WPIntell

Source evidence

Vulnerability

Hover Effects – easily create any hover effect · support · 2025-07-02T17:37:00+00:00

mixedsentiment
highseverity
0.82relevance
6replies
Evidence linked to opportunitycommercial context

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

3 / 16 rows with source links

18.8% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

13 rows with no attached evidence

0 rows have source counts but still need direct links.

Conversation

support
shelleyweb resolved
There is a vulnerability https://patchstack.com/database/wordpress/plugin/hover-effects Hi, Thanks for reporting this! The vulnerability has been fixed in version 2.1.3 of the plugin. It says it is still vulnerable https://patchstack.com/database/wordpress/plugin/hover-effects/vulnerability/wordpress-hover-effects-plugin-2-1-2-sql-injection-vulnerability The plugin does not use any direct SQL queries. The Patchstack report is dated June 27, 2025, while the plugin was updated on July 3, 2025, specifically to ensure code safety and address any potential concerns. I understand but it is still reporting vulnerability as of the current version. You might want to talk to patchstack Please, check again https://patchstack.com/database/wordpress/plugin/hover-effects/vulnerability/wordpress-hover-effects-plugin-2-1-2-sql-injection-vulnerability Great, thanks! Glad everyone got it all straightened out

Comments

6 shown
DmtLo 2025-07-03T07:53:00+00:00

Hi, Thanks for reporting this! The vulnerability has been fixed in version 2.1.3 of the plugin.

shelleyweb 2025-07-05T21:01:00+00:00

It says it is still vulnerable https://patchstack.com/database/wordpress/plugin/hover-effects/vulnerability/wordpress-hover-effects-plugin-2-1-2-sql-injection-vulnerability

DmtLo 2025-07-06T02:34:00+00:00

The plugin does not use any direct SQL queries. The Patchstack report is dated June 27, 2025, while the plugin was updated on July 3, 2025, specifically to ensure code safety and address any potential concerns.

shelleyweb 2025-07-08T12:03:00+00:00

I understand but it is still reporting vulnerability as of the current version. You might want to talk to patchstack

DmtLo 2025-07-09T04:43:00+00:00

Please, check again https://patchstack.com/database/wordpress/plugin/hover-effects/vulnerability/wordpress-hover-effects-plugin-2-1-2-sql-injection-vulnerability

shelleyweb 2025-07-09T11:43:00+00:00

Great, thanks! Glad everyone got it all straightened out