
HTML Block with Highlighting Security & Risk Analysis
wordpress.org/plugins/html-block-with-highlightingHTML Block with Highlighting is a WordPress plugin which adds a new HTML Block with syntax highlighting to the Gutenberg editor.
Is HTML Block with Highlighting Safe to Use in 2026?
Generally Safe
Score 85/100HTML Block with Highlighting has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "html-block-with-highlighting" v1.0.0 plugin demonstrates a strong security posture based on the provided static analysis. The absence of any detected dangerous functions, SQL queries without prepared statements, unescaped output, file operations, or external HTTP requests is a positive indicator. Furthermore, the lack of vulnerabilities in the plugin's history suggests a commitment to security by its developers. The total absence of entry points (AJAX, REST API, shortcodes, cron events) is also a significant strength, as it minimizes the plugin's attack surface considerably.
However, the complete lack of entry points might also indicate that the plugin's functionality is extremely limited or perhaps not yet fully implemented. It's unusual for a plugin to have zero entry points in its static analysis. While this currently prevents any direct attack vectors, it also means there are no explicit capability checks or nonce checks present. If functionality is ever added that requires user interaction or modification of data, the current lack of these security measures could become a significant concern. The taint analysis showing zero flows is good, but this is contingent on the analysis covering all potential code paths, which might be limited given the zero entry points.
In conclusion, the plugin "html-block-with-highlighting" v1.0.0 currently exhibits a very secure profile due to its minimal attack surface and the absence of common vulnerabilities in its code and history. The developers appear to be following good practices where applicable. The primary weakness lies in the potential for future vulnerabilities if functionality is added without implementing proper authentication and authorization checks, given their current absence. This plugin is safe to use as is, but future development should be closely monitored for security implementations.
HTML Block with Highlighting Security Vulnerabilities
HTML Block with Highlighting Release Timeline
HTML Block with Highlighting Code Analysis
HTML Block with Highlighting Attack Surface
WordPress Hooks 1
Maintenance & Trust
HTML Block with Highlighting Maintenance & Trust
Maintenance Signals
Community Trust
HTML Block with Highlighting Alternatives
ACE HTML Block
ace-html-block
Registers a raw html block which uses the ACE Editor. Features include syntax highligting, line numbers, indentation, and HTML validation.
Enlighter – Customizable Syntax Highlighter
enlighter
All-in-one Syntax Highlighting solution. Full Gutenberg and Classic Editor integration. Graphical theme customizer. Based on EnlighterJS.
Preserved HTML Editor Markup Plus
preserved-html-editor-markup-plus
Preserves HTML and developer edits in HTML AND WYSIWYG tab. Supports inline scripts/css, JavaScript code blocks and HTML5 content editing
Contact Form 7 Syntax Highlighting
cf7-ace-syntax-highlighting
Adds syntax higlighting to the Contact Form 7 admin screens. Requires the Contact Form 7 plugin.
HTML Editor for Contact Form 7
cf7-coder
Add HTML editor to Contact Form 7 with code highlighter and extended form options.
HTML Block with Highlighting Developer Profile
1 plugin · 10 total installs
How We Detect HTML Block with Highlighting
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/html-block-with-highlighting/build/index.js/wp-content/plugins/html-block-with-highlighting/build/codemirror.css/wp-content/plugins/html-block-with-highlighting/build/codemirror-ayu-mirage.css/wp-content/plugins/html-block-with-highlighting/build/codemirror-show-hint.css/wp-content/plugins/html-block-with-highlighting/build/html-block-with-highlighting.css/wp-content/plugins/html-block-with-highlighting/build/index.jshtml-block-with-highlighting?ver=codemirror.css?ver=codemirror-ayu-mirage.css?ver=codemirror-show-hint.css?ver=html-block-with-highlighting.css?ver=