
WP Responsive Tabs Security & Risk Analysis
wordpress.org/plugins/wp-responsive-tabsAn easy way to create tabs for unique posts/pages and feel freedom to use them anywhere in your content or files.
Is WP Responsive Tabs Safe to Use in 2026?
Generally Safe
Score 99/100WP Responsive Tabs has a strong security track record. Known vulnerabilities have been patched promptly.
The wp-responsive-tabs plugin version 1.3.2 exhibits a generally good security posture based on the static analysis. It has a limited attack surface with only one shortcode as an entry point, and importantly, none of the identified entry points appear to be unprotected. The code demonstrates strong security practices by exclusively using prepared statements for SQL queries and performing necessary nonce and capability checks. File operations and external HTTP requests are absent, further reducing potential attack vectors. However, a concerning finding is that 33% of the output operations are not properly escaped. This could leave the plugin vulnerable to cross-site scripting (XSS) attacks if user-supplied data is not adequately sanitized before being displayed to users.
The vulnerability history indicates that the plugin has had one medium-severity CVE related to XSS, which was last recorded in early 2025. While this vulnerability is currently unpatched, the fact that there's only one medium-severity issue in its history and that it's a common type (XSS) suggests a pattern of potential, though not necessarily critical, vulnerabilities that require careful attention. The absence of critical or high-severity CVEs, and the lack of any critical or high-severity taint flows, are positive indicators.
In conclusion, while the plugin benefits from a small attack surface and good adherence to secure coding practices like prepared statements and proper checks, the significant percentage of unescaped output and the past XSS vulnerability warrant a moderate level of caution. The primary concern lies in potential XSS vulnerabilities due to insufficient output escaping, which could be exploited if user input is not handled with extreme care in the unescaped outputs. Addressing the output escaping is crucial for further strengthening its security.
Key Concerns
- Significant unescaped output found
- Past medium severity XSS vulnerability
WP Responsive Tabs Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WP Responsive Tabs <= 1.2.9 - Authenticated (Contributor+) Stored Cross-Site Scripting
WP Responsive Tabs Code Analysis
Output Escaping
WP Responsive Tabs Attack Surface
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
WP Responsive Tabs Maintenance & Trust
Maintenance Signals
Community Trust
WP Responsive Tabs Alternatives
Column Shortcodes
column-shortcodes
Adds shortcodes to easily create columns in your posts or pages.
Apollo13 Framework Extensions
apollo13-framework-extensions
Adds custom post types, shortcodes and some features that are used in themes built on Apollo13 Framework.
Futurio Extra
futurio-extra
Futurio Extra add extra features to Futurio theme like widgets, WooCommerce options, Elementor widgets, one click demo import and much more.
ND Shortcodes
nd-shortcodes
The plugin adds some useful components to your page builder ( Elementor or WP Bakery Page Builder ). All components are full responsive and retina rea …
Contact Form 7 Shortcode Enabler
contact-form-7-shortcode-enabler
This plugin enables the usage of external shortcodes inside Contact Form 7 Forms.
WP Responsive Tabs Developer Profile
40 plugins · 33K total installs
How We Detect WP Responsive Tabs
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-responsive-tabs/css/style.css/wp-content/plugins/wp-responsive-tabs/css/easy-responsive-tabs.css/wp-content/plugins/wp-responsive-tabs/js/scripts.js/wp-content/plugins/wp-responsive-tabs/js/easyResponsiveTabs.js/wp-content/plugins/wp-responsive-tabs/js/scripts.js/wp-content/plugins/wp-responsive-tabs/js/easyResponsiveTabs.jswp-responsive-tabs/css/style.css?t=wp-responsive-tabs/css/easy-responsive-tabs.css?t=HTML / DOM Fingerprints
wprtab-resp-tabs-listresp-tabs-containerdata-tab-ideasyResponsiveTabs<div id="class="wprtab-<ul class="resp-tabs-list"><div class="resp-tabs-container">