Custom URL for Elementor Security & Risk Analysis

wordpress.org/plugins/custom-url-for-elementor

Enhance your Elementor designs by adding custom URLs and CSS to Container, Section, Column, and Inner Section elements.

40 active installs v2.0.0 PHP 7.0+ WP 5.6+ Updated Oct 9, 2024
containercustom-urlelementorlinksection
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Custom URL for Elementor Safe to Use in 2026?

Generally Safe

Score 92/100

Custom URL for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The 'custom-url-for-elementor' v2.0.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, unescaped output, file operations, or external HTTP requests is highly commendable. Furthermore, the plugin demonstrates good practice by utilizing prepared statements for all SQL queries and ensuring proper output escaping. The presence of a capability check, even if only one, is a positive sign of security awareness in the development process.

Critically, the plugin's attack surface is zero, with no AJAX handlers, REST API routes, shortcodes, or cron events exposed. This significantly reduces the potential for external exploitation. The taint analysis also reveals no flows with unsanitized paths or critical/high severity issues, further reinforcing its secure design.

The vulnerability history is equally impressive, with zero known CVEs recorded. This, combined with the clean static analysis, suggests a well-developed and maintained plugin. While the lack of nonce checks on entry points (as there are no entry points) might seem like a concern in isolation, it's a non-issue given the plugin's minimal attack surface. The overall assessment is that 'custom-url-for-elementor' v2.0.0 presents a very low security risk.

Vulnerabilities
None known

Custom URL for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Custom URL for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
5 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped5 total outputs
Attack Surface

Custom URL for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionplugins_loadedelementor-custom-url.php:35
actionadmin_noticeselementor-custom-url.php:42
actionelementor/element/parse_csselementor-custom-url.php:55
Maintenance & Trust

Custom URL for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedOct 9, 2024
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

Custom URL for Elementor Developer Profile

woologger

1 plugin · 40 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Custom URL for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Data Attributes
data-urlonclickcursor: pointer;
JS Globals
window.open(
Shortcode Output
<a href="https://woologger.com" target="_blank">woologger.com</a>
FAQ

Frequently Asked Questions about Custom URL for Elementor