Blog News Addons For Elementor (News, Magazine and Blog Addons) Security & Risk Analysis

wordpress.org/plugins/blognews-for-elementor

Build news, magazine & blog sites with BlogNews for Elementor. 50+ widgets, 20+ templates, header/footer builder. No coding required!

300 active installs v2.0.2 PHP 7.4+ WP 6.6+ Updated Jan 14, 2026
elementor-addonselementor-widgetsheader-footer-buildernews-addonpost-grid
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Blog News Addons For Elementor (News, Magazine and Blog Addons) Safe to Use in 2026?

Generally Safe

Score 100/100

Blog News Addons For Elementor (News, Magazine and Blog Addons) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The plugin "blognews-for-elementor" v2.0.2 demonstrates a generally good security posture with several strengths. The code analysis shows a high percentage of properly escaped outputs and a complete absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests. The presence of nonce and capability checks indicates a thoughtful approach to securing entry points. The vulnerability history being completely clean is also a strong positive indicator, suggesting a well-maintained and secure codebase. However, a notable concern is the presence of one unprotected AJAX handler, which represents a direct entry point for potential attackers without proper authentication. While the taint analysis did not reveal any critical or high-severity issues, the existence of this unprotected AJAX endpoint warrants attention. Overall, the plugin is robust, but this single unprotected entry point slightly diminishes its otherwise strong security.

Key Concerns

  • Unprotected AJAX handler found
Vulnerabilities
None known

Blog News Addons For Elementor (News, Magazine and Blog Addons) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Blog News Addons For Elementor (News, Magazine and Blog Addons) Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
18
736 escaped
Nonce Checks
3
Capability Checks
9
File Operations
0
External Requests
0
Bundled Libraries
2

Bundled Libraries

Select2Freemius1.0

Output Escaping

98% escaped754 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
blogfoel_pt_input (inc\class-site-builder.php:773)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

Blog News Addons For Elementor (News, Magazine and Blog Addons) Attack Surface

Entry Points6
Unprotected1

AJAX Handlers 4

authwp_ajax_admin_install_pluginc\admin\admin.php:17
authwp_ajax_blogfoel_create_temp_typeinc\admin\admin.php:19
authwp_ajax_blogfoel_actionsinc\admin\admin.php:21
authwp_ajax_blognews_pt_updateinc\class-site-builder.php:30

Shortcodes 2

[blogfoel_year] inc\instance.php:36
[blogfoel_site_tile] inc\instance.php:37
WordPress Hooks 45
actionenqueue_block_assetsblognews-for-elementor.php:88
actionplugins_loadedblognews-for-elementor.php:89
actionelementor/elements/categories_registeredblognews-for-elementor.php:90
actionwp_enqueue_scriptsblognews-for-elementor.php:91
actionafter_setup_themeblognews-for-elementor.php:92
actioninitblognews-for-elementor.php:93
actionimport_endblognews-for-elementor.php:94
actionpt-ocdi/after_importblognews-for-elementor.php:95
actionwp_headblognews-for-elementor.php:96
actionadmin_menuinc\admin\admin.php:12
actionadmin_enqueue_scriptsinc\admin\admin.php:15
actionadmin_initinc\admin\admin.php:23
filteradmin_footer_textinc\admin\admin.php:78
actioninitinc\class-site-builder.php:16
actionadd_meta_boxesinc\class-site-builder.php:17
actionsave_postinc\class-site-builder.php:18
actionadmin_print_stylesinc\class-site-builder.php:19
actionadmin_enqueue_scriptsinc\class-site-builder.php:20
filtertemplate_includeinc\class-site-builder.php:23
actionget_headerinc\class-site-builder.php:24
actionget_footerinc\class-site-builder.php:25
actionwp_enqueue_scriptsinc\class-site-builder.php:26
action_blognews_full_page_inc\class-site-builder.php:27
action_blognews_head_inc\class-site-builder.php:28
action_blognews_foot_inc\class-site-builder.php:29
actionadmin_noticesinc\function.php:10
actionadmin_noticesinc\function.php:15
actionplugins_loadedinc\function.php:21
actioncategory_add_form_fieldsinc\function.php:122
actioncategory_edit_form_fieldsinc\function.php:123
actionadmin_enqueue_scriptsinc\function.php:126
actioncreated_terminc\function.php:129
actionedited_terminc\function.php:130
actionadmin_footerinc\function.php:141
actionadmin_footerinc\function.php:142
actionadmin_enqueue_scriptsinc\instance.php:25
actionelementor/widgets/registerinc\instance.php:33
actionwp_enqueue_scriptsinc\instance.php:38
actionwp_enqueue_scriptsinc\instance.php:39
actionelementor/editor/after_enqueue_scriptsinc\instance.php:40
actionelementor/documents/register_controlsinc\instance.php:41
actionelementor/editor/after_enqueue_stylesinc\instance.php:42
actionelementor/frontend/before_enqueue_scriptsinc\instance.php:43
actionelementor/controls/registerinc\instance.php:46
actionwp_headinc\widget-utils.php:286
Maintenance & Trust

Blog News Addons For Elementor (News, Magazine and Blog Addons) Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 14, 2026
PHP min version7.4
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs300
Developer Profile

Blog News Addons For Elementor (News, Magazine and Blog Addons) Developer Profile

themeansar

63 plugins · 101K total installs

97
trust score
Avg Security Score
96/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect Blog News Addons For Elementor (News, Magazine and Blog Addons)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/blognews-for-elementor/assets/css/all.min.css/wp-content/plugins/blognews-for-elementor/assets/css/style.css/wp-content/plugins/blognews-for-elementor/assets/css/sass/core.css
Version Parameters
blognews-for-elementor/assets/css/all.min.css?ver=blognews-for-elementor/assets/css/style.css?ver=blognews-for-elementor/assets/css/sass/core.css?ver=

HTML / DOM Fingerprints

CSS Classes
blogfoel-pro-featureblogfoel-section-iconbnicon-blognews-favicon
Data Attributes
blogfoel_display_condition
JS Globals
BLOGFOEL_DIR_URLBLOGFOEL_VERSIONBLOGFOEL_PRO_LINKBLOGFOEL_GO_PRO_HTMLBLOGFOEL_PRO_ICONBLOGFOEL_FAV_ICON
FAQ

Frequently Asked Questions about Blog News Addons For Elementor (News, Magazine and Blog Addons)