
Academic Blogger's Toolkit Security & Risk Analysis
wordpress.org/plugins/academic-bloggers-toolkitA plugin extending the functionality of Wordpress for academic blogging.
Is Academic Blogger's Toolkit Safe to Use in 2026?
Generally Safe
Score 85/100Academic Blogger's Toolkit has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "academic-bloggers-toolkit" plugin v5.2.2 exhibits several positive security practices, including the exclusive use of prepared statements for all SQL queries and a very high percentage of properly escaped output. The absence of known vulnerabilities in its history is also a good indicator. However, the plugin's attack surface presents a significant concern.
Specifically, the static analysis reveals three AJAX handlers, all of which lack authentication checks. This means any unauthenticated user can potentially trigger these handlers, which could lead to unintended actions or information disclosure depending on their functionality. While no critical taint flows or dangerous functions were identified, and file operations and external HTTP requests are present but potentially benign, the unprotected AJAX endpoints represent a clear and actionable risk.
In conclusion, while the plugin demonstrates good coding hygiene in areas like SQL and output sanitization, the lack of authentication on its AJAX endpoints is a critical weakness that exposes the plugin to potential exploitation. The absence of historical vulnerabilities suggests a generally stable codebase, but this does not mitigate the current, identified risk in the static analysis.
Key Concerns
- 3 unprotected AJAX handlers
Academic Blogger's Toolkit Security Vulnerabilities
Academic Blogger's Toolkit Code Analysis
SQL Query Safety
Output Escaping
Academic Blogger's Toolkit Attack Surface
AJAX Handlers 3
WordPress Hooks 14
Maintenance & Trust
Academic Blogger's Toolkit Maintenance & Trust
Maintenance Signals
Community Trust
Academic Blogger's Toolkit Alternatives
teachPress
teachpress
Manage your publications with teachPress
Zotpress
zotpress
Zotpress displays your Zotero citations on WordPress.
Side Matter
side-matter
Turns footnotes into sidenotes, magically aligning each note in the sidebar next to its corresponding reference in the text.
CitePress – Automatic Citation Generator
citepress-automatic-citation-generator
Generate and display a clean citation box for any WordPress post using customizable academic citation styles.
Citation Importer
citation-importer
Import a citation or bibliography as posts.
Academic Blogger's Toolkit Developer Profile
1 plugin · 300 total installs
How We Detect Academic Blogger's Toolkit
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/academic-bloggers-toolkit/assets/css/editor.css/wp-content/plugins/academic-bloggers-toolkit/assets/css/frontend.css/wp-content/plugins/academic-bloggers-toolkit/assets/js/editor.js/wp-content/plugins/academic-bloggers-toolkit/assets/js/editor-blocks.js/wp-content/plugins/academic-bloggers-toolkit/assets/js/editor-formats.js/wp-content/plugins/academic-bloggers-toolkit/assets/js/editor-stores.js/wp-content/plugins/academic-bloggers-toolkit/assets/js/frontend.js/wp-content/plugins/academic-bloggers-toolkit/assets/js/options-page.js+1 more//assets.codepen.io/assets/embed/ei.jsacademic-bloggers-toolkit/assets/css/editor.css?ver=academic-bloggers-toolkit/assets/css/frontend.css?ver=academic-bloggers-toolkit/assets/js/editor.js?ver=academic-bloggers-toolkit/assets/js/editor-blocks.js?ver=academic-bloggers-toolkit/assets/js/editor-formats.js?ver=academic-bloggers-toolkit/assets/js/editor-stores.js?ver=academic-bloggers-toolkit/assets/js/frontend.js?ver=academic-bloggers-toolkit/assets/js/options-page.js?ver=academic-bloggers-toolkit/vendor/citeproc.js?ver=academic-bloggers-toolkit?ver=5.2.2HTML / DOM Fingerprints
abt-editor-blockabt-bibliography-blockproperty="abt:author"window._abt_noncewindow.abt_editor_state/wp-json/wp/v2/posts?context=edit/wp-json/wp/v2/users[abt-bibliography]