
WP-Bible Embed Security & Risk Analysis
wordpress.org/plugins/wp-bible-embedThere are many wordpress Bible plugins, but none of them embed the whole entire Bible... Except this one.
Is WP-Bible Embed Safe to Use in 2026?
Generally Safe
Score 85/100WP-Bible Embed has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-bible-embed plugin version 2.2 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, and critical taint flows is highly commendable. Furthermore, the plugin demonstrates good practices by implementing prepared statements for all SQL queries and ensuring all outputs are properly escaped. The vulnerability history is also clear, with no recorded CVEs, which suggests a history of secure development or timely patching of any past issues. The plugin's attack surface is minimal, with only one shortcode identified and no unprotected entry points. The plugin appears well-maintained and adheres to secure coding principles.
While the static analysis reveals an excellent security profile, it's important to note the complete absence of nonce checks and capability checks. Although there are no unprotected AJAX handlers or REST API routes, these checks are fundamental for robust security, especially if the shortcode itself could potentially lead to sensitive operations or manipulation of data. The lack of these checks represents a potential, albeit currently unexploited, weakness. The zero taint flows are a positive indicator, but the analysis scope might not cover all potential complex attack vectors. Overall, the plugin is secure for its current version, but the missing capability and nonce checks could be a point of improvement for future versions to further harden its security.
Key Concerns
- Missing capability checks
- Missing nonce checks
WP-Bible Embed Security Vulnerabilities
WP-Bible Embed Code Analysis
WP-Bible Embed Attack Surface
Shortcodes 1
Maintenance & Trust
WP-Bible Embed Maintenance & Trust
Maintenance Signals
Community Trust
WP-Bible Embed Alternatives
Visual Bible Verse of the Day Widget
visual-verse-of-the-day-widget
Six days a week a new photo and scripture reference will appear from The Visual Bible Verse of the Day at visualverse.thecreationspeaks.com.
BibleUp
bibleup
BibleUp transforms Bible references on a webpage into links and makes the text accessible via a flexible and highly-customizable popover.
WP-Bible
wp-bible
Plugin finds Bible references in your posts and changes them for the actual Bible text from any of 38 different translations in 14 languages.
Enduring Word Bible Commentary
enduring-word-bible-commentary
The Enduring Word Bible Commentary Quick Navigation provides access to opening external links on https://enduringword.com.
Bible Plus+
bible-plus
This plugin displays bible verses and a daily proverb directly in your posts, pages or anywhere shortcodes are processed.
WP-Bible Embed Developer Profile
1 plugin · 60 total installs
How We Detect WP-Bible Embed
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-bible-embed/bibles/kjv_bible.phpwp-bible-embed/bibles/kjv_bible.php?ver=wp-bible-embed.php?ver=HTML / DOM Fingerprints
[bible]