Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs Security & Risk Analysis

wordpress.org/plugins/advanced-accordion-block

Create stunning FAQ & accordion blocks. SEO-optimized, fully accessible, zero performance impact. No coding needed.

10K active installs v5.2.3 PHP 7.4+ WP 5.7+ Updated Feb 5, 2026
accordionaccordion-blockfaqfaqsgutenberg-block
99
A · Safe
CVEs total1
Unpatched0
Last CVEApr 23, 2025
Safety Verdict

Is Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs Safe to Use in 2026?

Generally Safe

Score 99/100

Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Apr 23, 2025Updated 1mo ago
Risk Assessment

The "advanced-accordion-block" plugin, version 5.2.3, demonstrates a generally strong security posture, with good practices evident in its handling of AJAX requests and output escaping. The absence of unprotected entry points, critical or high-severity taint flows, and a low percentage of SQL queries without prepared statements are positive indicators. The plugin also incorporates nonce and capability checks, further bolstering its defenses.

However, the vulnerability history reveals a past medium-severity Cross-Site Scripting (XSS) vulnerability. While currently patched, this indicates a historical weakness in input sanitization or output escaping for web page generation. The presence of only one file operation and one external HTTP request, while not inherently risky, represents potential areas where sensitive data could be mishandled or external services exploited if not properly secured.

Overall, the plugin appears to be well-developed with security in mind, particularly in its current implementation. The main area of concern stems from its past XSS vulnerability, which suggests a need for continued vigilance and thorough code reviews to prevent recurrence. The plugin's strengths lie in its robust handling of core WordPress security features, but the historical vulnerability warrants a cautious approach.

Key Concerns

  • Past medium severity XSS vulnerability
  • File operations present
  • External HTTP requests present
Vulnerabilities
1

Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-2543medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advanced Accordion Gutenberg Block <= 5.0.2 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload

Apr 23, 2025 Patched in 5.0.3 (7d)
Code Analysis
Analyzed Mar 16, 2026

Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
3 prepared
Unescaped Output
10
153 escaped
Nonce Checks
4
Capability Checks
6
File Operations
1
External Requests
1
Bundled Libraries
1

Bundled Libraries

Freemius1.0

SQL Query Safety

75% prepared4 total queries

Output Escaping

94% escaped163 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
ajax_dismiss_content (admin\class-remote-notice-client.php:393)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_aab_install_pluginadmin\admin.php:1206
authwp_ajax_aab_activate_pluginadmin\admin.php:1261
WordPress Hooks 16
actionadmin_initadmin\admin.php:14
actionadmin_menuadmin\admin.php:28
actionadmin_enqueue_scriptsadmin\admin.php:29
actionadmin_headadmin\admin.php:31
actionadmin_initadmin\class-remote-notice-client.php:138
actionadmin_noticesadmin\class-remote-notice-client.php:142
filterhide_freemius_powered_byadvanced-accordion-block.php:66
actioninitadvanced-accordion-block.php:93
filterblock_categoriesadvanced-accordion-block.php:99
filterblock_categories_alladvanced-accordion-block.php:106
actionactivated_pluginadvanced-accordion-block.php:114
actionrest_api_initadvanced-accordion-block.php:177
actionenqueue_block_assetsincludes\enqueue-assets.php:20
actionenqueue_block_editor_assetsincludes\enqueue-assets.php:21
actioninitincludes\register-blocks.php:17
actioninitincludes\register-category.php:46
Maintenance & Trust

Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 5, 2026
PHP min version7.4
Downloads124K

Community Trust

Rating84/100
Number of ratings32
Active installs10K
Developer Profile

Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs Developer Profile

Spider Themes

7 plugins · 14K total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
109 days
View full developer profile
Detection Fingerprints

How We Detect Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advanced-accordion-block/build/view.asset.php/wp-content/plugins/advanced-accordion-block/build/index.asset.php/wp-content/plugins/advanced-accordion-block/assets/css/frontend.css/wp-content/plugins/advanced-accordion-block/assets/css/editor.css/wp-content/plugins/advanced-accordion-block/assets/js/editor.js/wp-content/plugins/advanced-accordion-block/assets/js/frontend.js
Script Paths
/wp-content/plugins/advanced-accordion-block/build/view.asset.php/wp-content/plugins/advanced-accordion-block/build/index.asset.php
Version Parameters
advanced-accordion-block/build/view.asset.php?ver=advanced-accordion-block/build/index.asset.php?ver=advanced-accordion-block/assets/css/frontend.css?ver=advanced-accordion-block/assets/css/editor.css?ver=advanced-accordion-block/assets/js/editor.js?ver=advanced-accordion-block/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
wp-block-spider-themes-advanced-accordion-blockwp-block-spider-themes-advanced-accordion-block__itemwp-block-spider-themes-advanced-accordion-block__item-headerwp-block-spider-themes-advanced-accordion-block__item-body
Data Attributes
data-accordion-iddata-item-id
JS Globals
window.AAB_BLOCK_SETTINGS
REST Endpoints
/wp-json/advanced-accordion-block/v1/save-usage-data
FAQ

Frequently Asked Questions about Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs