wizScriber – Video Scribing Banner Ads Security & Risk Analysis

wordpress.org/plugins/wizscriber-video-scribing-banner-ads

Create attention-grabbing animation ads that knocks on your visitor's screen and shows them your most important message ...in 5 seconds!

10 active installs v1.25 PHP + WP 3.4.2+ Updated Apr 20, 2015
adscribevideovideo-scribingwhiteboard-animation
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is wizScriber – Video Scribing Banner Ads Safe to Use in 2026?

Generally Safe

Score 85/100

wizScriber – Video Scribing Banner Ads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11yr ago
Risk Assessment

The wizscriber-video-scribing-banner-ads plugin, version 1.25, exhibits a generally good security posture with no recorded vulnerabilities or critical static analysis findings. The plugin demonstrates strong adherence to security best practices, as evidenced by a significant number of capability checks and nonce checks. The absence of external HTTP requests and a relatively small attack surface are also positive indicators.

However, there are a few areas for improvement. The low percentage of properly escaped output (29%) is a significant concern, suggesting a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not handled carefully. Additionally, the presence of unsanitized paths in taint analysis, even without critical severity, warrants attention as it could lead to path traversal or other file-related vulnerabilities. While SQL queries are generally well-handled, the fact that not all are prepared statements could be a minor risk depending on the context of the unsanitized queries.

Overall, the plugin is relatively secure due to its lack of historical vulnerabilities and robust use of built-in WordPress security features. However, the low output escaping rate and potential unsanitized paths are weaknesses that could be exploited. Addressing these specific code-level concerns would further strengthen the plugin's security.

Key Concerns

  • Low output escaping percentage
  • Unsanitized paths in taint flows
  • SQL queries not always prepared
Vulnerabilities
None known

wizScriber – Video Scribing Banner Ads Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

wizScriber – Video Scribing Banner Ads Release Timeline

v1.22
v1.21
v1.2
v1.1
v1.0.1
v1.0
Code Analysis
Analyzed Mar 16, 2026

wizScriber – Video Scribing Banner Ads Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
1 prepared
Unescaped Output
91
38 escaped
Nonce Checks
5
Capability Checks
10
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

33% prepared3 total queries

Output Escaping

29% escaped129 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

3 flows2 with unsanitized paths
wsvsba_admin_management_page (admin\admin.php:178)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

wizScriber – Video Scribing Banner Ads Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[wizScriber] admin\functions.php:287
WordPress Hooks 6
filterset-screen-optionadmin\admin.php:3
actionadmin_menuadmin\admin.php:13
actionadmin_enqueue_scriptsadmin\admin.php:169
actionwizscriber_admin_noticesadmin\admin.php:222
actioninitadmin\functions.php:3
actioninitwizScribe.php:29
Maintenance & Trust

wizScriber – Video Scribing Banner Ads Maintenance & Trust

Maintenance Signals

WordPress version tested4.2.39
Last updatedApr 20, 2015
PHP min version
Downloads19K

Community Trust

Rating100/100
Number of ratings3
Active installs10
Developer Profile

wizScriber – Video Scribing Banner Ads Developer Profile

Bill Zimmerman

3 plugins · 310 total installs

79
trust score
Avg Security Score
87/100
Avg Patch Time
42 days
View full developer profile
Detection Fingerprints

How We Detect wizScriber – Video Scribing Banner Ads

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wizscriber-video-scribing-banner-ads/admin/css/styles.css/wp-content/plugins/wizscriber-video-scribing-banner-ads/admin/js/script.js
Version Parameters
wizscriber-video-scribing-banner-ads/admin/css/styles.css?ver=wizscriber-video-scribing-banner-ads/admin/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
wsvsba-wrapwsvsba-input-groupwsvsba-buttonswsvsba-buttonwsvsba-deletewsvsba-copy
Data Attributes
data-wizscriberid
FAQ

Frequently Asked Questions about wizScriber – Video Scribing Banner Ads