Disable Widget Block Editor Security & Risk Analysis

wordpress.org/plugins/disable-wp-widget-block-editor

Activate this plugin to disable the Widget Block Editor feature that was added in WP v5.8.

0 active installs v1.0.1 PHP 5.6.20+ WP 5.8+ Updated Nov 25, 2022
blockdisableeditorgutenbergwidget
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Disable Widget Block Editor Safe to Use in 2026?

Generally Safe

Score 85/100

Disable Widget Block Editor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The plugin "disable-wp-widget-block-editor" v1.0.1 exhibits an exceptionally strong security posture based on the provided static analysis and vulnerability history. The absence of any identified dangerous functions, raw SQL queries, unescaped outputs, file operations, external HTTP requests, or taint flows is a significant positive indicator. Furthermore, the complete lack of known CVEs in its history reinforces this excellent track record, suggesting a development team that prioritizes security or a plugin with a limited scope that inherently reduces risk. The plugin also correctly utilizes prepared statements for any database interactions, which is a fundamental security best practice.

While the static analysis reveals a zero attack surface with respect to AJAX handlers, REST API routes, shortcodes, and cron events, and no capability checks or nonce checks are listed, this could be interpreted in two ways. On one hand, it means there are no apparent entry points that could be exploited. On the other hand, for a plugin that aims to disable features, the absence of these checks means the functionality is likely implemented in a way that doesn't require user interaction or specific permissions, which is generally good for a utility plugin. The plugin's strengths lie in its clean code and lack of known vulnerabilities. The only potential area for concern, albeit minor and not explicitly flagged as a risk in the data, is the absence of explicit capability checks or nonce checks. However, given the plugin's stated purpose of disabling features, this might not represent a real vulnerability but rather a design choice that doesn't necessitate these protections. Overall, this plugin appears to be very secure.

Vulnerabilities
None known

Disable Widget Block Editor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Disable Widget Block Editor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Disable Widget Block Editor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
filtergutenberg_use_widgets_block_editordisable-wp-widget-block-editor.php:39
filteruse_widgets_block_editordisable-wp-widget-block-editor.php:40
Maintenance & Trust

Disable Widget Block Editor Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedNov 25, 2022
PHP min version5.6.20
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Disable Widget Block Editor Developer Profile

Michael Sumner

2 plugins · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Disable Widget Block Editor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Disable Widget Block Editor