
Diviner Blocks Security & Risk Analysis
wordpress.org/plugins/diviner-blocksCustom Gutenberg Blocks for Diviner WordPress Theme providing added functionality to create better content.
Is Diviner Blocks Safe to Use in 2026?
Generally Safe
Score 85/100Diviner Blocks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The diviner-blocks plugin v1.0 demonstrates a strong static security posture. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the code analysis reveals no dangerous functions, no direct SQL queries (all are prepared), no file operations, and no external HTTP requests. The lack of known vulnerabilities in its history is also a positive indicator of its security maturity.
However, a critical concern arises from the output escaping. With one total output and 0% properly escaped, this indicates a high likelihood of cross-site scripting (XSS) vulnerabilities. Any data displayed to users that originates from potentially untrusted sources without proper sanitization can be exploited. The absence of capability checks and nonce checks, while not immediately concerning due to the lack of entry points, could become a significant risk if future versions introduce new features that expose these functionalities without adequate protection.
Overall, while the plugin currently has a very low attack surface and a clean vulnerability history, the unescaped output represents a serious potential weakness. Addressing the output escaping is paramount to mitigating the immediate XSS risk. Future development should prioritize implementing proper capability and nonce checks if new user-interactive features are added.
Key Concerns
- Unescaped output
Diviner Blocks Security Vulnerabilities
Diviner Blocks Code Analysis
Output Escaping
Diviner Blocks Attack Surface
WordPress Hooks 8
Maintenance & Trust
Diviner Blocks Maintenance & Trust
Maintenance Signals
Community Trust
Diviner Blocks Alternatives
Spectra Gutenberg Blocks – Website Builder for the Block Editor
ultimate-addons-for-gutenberg
Power-up Gutenberg with advanced blocks for faster website creation. Build your WordPress website effortlessly using powerful building blocks!
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
kadence-blocks
20+ AI-powered Gutenberg Blocks with endless options, enabling top-notch efficiency for high-performance dynamic website creation.
Extendify
extendify
The best WordPress templates, pattern, and layout library with 1,000+ designs built for the Gutenberg block editor.
Page Builder: Pagelayer – Drag and Drop website builder
pagelayer
The most advanced frontend drag & drop page builder. Pagelayer is a light weight but extremely powerful Website Builder.
Page Builder Gutenberg Blocks – CoBlocks
coblocks
CoBlocks is a suite of page builder WordPress blocks for Gutenberg, with 10+ new blocks and a true page builder experience with rows and columns.
Diviner Blocks Developer Profile
10 plugins · 890 total installs
How We Detect Diviner Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/diviner-blocks/styles/css/admin.cssHTML / DOM Fingerprints
diviner-theme-optionsdiviner-admin-page-titlediviner-important-links-titlediviner-important-linkscustom_linkbutton-documentationbutton-theme-pagebutton-contact-us+1 moredata-hrefdata-tabsdata-widthdata-heightdata-small-headerdata-adapt-container-width+2 moreDIVINER_URLDIVINER_PATH