Eventin Addons for Divi Builder Security & Risk Analysis

wordpress.org/plugins/eventin-divi-addon

Build stunning event pages visually with 7+ Divi modules event listings, schedules, speaker showcases, calendar, and advanced search. No code needed.

800 active installs v1.1.0 PHP 7.4+ WP 6.2+ Updated Apr 9, 2026
dividivi-modulesevent-managementevents-calendar
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Eventin Addons for Divi Builder Safe to Use in 2026?

Generally Safe

Score 100/100

Eventin Addons for Divi Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The static analysis of eventin-divi-addon v1.0.10 reveals a plugin with a seemingly very small attack surface, reporting zero AJAX handlers, REST API routes, shortcodes, and cron events. The absence of dangerous functions, file operations, and external HTTP requests is also a positive sign. Furthermore, all SQL queries are properly prepared, indicating good database interaction practices.

However, significant concerns arise from the output escaping and capability checks. A mere 10% of output is properly escaped, suggesting a high risk of Cross-Site Scripting (XSS) vulnerabilities across the plugin's output. The complete absence of nonce checks and capability checks across all entry points, coupled with zero taint flows analyzed, presents a critical blind spot. While there's no recorded vulnerability history, this lack of historical data doesn't negate the immediate risks identified in the code analysis. The plugin's strengths lie in its database query security and lack of certain dangerous functions, but the severe lack of output escaping and authorization checks on its (albeit small) entry points presents a substantial security risk.

Key Concerns

  • Low output escaping rate
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Eventin Addons for Divi Builder Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Eventin Addons for Divi Builder Release Timeline

v1.1.0Current
v1.0.10
v1.0.9
v1.0.8
v1.0.7
v1.0.6
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

Eventin Addons for Divi Builder Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
26
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

10% escaped29 total outputs
Attack Surface

Eventin Addons for Divi Builder Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actiondivi_extensions_initeventin-divi-addon.php:71
actionadmin_noticeseventin-divi-addon.php:76
actionadmin_headincludes\modules\AdvancedSearch\AdvancedSearch.php:24
Maintenance & Trust

Eventin Addons for Divi Builder Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 9, 2026
PHP min version7.4
Downloads15K

Community Trust

Rating0/100
Number of ratings0
Active installs800
Developer Profile

Eventin Addons for Divi Builder Developer Profile

Arraytics

10 plugins · 20K total installs

91
trust score
Avg Security Score
95/100
Avg Patch Time
27 days
View full developer profile
Detection Fingerprints

How We Detect Eventin Addons for Divi Builder

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/eventin-divi-addon/assets/css/frontend.css/wp-content/plugins/eventin-divi-addon/assets/js/frontend.js
Script Paths
/wp-content/plugins/eventin-divi-addon/assets/js/frontend.js
Version Parameters
eventin-divi-addon/assets/css/frontend.css?ver=eventin-divi-addon/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
et-eventin-wrappereventin-frontend-calendareventin-single-event-wrap
Data Attributes
data-eventin-id
JS Globals
EventinFrontend
Shortcode Output
[eventin_calendar][eventin_archive][eventin_single]
FAQ

Frequently Asked Questions about Eventin Addons for Divi Builder