Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon Security & Risk Analysis

wordpress.org/plugins/dynamic-post-grid-elementor-addon

Build beautiful post grids with Gutenberg blocks, shortcodes, or Elementor. Features grid, masonry, list & slider layouts, AJAX category filters, …

30 active installs v1.9.0 PHP 5.6+ WP 5.0+ Updated Jul 19, 2026
elementorgutenberg-blockspost-gridpostswoocommerce
99
A · Safe
CVEs total1
Unpatched0
Last CVENov 8, 2024
Download
Safety Verdict

Is Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon Safe to Use in 2026?

Generally Safe

Score 99/100

Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.

1 known CVELast CVE: Nov 8, 2024Updated 1mo ago
Risk Assessment

The plugin "dynamic-post-grid-elementor-addon" v1.2.6 exhibits a generally strong security posture based on the static analysis. The complete absence of exploitable entry points (AJAX, REST API, shortcodes, cron events) and the fact that all detected SQL queries are properly prepared are significant strengths. The high percentage of properly escaped output further suggests good development practices for preventing cross-site scripting. The lack of file operations and external HTTP requests also reduces potential attack vectors.

However, a notable concern is the complete absence of nonce checks and capability checks across all identified code signals. While the static analysis found no direct vulnerabilities in this version, the lack of these fundamental security mechanisms means that if any new entry points were introduced or discovered, they would likely be unprotected, leaving the plugin susceptible to cross-site request forgery (CSRF) and unauthorized action execution.

The plugin does have a history of one medium severity CVE, a cross-site scripting vulnerability, which was last patched on November 8th, 2024. While there are no currently unpatched vulnerabilities, this history indicates that the plugin has had exploitable flaws in the past. The fact that the last vulnerability was a common type like XSS, despite the current high level of output escaping, warrants ongoing vigilance.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • History of medium severity CVE
Vulnerabilities
1 published

Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon Security Vulnerabilities

CVEs by Year

1 CVE in 2024
2024
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2024-51852medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Dynamic Post Grid Elementor Addon <= 1.0.6 - Authenticated (Contributor+) Stored Cross-Site Scripting

Nov 8, 2024 Patched in 1.0.7 (7d)
Version History

Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon Release Timeline

v1.11.0
v1.9.0Current
v1.8.0
v1.7.0
v1.6.0
v1.5.0
v1.3.0
v1.2.6
v1.2.5
v1.2.4
v1.2.3
v1.2.2
v1.2.1
v1.2.0
v1.0.9
v1.0.8
v1.0.7
v1.0.61 CVE
v1.0.51 CVE
v1.0.41 CVE
Code Analysis
Analyzed Mar 16, 2026

Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
19
396 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

95% escaped415 total outputs
Attack Surface

Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
actioninitdynamic-post-grid.php:67
actionplugins_loadeddynamic-post-grid.php:70
actionadmin_noticesdynamic-post-grid.php:104
actionadmin_noticesdynamic-post-grid.php:110
actionadmin_noticesdynamic-post-grid.php:116
actionelementor/frontend/after_enqueue_styleselementor-widgets.php:165
actionelementor/widgets/registerelementor-widgets.php:168
actionelementor/elements/categories_registeredelementor-widgets.php:170
actionelementor/preview/enqueue_scriptselementor-widgets.php:172
actionelementor/preview/enqueue_styleselementor-widgets.php:174
actionelementor/controls/registerelementor-widgets.php:176
filterwoocommerce_loop_add_to_cart_linkwidgets\layouts\product\product-grid-layout-3.php:23
Maintenance & Trust

Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon Maintenance & Trust

Maintenance Signals

WordPress version tested7.0.2
Last updatedJul 19, 2026
PHP min version5.6
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon Developer Profile

Maidul

12 plugins · 1K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
126 days
View full developer profile
Detection Fingerprints

How We Detect Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/dynamic-post-grid-elementor-addon/assets/css/style.css/wp-content/plugins/dynamic-post-grid-elementor-addon/assets/vendors/slick/slick.css/wp-content/plugins/dynamic-post-grid-elementor-addon/assets/vendors/slick/slick-theme.css
Script Paths
/wp-content/plugins/dynamic-post-grid-elementor-addon/assets/js/main.js/wp-content/plugins/dynamic-post-grid-elementor-addon/assets/vendors/slick/slick.min.js
Version Parameters
dynamic-post-grid-elementor-addon/assets/css/style.css?ver=dynamic-post-grid-elementor-addon/assets/vendors/slick/slick.css?ver=dynamic-post-grid-elementor-addon/assets/vendors/slick/slick-theme.css?ver=dynamic-post-grid-elementor-addon/assets/js/main.js?ver=dynamic-post-grid-elementor-addon/assets/vendors/slick/slick.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
depg-grid-wrapperdepg-post-grid
Data Attributes
data-settings
JS Globals
depg_scripts
FAQ

Frequently Asked Questions about Dynamic Post Grid – Gutenberg Blocks, Shortcodes & Elementor Addon