
Fields ACF & SCF for Elementor and Divi Security & Risk Analysis
wordpress.org/plugins/lknscf-extendedFields ACF & SCF for Elementor and Divi.
Is Fields ACF & SCF for Elementor and Divi Safe to Use in 2026?
Generally Safe
Score 100/100Fields ACF & SCF for Elementor and Divi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'lknscf-extended' v2.1.3 exhibits a generally strong security posture based on the provided static analysis. The code demonstrates excellent practices by using prepared statements for all SQL queries and properly escaping all output. The absence of file operations and external HTTP requests further reduces potential attack vectors. A significant strength is the complete lack of recorded vulnerabilities and CVEs, indicating a history of secure development and maintenance.
However, there is a notable concern regarding the attack surface. The analysis identifies one AJAX handler that lacks authentication checks. This unprotected entry point presents a direct risk, as it could potentially be exploited by unauthenticated users to trigger unintended actions or access sensitive functionality. While the taint analysis shows no detected flows, this doesn't entirely negate the risk of the unprotected AJAX handler, as taint analysis may not cover all scenarios or types of vulnerabilities. The plugin also doesn't appear to implement capability checks, which, in conjunction with the unprotected AJAX handler, could allow broader unauthorized access.
In conclusion, 'lknscf-extended' v2.1.3 is strong in its handling of data and general code security. The historical absence of vulnerabilities is a positive indicator. The primary weakness lies in the unprotected AJAX endpoint, which requires immediate attention to mitigate potential security risks. Implementing proper authentication and authorization for this handler is crucial to fortify the plugin's security.
Key Concerns
- Unprotected AJAX handler
- Missing capability checks
Fields ACF & SCF for Elementor and Divi Security Vulnerabilities
Fields ACF & SCF for Elementor and Divi Release Timeline
Fields ACF & SCF for Elementor and Divi Code Analysis
Output Escaping
Fields ACF & SCF for Elementor and Divi Attack Surface
AJAX Handlers 1
Shortcodes 2
WordPress Hooks 14
Maintenance & Trust
Fields ACF & SCF for Elementor and Divi Maintenance & Trust
Maintenance Signals
Community Trust
Fields ACF & SCF for Elementor and Divi Alternatives
CT Divi ACF Masonry Gallery
ct-acf-gallery-for-divi
Add a new module to the Divi collection to show ACF Gallery field images
Social Feed Gallery
insta-gallery
Formerly known as "Instagram Feed", this is the best plugin for displaying Instagram feeds on WordPress. It also supports Instagram reels.
ACF Photo Gallery Field
navz-photo-gallery
A lightweight extension of Advanced Custom Field (ACF) that adds Photo Gallery field to any post/pages on your WordPress website.
Table Field Add-on for ACF and SCF
advanced-custom-fields-table-field
A Table Field Add-on for the Advanced Custom Fields and Secure Custom Fields Plugin.
Premium Portfolio Features for Phlox theme
auxin-portfolio
Showcase your projects beautifully in Phlox theme
Fields ACF & SCF for Elementor and Divi Developer Profile
20 plugins · 7K total installs
How We Detect Fields ACF & SCF for Elementor and Divi
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lknscf-extended/Admin/css/lknscfExtendedAdmin.css/wp-content/plugins/lknscf-extended/Admin/js/lkn-gallery-script.js/wp-content/plugins/lknscf-extended/Admin/js/lkn-gallery-script.jslknscf-extended/Admin/css/lknscfExtendedAdmin.css?ver=lknscf-extended/Admin/js/lkn-gallery-script.js?ver=HTML / DOM Fingerprints
window.lknscfGlobal