
Cuberg Security & Risk Analysis
wordpress.org/plugins/cubergCuberg - The Next Generation of Gutenberg Blocks, Templates and Patterns Note: The beta version is an experimental release and we do not recommend it …
Is Cuberg Safe to Use in 2026?
Generally Safe
Score 85/100Cuberg has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "cuberg" v0.0.3 Beta plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by using prepared statements for all SQL queries and not making any external HTTP requests. The absence of any recorded vulnerabilities or CVEs in its history is also a strong indicator of a relatively secure past.
However, the static analysis reveals significant concerns, particularly regarding its attack surface. With 5 AJAX handlers, one of which completely lacks authentication checks, there's a clear entry point for potential unauthorized actions. Furthermore, the output escaping is alarmingly low, with only 10% of the 30 identified outputs being properly escaped. This suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities.
While the plugin's vulnerability history is clean, this should be viewed in conjunction with the identified code weaknesses. The lack of authentication on an AJAX handler and the poor output escaping are critical issues that need immediate attention. The plugin has a limited attack surface and SQL is handled well, but the unprotected AJAX endpoint and XSS risks are substantial concerns.
Key Concerns
- AJAX handler without authentication check
- Low percentage of properly escaped output
Cuberg Security Vulnerabilities
Cuberg Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Cuberg Attack Surface
AJAX Handlers 5
WordPress Hooks 17
Maintenance & Trust
Cuberg Maintenance & Trust
Maintenance Signals
Community Trust
Cuberg Alternatives
Spectra Gutenberg Blocks – Website Builder for the Block Editor
ultimate-addons-for-gutenberg
Power-up Gutenberg with advanced blocks for faster website creation. Build your WordPress website effortlessly using powerful building blocks!
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
kadence-blocks
20+ AI-powered Gutenberg Blocks with endless options, enabling top-notch efficiency for high-performance dynamic website creation.
Page Builder: Pagelayer – Drag and Drop website builder
pagelayer
The most advanced frontend drag & drop page builder. Pagelayer is a light weight but extremely powerful Website Builder.
Superb Addons: Blocks, Patterns & Theme Designer for the Block Editor & FSE
superb-blocks
Create beautiful WordPress websites easily with 10+ blocks, 200+ patterns, 100+ pre-built pages, animations and Theme Designer. No coding needed!
GutenKit – Page Builder Blocks, Patterns, and Templates for Gutenberg Block Editor
gutenkit-blocks-addon
GutenKit – Ultimate no-code Gutenberg blocks to design stunning web pages and visually stunning posts in WordPress block editor.
Cuberg Developer Profile
4 plugins · 920 total installs
How We Detect Cuberg
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cuberg/classes/class-helper-functions.php/wp-content/plugins/cuberg/classes/class-cuberg-blocks-css.php/wp-content/plugins/cuberg/classes/mighty-gutenberg.php/wp-content/plugins/cuberg/classes/panel.php/wp-content/plugins/cuberg/assets/js/cuberg-blocks.js/wp-content/plugins/cuberg/assets/js/cuberg-editor.js/wp-content/plugins/cuberg/assets/js/cuberg-frontend.jscuberg/assets/js/cuberg-blocks.js?ver=cuberg/assets/js/cuberg-editor.js?ver=cuberg/assets/css/cuberg-style.css?ver=cuberg/assets/css/cuberg-editor.css?ver=HTML / DOM Fingerprints
cuberg-block<!-- Block: Cuberg/Accordion --><!-- Block: Cuberg/Button --><!-- Block: Cuberg/CallToAction --><!-- Block: Cuberg/Categories -->+25 moredata-cuberg-accordiondata-cuberg-tabsdata-cuberg-modaldata-cuberg-testimonial-sliderdata-cuberg-clients-sliderdata-cuberg-image-carouselcuberg_editor_configcuberg_frontend_config/wp-json/cuberg/v1/settings