Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns Security & Risk Analysis

wordpress.org/plugins/create-block-patterns

Create custom block patterns and browse ready-made patterns from the WordPress.org library to enhance your Gutenberg block pattern collection.

0 active installs v4.0.0 PHP 7.2+ WP 6.4+ Updated Apr 7, 2025
block-patternsbrowse-patternsgutenbergpattern-builderpatterns
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns Safe to Use in 2026?

Generally Safe

Score 100/100

Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12mo ago
Risk Assessment

The "create-block-patterns" plugin v4.0.0 demonstrates a generally strong security posture based on the provided static analysis. The absence of SQL queries without prepared statements, a high percentage of properly escaped output, and no observed dangerous functions or file operations are commendable. The limited attack surface, with only two AJAX handlers and no REST API routes or shortcodes, further contributes to its security. The plugin also shows good practice by including a nonce check and zero unpatched vulnerabilities in its history.

However, there are areas for improvement. The plugin lacks capability checks on its AJAX handlers, which is a significant concern. While the analysis found no direct critical vulnerabilities, the absence of permission checks means that any authenticated user could potentially trigger these handlers, leading to unintended actions. The presence of two external HTTP requests also warrants scrutiny to ensure these are not being exploited for sensitive data leakage or other malicious purposes.

Overall, the plugin benefits from a clean code history and minimal attack surface. The primary weakness lies in the missing capability checks for its AJAX endpoints. This is a known area where vulnerabilities can arise, and while no specific exploit is evident in the provided data, it represents a potential risk that should be addressed to solidify the plugin's security.

Key Concerns

  • AJAX handlers without capability checks
Vulnerabilities
None known

Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
18 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

95% escaped19 total outputs
Attack Surface

Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_ssbp_insert_pattern_ajaxinc\patterns-settings.php:95
noprivwp_ajax_ssbp_insert_pattern_ajaxinc\patterns-settings.php:96
WordPress Hooks 5
actioninitinc\custom-post-type.php:135
actioninitinc\load-pattern.php:70
actionadmin_enqueue_scriptsinc\patterns-settings.php:22
actionadmin_head-edit.phpinc\patterns-settings.php:29
actionadmin_menuinc\patterns-settings.php:52
Maintenance & Trust

Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedApr 7, 2025
PHP min version7.2
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns Developer Profile

Sadik Multani

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/create-block-patterns/assets/css/style.css/wp-content/plugins/create-block-patterns/assets/js/custom.js
Script Paths
/wp-content/plugins/create-block-patterns/assets/js/custom.js
Version Parameters
create-block-patterns/assets/css/style.css?ver=create-block-patterns/assets/js/custom.js?ver=

HTML / DOM Fingerprints

CSS Classes
ssbp-admin-style
Data Attributes
data-ssbp-insert-pattern
JS Globals
ssbpApiSettings
REST Endpoints
/wp-json/wp/v2/wporg-pattern/
FAQ

Frequently Asked Questions about Block Pattern Builder For WordPress – Boost Up Gutenberg Patterns