
Custom Blocks Templates Security & Risk Analysis
wordpress.org/plugins/custom-blocks-templatesCreate and set Gutenberg blocks templates for posts, pages and custom post types
Is Custom Blocks Templates Safe to Use in 2026?
Generally Safe
Score 85/100Custom Blocks Templates has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'custom-blocks-templates' v1.3.2 exhibits a mixed security posture. On the positive side, the absence of known CVEs and the use of prepared statements for all SQL queries are strong indicators of good security practices and a history of reliable code. The static analysis reveals no direct attack surface through common entry points like AJAX, REST API, shortcodes, or cron events, and importantly, no direct calls to dangerous functions or file operations are identified. However, a significant concern arises from the output escaping, with only 46% of identified outputs being properly escaped. This suggests a potential for Cross-Site Scripting (XSS) vulnerabilities if the unescaped data is user-controllable or originates from untrusted sources. Furthermore, the taint analysis, while showing no critical or high severity issues, did identify 2 flows with unsanitized paths. This, coupled with the low output escaping percentage, warrants further investigation into how these unsanitized paths are handled to ensure they don't lead to exploitable conditions. The lack of explicit capability checks and nonce checks, while not immediately critical given the limited attack surface, could become a weakness if new entry points are introduced or if the plugin's functionality is extended without proper security controls in place. The bundled DataTables library, if outdated, could also introduce vulnerabilities, although this specific risk is not quantifiable from the provided data.
Key Concerns
- Low output escaping percentage
- Taint flows with unsanitized paths
- Missing capability checks
- Missing nonce checks
Custom Blocks Templates Security Vulnerabilities
Custom Blocks Templates Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Custom Blocks Templates Attack Surface
WordPress Hooks 6
Maintenance & Trust
Custom Blocks Templates Maintenance & Trust
Maintenance Signals
Community Trust
Custom Blocks Templates Alternatives
Starter Templates – AI-Powered Templates for Elementor & Gutenberg
astra-sites
The growing library of 300+ ready-to-use templates that work with all WordPress themes including Astra, Hello, OceanWP, GeneratePress and more
Extendify
extendify
The best WordPress templates, pattern, and layout library with 1,000+ designs built for the Gutenberg block editor.
Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns
essential-blocks
Gutenberg block editor with AI. 70+ Gutenberg blocks, patterns, WooCommerce blocks, post grid, gallery, menu with Gutenberg block library.
Qi Blocks
qi-blocks
Qi Blocks is the largest collection of Gutenberg blocks developed by Qode Interactive.
WDesignKit – Elementor & Gutenberg Starter Templates, Patterns, Cloud Workspace & Widget Builder
wdesignkit
3000+ Elementor Templates, Gutenberg Templates, Widgets Builder for Elementor, Gutenberg & Bricks, Cloud Workspace & Figma Files, 160+ Widgets Library
Custom Blocks Templates Developer Profile
7 plugins · 60 total installs
How We Detect Custom Blocks Templates
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.