Events Block Security & Risk Analysis

wordpress.org/plugins/events-block

Create and display a dedicated Event block directly inside Gutenberg.

300 active installs v1.0.7 PHP 7.4+ WP 6.1+ Updated Mar 6, 2026
blockeventeventsevents-blockgutenberg
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Events Block Safe to Use in 2026?

Generally Safe

Score 100/100

Events Block has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "events-block" plugin version 1.0.7 exhibits a strong security posture based on the provided static analysis. The plugin demonstrates good security practices by implementing proper output escaping for the vast majority of its outputs (93%) and utilizing prepared statements for its single SQL query. The attack surface is minimal and, importantly, all identified entry points appear to have authentication checks in place, which is a significant strength. The absence of dangerous functions, file operations, and known vulnerabilities further contributes to its positive security standing.

While the plugin shows excellent adherence to common security best practices, there is a single external HTTP request which, if not handled with care on the remote end, could theoretically pose a risk, though no specific vulnerabilities are indicated by the data. The taint analysis revealing zero flows, especially with unsanitized paths, is a very positive indicator of secure coding. The plugin's history of zero known CVEs and no recorded vulnerabilities across any severity level is a testament to its current stability and the developers' apparent focus on security.

Overall, "events-block" v1.0.7 presents a low-risk profile. Its strengths lie in its protected entry points, effective output escaping, and secure SQL handling. The lack of historical vulnerabilities and the clean static analysis report suggest a well-maintained and secure plugin. While the single external HTTP request warrants a minor note, the available data does not point to any immediate or significant security concerns.

Key Concerns

  • Single external HTTP request
Vulnerabilities
None known

Events Block Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Events Block Release Timeline

v1.0.7Current
v1.0.6
v1.0.5.2
v1.0.5.1
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0
Code Analysis
Analyzed Mar 16, 2026

Events Block Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
6
80 escaped
Nonce Checks
2
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

93% escaped86 total outputs
Attack Surface

Events Block Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_evtb_dismiss_noticeadmin\feedback-notice\evtb-feedback-notice.php:13
WordPress Hooks 7
actionadmin_enqueue_scriptsadmin\feedback\admin-feedback-form.php:23
actionadmin_headadmin\feedback\admin-feedback-form.php:24
actionadmin_noticesadmin\feedback-notice\evtb-feedback-notice.php:12
actioninitevents-block.php:33
actionenqueue_block_editor_assetsevents-block.php:34
actionwp_enqueue_scriptsevents-block.php:35
actionplugins_loadedevents-block.php:36
Maintenance & Trust

Events Block Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 6, 2026
PHP min version7.4
Downloads1K

Community Trust

Rating100/100
Number of ratings2
Active installs300
Developer Profile

Events Block Developer Profile

Cool Plugins

21 plugins · 113K total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
434 days
View full developer profile
Detection Fingerprints

How We Detect Events Block

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/events-block/editor.css/wp-content/plugins/events-block/style.css/wp-content/plugins/events-block/assets/css/evtb-icons.css/wp-content/plugins/events-block/assets/js/frontend.js
Script Paths
/wp-content/plugins/events-block/build/index.js/wp-content/plugins/events-block/admin/feedback/js/admin-feedback.js
Version Parameters
events-block/editor.css?ver=events-block/style.css?ver=events-block/assets/css/evtb-icons.css?ver=events-block/assets/js/frontend.js?ver=events-block/admin/feedback/js/admin-feedback.js?ver=events-block/admin/feedback/css/admin-feedback.css?ver=

HTML / DOM Fingerprints

CSS Classes
hide-feedback-popupcp-feedback-wrappercp-feedback-headercp-feedback-titlecp-feedback-title-linkcp-feedback-loadercp-feedback-form-wrappercp-feedback-form-title+3 more
HTML Comments
<!-- Quick Feedback --><!-- If you have a moment, please share the reason for deactivating this plugin. -->
Data Attributes
data-plugin_slug
JS Globals
evtbPluginData
FAQ

Frequently Asked Questions about Events Block