FAQ Manager For Divi, Gutenberg Block & Shortcode Security & Risk Analysis

wordpress.org/plugins/faq-manager-with-structured-data

Easily create, manage bookmarkable FAQs on your website. Use divi module, FAQ block or shortcode to display FAQs. Boost SEO with FAQPage schema & …

200 active installs v6.1.0 PHP 7.2.5+ WP 4.5+ Updated Dec 26, 2025
faqfaq-schemafaq-shortcodefaqsfrequently-asked-questions
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is FAQ Manager For Divi, Gutenberg Block & Shortcode Safe to Use in 2026?

Generally Safe

Score 100/100

FAQ Manager For Divi, Gutenberg Block & Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "faq-manager-with-structured-data" plugin v6.1.0 exhibits a generally good security posture based on the provided static analysis. The plugin demonstrates strong practices by having no unauthenticated entry points, no dangerous functions, and utilizing prepared statements for all SQL queries. Furthermore, the absence of any recorded vulnerabilities, historical or current, suggests a well-maintained and secure codebase.

However, a significant concern is the relatively low percentage (52%) of properly escaped output. This indicates a potential risk of Cross-Site Scripting (XSS) vulnerabilities, where user-supplied data might be rendered directly in the browser without adequate sanitization, allowing attackers to inject malicious scripts. While there are no critical taint flows or unsanitized paths detected, the unescaped output remains a notable weakness.

In conclusion, the plugin's strengths lie in its secure handling of core functionalities like database interactions and its robust approach to entry point authentication. The primary area for improvement and a notable weakness is the insufficient output escaping, which could lead to XSS if not addressed. Despite this, the clean vulnerability history is a positive indicator of past security diligence.

Key Concerns

  • Low percentage of properly escaped output
  • Bundled outdated library: Freemius v1.0
Vulnerabilities
None known

FAQ Manager For Divi, Gutenberg Block & Shortcode Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

FAQ Manager For Divi, Gutenberg Block & Shortcode Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
14
15 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

Output Escaping

52% escaped29 total outputs
Attack Surface

FAQ Manager For Divi, Gutenberg Block & Shortcode Attack Surface

Entry Points2
Unprotected0

REST API Routes 1

GET/wp-json/wpt-faq-manager/v1/categoriesincludes\classes\WP\Bootstrap.php:21

Shortcodes 1

[wpt_faqs] includes\classes\Loader.php:87
WordPress Hooks 23
actioninitblocks\faq-list\faq-list.php:49
actiondivi_visual_builder_assets_before_enqueue_scriptsdivi-5\divi-5.php:37
actioninitdivi-5\divi-5.php:39
filtershow_first_trial_after_n_secfaq-manager-with-structured-data.php:18
actiondivi_extensions_initincludes\classes\Divi\Divi.php:25
actioninitincludes\classes\Divi\Divi.php:30
actionwp_print_stylesincludes\classes\Divi\Divi.php:43
actioninitincludes\classes\Divi5\Modules\FaqModule\FaqModule.php:30
actiondivi_module_library_modules_dependency_treeincludes\classes\Divi5\Modules\Modules.php:11
actionrest_api_initincludes\classes\Loader.php:67
actionrest_api_initincludes\classes\Loader.php:71
actionadmin_enqueue_scriptsincludes\classes\Loader.php:73
actionadmin_headincludes\classes\Loader.php:79
actionadmin_menuincludes\classes\Loader.php:81
actionadmin_bar_menuincludes\classes\Loader.php:82
actionadmin_headincludes\classes\Loader.php:83
actionenqueue_wpt_faq_shortcode_assetsincludes\classes\Loader.php:88
actionwpt_faq_structured_dataincludes\classes\Loader.php:90
actioninitincludes\classes\Loader.php:100
actionafter_license_changeincludes\classes\Loader.php:108
actionrest_api_initincludes\classes\WP\Bootstrap.php:20
actioninitpost-types\wpt-faq.php:54
filterpost_updated_messagespost-types\wpt-faq.php:76
Maintenance & Trust

FAQ Manager For Divi, Gutenberg Block & Shortcode Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 26, 2025
PHP min version7.2.5
Downloads9K

Community Trust

Rating100/100
Number of ratings1
Active installs200
Developer Profile

FAQ Manager For Divi, Gutenberg Block & Shortcode Developer Profile

wptools

15 plugins · 6K total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect FAQ Manager For Divi, Gutenberg Block & Shortcode

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/faq-manager-with-structured-data/divi-5/visual-builder/styles/bundle.css/wp-content/plugins/faq-manager-with-structured-data/divi-5/visual-builder/build/d5-faq-module.js
Script Paths
/wp-content/plugins/faq-manager-with-structured-data/divi-5/visual-builder/build/d5-faq-module.js
Version Parameters
faq-manager-with-structured-data/divi-5/visual-builder/styles/bundle.css?ver=faq-manager-with-structured-data/divi-5/visual-builder/build/d5-faq-module.js?ver=

HTML / DOM Fingerprints

CSS Classes
wpt-faq-accordion
Data Attributes
cssId
JS Globals
window._0x1a2b3c
REST Endpoints
/wp-json/wp-faq-manager-with-structured-data/
Shortcode Output
[wpt_faqs
FAQ

Frequently Asked Questions about FAQ Manager For Divi, Gutenberg Block & Shortcode