
Foxdell Folio BEC Disable Core Blocks Security & Risk Analysis
wordpress.org/plugins/foxdell-folio-bec-disable-core-blocksDisable core blocks to restrict users to certain features.
Is Foxdell Folio BEC Disable Core Blocks Safe to Use in 2026?
Generally Safe
Score 85/100Foxdell Folio BEC Disable Core Blocks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'foxdell-folio-bec-disable-core-blocks' v1.0.0 exhibits a mixed security posture. On the positive side, it has no known vulnerabilities in its history and utilizes prepared statements for all SQL queries, indicating good practices in database interaction. It also appears to have a relatively small attack surface with only one entry point identified. However, significant concerns arise from the static analysis. The plugin possesses a single AJAX handler that lacks any authentication checks, presenting a clear opportunity for unauthorized actions. Furthermore, none of the output operations are properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is ever processed by these outputs. The absence of taint analysis findings is positive but doesn't negate the presence of concrete vulnerabilities like the unauthenticated AJAX handler and unescaped output. The bundled DataTables library, while not explicitly flagged as outdated in the provided data, is a point to monitor for potential future security issues if it's an older version. Overall, while the plugin shows some responsible coding in specific areas, the unauthenticated AJAX endpoint and unescaped output are critical weaknesses that expose it to significant risks.
Key Concerns
- Unauthenticated AJAX handler
- Outputs not properly escaped
- Bundled library (DataTables v1.10.20)
Foxdell Folio BEC Disable Core Blocks Security Vulnerabilities
Foxdell Folio BEC Disable Core Blocks Release Timeline
Foxdell Folio BEC Disable Core Blocks Code Analysis
Bundled Libraries
Output Escaping
Foxdell Folio BEC Disable Core Blocks Attack Surface
AJAX Handlers 1
WordPress Hooks 6
Maintenance & Trust
Foxdell Folio BEC Disable Core Blocks Maintenance & Trust
Maintenance Signals
Community Trust
Foxdell Folio BEC Disable Core Blocks Alternatives
Rain Forest Theme for the Foxdell Folio Block Editor Customiser
foxdell-folio-bec-theme-rain-forest
Customise you Block Editor experience, or customise the experience on client sites.
VS Light Theme for the Foxdell Folio Block Editor Customiser
foxdell-folio-bec-vs-light-theme
Customise you Block Editor experience, or customise the experience on client sites.
Foxdell Folio Block Editor Customiser
foxdell-folio-block-editor-customiser
Customise you Block Editor experience, or customise the experience on client sites.
Classic Editor
classic-editor
Enables the previous "classic" editor and the old-style Edit Post screen with TinyMCE, Meta Boxes, etc. Supports all plugins that extend this screen.
Starter Templates – AI-Powered Templates for Elementor & Gutenberg
astra-sites
The growing library of 300+ ready-to-use templates that work with all WordPress themes including Astra, Hello, OceanWP, GeneratePress and more
Foxdell Folio BEC Disable Core Blocks Developer Profile
5 plugins · 10 total installs
How We Detect Foxdell Folio BEC Disable Core Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/foxdell-folio-bec-disable-core-blocks/admin/js/script.jsHTML / DOM Fingerprints
fofo-bec-dcb-pagingdisable-core-blocks-listdata-block-itemdcbFunctions/wp-json/fofo-bec-disable-core-blocks/v1/disabled-blocks