
Starter Templates – AI-Powered Templates for Elementor & Gutenberg Security & Risk Analysis
wordpress.org/plugins/astra-sitesThe growing library of 300+ ready-to-use templates that work with all WordPress themes including Astra, Hello, OceanWP, GeneratePress and more
Is Starter Templates – AI-Powered Templates for Elementor & Gutenberg Safe to Use in 2026?
Generally Safe
Score 89/100Starter Templates – AI-Powered Templates for Elementor & Gutenberg has a strong security track record. Known vulnerabilities have been patched promptly.
The astra-sites plugin version 4.4.51 exhibits a generally strong security posture with a significant number of code protection mechanisms in place. The static analysis reveals a robust implementation of nonce and capability checks, with an overwhelming majority of output being properly escaped and SQL queries utilizing prepared statements. The absence of unprotected entry points, shortcodes, cron events, and REST API routes without permission callbacks is commendable, suggesting a focus on secure development practices. However, the plugin's history of 7 known CVEs, including high and medium severity vulnerabilities, raises a significant concern. The presence of vulnerabilities such as Unrestricted Upload of File with Dangerous Type, CSRF, XSS, SSRF, and Missing Authorization in the past indicates recurring security weaknesses that require vigilant monitoring and patching.
The taint analysis, while showing no critical or high severity flows, did identify 5 flows with unsanitized paths. Although the static analysis reports no unprotected AJAX handlers, the presence of unsanitized paths in taint analysis warrants further investigation to understand the potential for exploitation. The plugin's reliance on external HTTP requests and file operations could also present attack vectors if not handled with extreme care, especially considering the historical vulnerability types. Despite the current lack of unpatched CVEs and the strong implementation of many security best practices, the historical vulnerability profile suggests a need for ongoing vigilance and thorough security audits to mitigate the risk of similar issues resurfacing.
Key Concerns
- Past high severity vulnerabilities
- Past medium severity vulnerabilities
- Flows with unsanitized paths
- SQL queries not using prepared statements
Starter Templates – AI-Powered Templates for Elementor & Gutenberg Security Vulnerabilities
CVEs by Year
Severity Breakdown
7 total CVEs
Starter Templates <= 4.4.41 - Authenticated (Author+) Arbitrary File Upload via WXR Upload Bypass
Starter Templates <= 4.4.9 - Cross-Site Request Forgery
Starter Templates <= 4.4.0 - Authenticated (Author+) Stored Cross-Site Scripting
Starter Templates — Elementor, WordPress & Beaver Builder Templates <= 4.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting
Starter Templates — Elementor, WordPress & Beaver Builder Templates <= 4.1.6 - Authenticated (Contributor+) Server-Side Request Forgery
Starter Templates — Elementor, WordPress & Beaver Builder Templates <= 3.1.20 - Cross-Site Request Forgery in add_to_favorite
Starter Templates — Elementor, Gutenberg & Beaver Builder Templates <= 2.7.0 - Missing Authorization to Stored Cross-Site Scripting
Starter Templates – AI-Powered Templates for Elementor & Gutenberg Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Starter Templates – AI-Powered Templates for Elementor & Gutenberg Attack Surface
AJAX Handlers 23
WordPress Hooks 134
Maintenance & Trust
Starter Templates – AI-Powered Templates for Elementor & Gutenberg Maintenance & Trust
Maintenance Signals
Community Trust
Starter Templates – AI-Powered Templates for Elementor & Gutenberg Alternatives
Noor Starter Templates
noor-starter-templates
Easily create a stunning, high-performing website with just a few clicks.
Templately – Elementor & Gutenberg Template Library: 6500+ Free & Pro Ready Templates And Cloud!
templately
Templately is an AI-powered WordPress templates cloud for Elementor and Gutenberg that offers 6,500+ ready template designs for a wide range of niches
Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns
essential-blocks
Gutenberg block editor with AI. 70+ Gutenberg blocks, patterns, WooCommerce blocks, post grid, gallery, menu with Gutenberg block library.
WDesignKit – Elementor & Gutenberg Starter Templates, Patterns, Cloud Workspace & Widget Builder
wdesignkit
3000+ Elementor Templates, Gutenberg Templates, Widgets Builder for Elementor, Gutenberg & Bricks, Cloud Workspace & Figma Files, 160+ Widgets Library
SKT Templates – 100% Free Templates for Elementor & Gutenberg
skt-templates
Import professionally designed Elementor and Gutenberg website templates with one click. Build websites faster without coding.
Starter Templates – AI-Powered Templates for Elementor & Gutenberg Developer Profile
32 plugins · 8.6M total installs
How We Detect Starter Templates – AI-Powered Templates for Elementor & Gutenberg
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/astra-sites/assets/css/frontend.min.css/wp-content/plugins/astra-sites/assets/js/astra-sites-frontend.min.js/wp-content/plugins/astra-sites/inc/lib/one-onboarding/assets/css/style.css/wp-content/plugins/astra-sites/inc/lib/one-onboarding/assets/js/script.js/wp-content/plugins/astra-sites/inc/lib/starter-templates-importer/assets/css/starter-templates-importer.css/wp-content/plugins/astra-sites/inc/lib/starter-templates-importer/assets/js/starter-templates-importer.js/wp-content/plugins/astra-sites/admin/bsf-analytics/css/style.css/wp-content/plugins/astra-sites/inc/lib/bsf-quick-links/assets/css/style.css+3 more/wp-content/plugins/astra-sites/assets/js/astra-sites-frontend.min.js/wp-content/plugins/astra-sites/inc/lib/one-onboarding/assets/js/script.js/wp-content/plugins/astra-sites/inc/lib/starter-templates-importer/assets/js/starter-templates-importer.js/wp-content/plugins/astra-sites/inc/lib/bsf-quick-links/assets/js/script.js/wp-content/plugins/astra-sites/inc/lib/getting-started/assets/js/script.js/wp-content/plugins/astra-sites/admin/bsf-analytics/js/script.jsastra-sites/assets/css/frontend.min.css?ver=astra-sites/assets/js/astra-sites-frontend.min.js?ver=astra-sites/inc/lib/one-onboarding/assets/css/style.css?ver=astra-sites/inc/lib/one-onboarding/assets/js/script.js?ver=astra-sites/inc/lib/starter-templates-importer/assets/css/starter-templates-importer.css?ver=astra-sites/inc/lib/starter-templates-importer/assets/js/starter-templates-importer.js?ver=astra-sites/admin/bsf-analytics/css/style.css?ver=astra-sites/admin/bsf-analytics/js/script.js?ver=astra-sites/inc/lib/bsf-quick-links/assets/css/style.css?ver=astra-sites/inc/lib/bsf-quick-links/assets/js/script.js?ver=astra-sites/inc/lib/getting-started/assets/css/style.css?ver=astra-sites/inc/lib/getting-started/assets/js/script.js?ver=HTML / DOM Fingerprints
ast-site-layout-wrapast-site-wrapast-starter-template-blockast-starter-template-contentastra-sites-admin-pageastra-sites-notice-wrap<!-- Starter Templates plugin is activated --><!-- Starter Templates Options Panel --><!-- Starter Templates -> White Label Settings -->data-template-iddata-template-slugdata-template-urlastra_sites_dataAstraSitesFrontendAstraSitesImporter/wp-json/astra-sites/v1/templates/wp-json/astra-sites/v1/categories/wp-json/astra-sites/v1/import-status[astra_sites_featured_templates][astra_sites_template_search]