
Custom HTML Block Extension Security & Risk Analysis
wordpress.org/plugins/custom-html-block-extensionExtend Custom HTML block to evolve into the advanced code editor.
Is Custom HTML Block Extension Safe to Use in 2026?
Generally Safe
Score 100/100Custom HTML Block Extension has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "custom-html-block-extension" v4.0.0 plugin exhibits a strong security posture based on the provided static analysis. The complete absence of dangerous functions, raw SQL queries, unsanitized output, file operations, and external HTTP requests is commendable. Furthermore, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and properly escaping all outputs, indicating a low risk of common web vulnerabilities like SQL injection and cross-site scripting. The presence of capability checks further strengthens its defenses.
While the static analysis reveals no immediate exploitable vulnerabilities, the lack of AJAX handlers, REST API routes, shortcodes, and cron events suggests a potentially limited scope or functionality for this plugin. The taint analysis showing zero flows, while seemingly positive, could also indicate that the code might not handle any user-supplied input that would trigger such analysis, thus not exposing potential flaws. The clean vulnerability history is a positive indicator of past security awareness, but it's important to remember that a lack of past vulnerabilities does not guarantee future safety.
Overall, the plugin appears to be well-developed from a security perspective, with no critical or high-severity issues detected in the static analysis or vulnerability history. However, the absence of readily identifiable entry points for dynamic analysis makes it difficult to definitively assess its complete security. Future reviews should focus on any new features or expanded functionality that might introduce new attack vectors.
Custom HTML Block Extension Security Vulnerabilities
Custom HTML Block Extension Code Analysis
Custom HTML Block Extension Attack Surface
WordPress Hooks 9
Maintenance & Trust
Custom HTML Block Extension Maintenance & Trust
Maintenance Signals
Community Trust
Custom HTML Block Extension Alternatives
ACE HTML Block
ace-html-block
Registers a raw html block which uses the ACE Editor. Features include syntax highligting, line numbers, indentation, and HTML validation.
Xhtheme Code Block
xhtheme-code-block
A plugin to add code blocks with syntax highlighting to your WordPress site, and adapt to the theme's light and dark mode switching.
BlockExpander
blockexpander
Emmet-style shorthand for creating Gutenberg blocks via keyboard shortcut.
LH Allow Shortcodes
lh-allow-shortcodes
Enable dynamic links within existing Gutenberg blocks
Syntax Highlight Nano
syntax-highlight-nano
Adds modern syntax highlighting to WordPress's standard code block using the robust highlight.js library.
Custom HTML Block Extension Developer Profile
6 plugins · 52K total installs
How We Detect Custom HTML Block Extension
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/custom-html-block-extension/assets/js/pointer.js/wp-content/plugins/custom-html-block-extension/build/style-admin.css/wp-content/plugins/custom-html-block-extension/assets/css/fira-code.css/wp-content/plugins/custom-html-block-extension/build/admin.js/wp-content/plugins/custom-html-block-extension/assets/js/block-editor.js/wp-content/plugins/custom-html-block-extension/build/block-editor.css/wp-content/plugins/custom-html-block-extension/assets/js/pointer.js?ver=/wp-content/plugins/custom-html-block-extension/build/style-admin.css?ver=/wp-content/plugins/custom-html-block-extension/assets/css/fira-code.css?ver=/wp-content/plugins/custom-html-block-extension/build/admin.js?ver=/wp-content/plugins/custom-html-block-extension/assets/js/block-editor.js?ver=/wp-content/plugins/custom-html-block-extension/build/block-editor.css?ver=HTML / DOM Fingerprints
custom-html-block-extension-adminchbePointerchbeObj/wp-json/custom-html-block-extension/v1/editor-settings/wp-json/custom-html-block-extension/v1/editor-options/wp-json/custom-html-block-extension/v1/options/wp-json/custom-html-block-extension/v1/user-roles/wp-json/custom-html-block-extension/v1/font-families/wp-json/custom-html-block-extension/v1/dismiss-welcome-guide