
Bootitems Core Security & Risk Analysis
wordpress.org/plugins/bootitems-coreBootitems Core is a companion plugin for Bootitems Themes, which provides core functionality and extends free themes features by adding functionality …
Is Bootitems Core Safe to Use in 2026?
Generally Safe
Score 85/100Bootitems Core has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "bootitems-core" plugin v1.0.0 exhibits a generally good security posture in several areas, particularly with its handling of SQL queries and output escaping, suggesting developers have implemented some common security best practices. The absence of known CVEs and a clean vulnerability history are positive indicators. However, the presence of an unprotected AJAX handler represents a significant concern, forming a critical entry point into the plugin's functionality. While the code analysis shows no overtly dangerous functions or taint flows indicating immediate critical vulnerabilities, this single unprotected endpoint could be exploited by an attacker to trigger unintended actions or access sensitive data if it performs any operations that are not sufficiently secured by other means.
The plugin's reliance on a bundled library, Freemius v1.0, also warrants attention. While not explicitly flagged as outdated in the provided data, bundled libraries can become security risks if not regularly updated, as they may inherit vulnerabilities from their parent projects. The overall risk is currently moderate, leaning towards higher due to the unprotected AJAX handler. Addressing this single point of exposure should be the immediate priority for improving the plugin's security.
Key Concerns
- Unprotected AJAX handler detected
- Bundled library (Freemius v1.0) may be outdated
Bootitems Core Security Vulnerabilities
Bootitems Core Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Bootitems Core Attack Surface
AJAX Handlers 1
WordPress Hooks 18
Maintenance & Trust
Bootitems Core Maintenance & Trust
Maintenance Signals
Community Trust
Bootitems Core Alternatives
Kits, Templates and Patterns
kits-templates-and-patterns
Import Kits, Templates and Patterns with just one click.
RSWPTHEMES ONE CLICK DEMO CONTENT
rs-wp-themes-one-click-demo-content
Import RS WP THEMES demo content including settings, widgets, and starter templates with a single click.
Themereps Helper
themereps-helper
Themereps Helper is a companion plugin for Themereps Themes, which provides core functionality and extends free and premium themes features.
Ibtana – WordPress Website Builder
ibtana-visual-editor
Build your dream WordPress website with Ibtana, a powerful website builder with customizable templates and drag-and-drop elements for customization.
Rara One Click Demo Import
rara-one-click-demo-import
Make your website look like the live demo of the theme with a click!
Bootitems Core Developer Profile
1 plugin · 10 total installs
How We Detect Bootitems Core
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bootitems-core/inc/bootitems-widgets.js/wp-content/plugins/bootitems-core/public/css/bootitems-core-public.css/wp-content/plugins/bootitems-core/freemius/start.phpbootitems-core/public/css/bootitems-core-public.css?ver=bootitems-core/inc/bootitems-widgets.js?ver=HTML / DOM Fingerprints
bootitems-core-demo-sectiondata-bootitems-idbootitems_core_ajax_object[bootitems_demo_import]