
Goodlayers Blocks Security & Risk Analysis
wordpress.org/plugins/goodlayers-blocksA utility plugin to help you styling the page
Is Goodlayers Blocks Safe to Use in 2026?
Generally Safe
Score 91/100Goodlayers Blocks has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "goodlayers-blocks" plugin v1.0.3 exhibits a generally strong security posture based on the static analysis. It effectively uses prepared statements for all SQL queries and properly escapes all output, which are critical best practices for preventing common web vulnerabilities. The absence of dangerous functions, file operations, and external HTTP requests further reduces the immediate attack surface within the analyzed code. The presence of a nonce check is also a positive indicator for input validation.
However, a significant concern arises from the plugin's vulnerability history. The presence of one medium-severity CVE, specifically related to Cross-Site Scripting (XSS), even if currently patched, indicates a past weakness that required remediation. The fact that the last vulnerability was recorded as recently as January 2025 suggests a potential for ongoing security challenges or at least a recent history of security issues. While the current code analysis shows no immediate critical flaws or unsanitized taint flows, the historical XSS vulnerability warrants caution. The limited attack surface is a positive, but the single shortcode entry point, while protected by a nonce, still represents a potential vector if not carefully handled by the underlying WordPress core or other plugins.
In conclusion, "goodlayers-blocks" v1.0.3 demonstrates good secure coding practices in its current state, with no immediately obvious code-level vulnerabilities detected in the static analysis. The plugin's strengths lie in its proper SQL handling and output escaping. The primary weakness is the documented history of a medium-severity XSS vulnerability, which, despite being patched, necessitates ongoing vigilance and prompt updates for future versions. The limited attack surface is commendable, but the historical vulnerability should temper complete confidence.
Key Concerns
- Medium severity CVE in vulnerability history
Goodlayers Blocks Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Goodlayers Blocks <= 1.0.1 - Reflected Cross-Site Scripting
Goodlayers Blocks Release Timeline
Goodlayers Blocks Code Analysis
Output Escaping
Goodlayers Blocks Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
Goodlayers Blocks Maintenance & Trust
Maintenance Signals
Community Trust
Goodlayers Blocks Alternatives
Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg)
responsive-accordion-and-collapse
Accordion And Collapse is the most easiest drag & drop accordion builder for WordPress. You can add multiple accordion and collapse with this.
Accordion Blocks
accordion-blocks
Gutenberg block for creating responsive accordion drop-downs.
Lightweight Accordion
lightweight-accordion
Simple accordion for adding collapse elements to pages without affecting page load time. Includes Gutenberg block and shortcode for classic editor.
Tabby Responsive Tabs
tabby-responsive-tabs
Create responsive tabs inside your posts, pages or custom post content by adding simple shortcodes inside the post editor.
SlingBlocks – Gutenberg Blocks by FunnelKit (Formerly WooFunnels)
slingblocks
A minimalist Gutenberg Block Plugin that extends Gutenberg to provide page building capabilities.
Goodlayers Blocks Developer Profile
1 plugin · 100 total installs
How We Detect Goodlayers Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/goodlayers-blocks/js/dist/accordion.js/wp-content/plugins/goodlayers-blocks/js/dist/rating.js/wp-content/plugins/goodlayers-blocks/js/dist/slider-controls.js/wp-content/plugins/goodlayers-blocks/js/dist/group-custom.js/wp-content/plugins/goodlayers-blocks/js/dist/fa-social.js/wp-content/plugins/goodlayers-blocks/js/dist/shape-divider.js/wp-content/plugins/goodlayers-blocks/js/dist/category-filter.js/wp-content/plugins/goodlayers-blocks/js/dist/product-category.js+1 more/wp-content/plugins/goodlayers-blocks/js/dist/accordion.js/wp-content/plugins/goodlayers-blocks/js/dist/rating.js/wp-content/plugins/goodlayers-blocks/js/dist/slider-controls.js/wp-content/plugins/goodlayers-blocks/js/dist/group-custom.js/wp-content/plugins/goodlayers-blocks/js/dist/fa-social.js/wp-content/plugins/goodlayers-blocks/js/dist/shape-divider.js+2 moregoodlayers-blocks/js/dist/accordion.asset.phpgoodlayers-blocks/js/dist/rating.asset.phpgoodlayers-blocks/js/dist/slider-controls.asset.phpgoodlayers-blocks/js/dist/group-custom.asset.phpgoodlayers-blocks/js/dist/fa-social.asset.phpgoodlayers-blocks/js/dist/shape-divider.asset.phpgoodlayers-blocks/js/dist/category-filter.asset.phpgoodlayers-blocks/js/dist/product-category.asset.phpHTML / DOM Fingerprints
glgu-now-loadingglgu-columnglgu-column-1glgu-column-2glgu-column-3glgu-column-4glgu-column-5glgu-column-6+3 moreglguGroupCustomGLGU_CATGLGU_THUMBNAIL