
Enable Core Patterns Security & Risk Analysis
wordpress.org/plugins/enable-core-patternsA simple plugin to enable (or re-enable) the core WordPress block patterns.
Is Enable Core Patterns Safe to Use in 2026?
Generally Safe
Score 92/100Enable Core Patterns has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "enable-core-patterns" plugin version 1.0.2 exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any identified attack surface points, including AJAX handlers, REST API routes, shortcodes, or cron events, significantly minimizes the potential for external exploitation. Furthermore, the code analysis reveals a clean bill of health regarding dangerous functions, all SQL queries utilizing prepared statements, and complete output escaping. The lack of file operations and external HTTP requests further bolsters its security. The plugin also adheres to best practices by not bundling external libraries, which could otherwise introduce vulnerabilities.
The vulnerability history is also entirely clean, with no recorded CVEs of any severity. This, combined with the static analysis findings, suggests a developer who is highly mindful of security principles. However, the complete absence of nonce checks and capability checks across all potential entry points (though none were found) could be a concern if functionality were to be added in the future that exposed such entry points. Without any active entry points, this isn't an immediate risk, but it represents a potential area for future vigilance. Overall, this plugin demonstrates excellent security practices, with no immediate exploitable vulnerabilities detected.
Key Concerns
- No nonce checks implemented
- No capability checks implemented
Enable Core Patterns Security Vulnerabilities
Enable Core Patterns Code Analysis
Enable Core Patterns Attack Surface
WordPress Hooks 1
Maintenance & Trust
Enable Core Patterns Maintenance & Trust
Maintenance Signals
Community Trust
Enable Core Patterns Alternatives
Disable Remote Patterns
disable-remote-patterns
A simple plugin to disable the loading of the remote block patterns from the WordPress pattern directory.
Extendify
extendify
The best WordPress templates, pattern, and layout library with 1,000+ designs built for the Gutenberg block editor.
Starter Sites & Templates by Neve
templates-patterns-collection
This plugin gives you access to 100+ templates and ready-to-use starter sites. Neve theme is used for all the designs.
Qi Blocks
qi-blocks
Qi Blocks is the largest collection of Gutenberg blocks developed by Qode Interactive.
Reusable Blocks Extended
reusable-blocks-extended
Extend Gutenberg Reusable Blocks feature with a complete admin panel, widgets, shortcodes and PHP functions.
Enable Core Patterns Developer Profile
38 plugins · 12K total installs
How We Detect Enable Core Patterns
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.