entry points
viversum: Mondphase Security Vulnerabilities
viversum: Mondphase Code Analysis
Dangerous Functions Found
Output Escaping
viversum: Mondphase Attack Surface
WordPress Hooks 2
Maintenance & Trust
viversum: Mondphase Maintenance & Trust
Maintenance Signals
Community Trust
viversum: Mondphase Alternatives
The Daily Horoscope
the-daily-horoscope
Add The Daily Horoscope Plugin to your widgets, posts and pages. Select your sign and read your daily horoscope.
Divine Astro
horoscope-and-tarot
Divineapi.com is a leading API platform for services like Daily Horoscope, Tarot reading, Kundali, Panchang, Natal Chart, Fortune Cookie, Coffee Cup r …
Dagens Horoskop
dagens-horoskop
Add Dagens Horoskop Plugin to your widgets, posts and pages. Select your sign and read your daily horoscope. Horoskopetidag.se
Daily Fortune Telling Cards
daily-fortune-telling-cards
Official Daily Fortune Telling Cards plugin, supported by the PowerFortunes team. Fortune Telling Cards adds value and interesting content to your sit …
Horoscope Feeder
horoscope-feeder
Horoscope Feeder is a plugin that displays your horoscope for the day, which after installation, you can use the widget or shortcode.
viversum: Mondphase Developer Profile
1 plugin · 10 total installs
How We Detect viversum: Mondphase
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/viversum-mondphase/js/viv-moonphase.jsviversum-mondphase/js/viv-moonphase.js?ver=HTML / DOM Fingerprints
viversumMondphaseid="viversumMondphase-*viversumMondphase<script type="text/javascript" src="http://vivget.com/viv/loader/moonphasesimple/loader.js"></script><script type="text/javascript" src="http://vivget.com/viv/loader/moonphase/color/<noscript><a href="http://www.viversum.de/" rel="nofollow">viversum Lebensberatung</a></noscript>