
bBlocks – Essential Gutenberg Blocks & Patterns Collection Security & Risk Analysis
wordpress.org/plugins/b-blocksbBlocks enhances the Gutenberg editor with over 60 custom blocks for layout, content, and design, turning it into a powerful WordPress page builder
Is bBlocks – Essential Gutenberg Blocks & Patterns Collection Safe to Use in 2026?
Generally Safe
Score 87/100bBlocks – Essential Gutenberg Blocks & Patterns Collection has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The b-blocks plugin exhibits a mixed security posture. On the positive side, the plugin demonstrates strong adherence to secure coding practices regarding SQL queries and output escaping, with almost all outputs properly handled. The absence of dangerous functions, file operations, and critical taint analysis findings are also encouraging indicators of a generally well-developed plugin. However, significant concerns arise from the attack surface and the plugin's vulnerability history.
The presence of 21 AJAX handlers, with one completely lacking authorization checks, presents a direct pathway for potential unauthenticated attacks. While taint analysis shows no current exploitable flows, this unprotected entry point is a critical oversight. The plugin's history of 3 known CVEs, including one critical and two medium, is a substantial red flag. The fact that the last vulnerability was patched in the future (2025-08-14) is likely a data anomaly but highlights a history of past security weaknesses, specifically in the areas of Cross-site Scripting and Missing Authorization.
In conclusion, while the b-blocks plugin shows strengths in its internal code handling of data, the exposed attack surface and past vulnerability record necessitate caution. The unprotected AJAX handler is a current, actionable risk, and the historical pattern of vulnerabilities suggests a need for ongoing vigilance and potential deeper code review to ensure future releases maintain a higher security standard.
Key Concerns
- Unprotected AJAX handler found
- 1 critical CVE in history
- 2 medium CVEs in history
- Large attack surface (21 AJAX handlers)
- Bundled Freemius v1.0 (potential outdated library)
bBlocks – Essential Gutenberg Blocks & Patterns Collection Security Vulnerabilities
CVEs by Year
Severity Breakdown
5 total CVEs
bBlocks – Essential Gutenberg Blocks & Patterns Collection < 2.0.30 - Missing Authorization
bBlocks – Essential Gutenberg Blocks & Patterns Collection <= 2.0.31 - Authenticated (Contributor+) Privilege Escalation
B Blocks <= 2.0.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
B Blocks <= 2.0.6 - Missing Authorization to Unauthenticated Privilege Escalation via rgfr_registration Function
B Blocks - The ultimate block collection <= 2.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting
bBlocks – Essential Gutenberg Blocks & Patterns Collection Release Timeline
bBlocks – Essential Gutenberg Blocks & Patterns Collection Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
bBlocks – Essential Gutenberg Blocks & Patterns Collection Attack Surface
AJAX Handlers 21
WordPress Hooks 22
Maintenance & Trust
bBlocks – Essential Gutenberg Blocks & Patterns Collection Maintenance & Trust
Maintenance Signals
Community Trust
bBlocks – Essential Gutenberg Blocks & Patterns Collection Alternatives
Envision Page Builder – A collection of WordPress Gutenberg blocks & templates
envision-page-builder
Envision Page Builder makes it easy to create stunning, responsive WordPress websites with custom blocks, templates, animations, and more.
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
kadence-blocks
20+ AI-powered Gutenberg Blocks with endless options, enabling top-notch efficiency for high-performance dynamic website creation.
Page Builder: Pagelayer – Drag and Drop website builder
pagelayer
The most advanced frontend drag & drop page builder. Pagelayer is a light weight but extremely powerful Website Builder.
GutenKit – Page Builder Blocks, Patterns, and Templates for Gutenberg Block Editor
gutenkit-blocks-addon
GutenKit – Ultimate no-code Gutenberg blocks to design stunning web pages and visually stunning posts in WordPress block editor.
Gutentor – Gutenberg Blocks – Page Builder for Gutenberg Editor
gutentor
Advanced yet easy, Gutenberg editor page builder blocks. Create a masterpiece, pixel perfect website using modern WordPress Gutenberg blocks.
bBlocks – Essential Gutenberg Blocks & Patterns Collection Developer Profile
121 plugins · 740K total installs
How We Detect bBlocks – Essential Gutenberg Blocks & Patterns Collection
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/b-blocks/assets/css/frontend.css/wp-content/plugins/b-blocks/assets/js/frontend.js/wp-content/plugins/b-blocks/build/frontend.css/wp-content/plugins/b-blocks/build/frontend.js/wp-content/plugins/b-blocks/build/frontend.js/wp-content/plugins/b-blocks/assets/js/frontend.jsb-blocks/assets/css/frontend.css?ver=b-blocks/assets/js/frontend.js?ver=b-blocks/build/frontend.css?ver=b-blocks/build/frontend.js?ver=HTML / DOM Fingerprints
b-blocks-advanced-imageb-blocks-animated-textb-blocks-buttonb-blocks-button-groupb-blocks-cardb-blocks-chartb-blocks-columnb-blocks-container+15 moredata-b-blocksdata-bb-idwindow.b_blocks_data[b-blocks[b-blocks-testimonial[b-blocks-timeline[b-blocks-pricing-table