
Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options Security & Risk Analysis
wordpress.org/plugins/magic-content-box-liteAdvanced Gutenberg Blocks for Flexible Page Sections, Call to Action, Headers, Buttons, Shape Dividers, and Layout Options
Is Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options Safe to Use in 2026?
Generally Safe
Score 100/100Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "magic-content-box-lite" v1.1.3 indicates a strong security posture in several key areas. The absence of any detected dangerous functions, file operations, external HTTP requests, and the complete reliance on prepared statements for SQL queries demonstrate good development practices. Furthermore, all output is properly escaped, and the analysis reports no taint flows, suggesting a low risk of code injection or cross-site scripting vulnerabilities stemming from the code itself. The plugin also has no recorded vulnerability history, which is a positive indicator.
However, the data does reveal significant areas for concern. The plugin exhibits a complete lack of security checks at its entry points. With zero AJAX handlers, REST API routes, shortcodes, or cron events, there are no apparent mechanisms for authentication or authorization, or even nonce checks. This means that if any functionalities were to be added or discovered that could be triggered externally, they would be completely unprotected. While currently there is no attack surface with unauthenticated entry points, this fundamental absence of security controls is a major weakness. The vulnerability history being empty is a positive sign, but it does not negate the risks introduced by the lack of security checks within the code.
Key Concerns
- No nonce checks on potential entry points
- No capability checks on potential entry points
- Zero AJAX handlers without auth checks (potential future risk)
- Zero REST API routes without permission callbacks (potential future risk)
Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options Security Vulnerabilities
Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options Code Analysis
Output Escaping
Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options Attack Surface
WordPress Hooks 5
Maintenance & Trust
Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options Maintenance & Trust
Maintenance Signals
Community Trust
Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options Alternatives
Custom Call To Action block Plugin
custom-call-to-action-block
Custom Call To Action Gutenberg Block.
Primekit Blocks | Modern Blocks for Gutenberg
primekit-blocks
Enhance your WordPress site with custom Gutenberg blocks including Animated Text, Call to Action, Glass Card, and more.
Advanced Button for Block Editor
zolo-advanced-button
The Advanced Button block lets you design stylish, customizable WordPress buttons with layout controls, pre-made styles, and integrated icons.
Spectra Gutenberg Blocks – Website Builder for the Block Editor
ultimate-addons-for-gutenberg
Power-up Gutenberg with advanced blocks for faster website creation. Build your WordPress website effortlessly using powerful building blocks!
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
kadence-blocks
20+ AI-powered Gutenberg Blocks with endless options, enabling top-notch efficiency for high-performance dynamic website creation.
Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options Developer Profile
64 plugins · 96K total installs
How We Detect Magic Content & CTA Box Builder – Advanced Gutenberg Blocks for Flexible Page Sections, Headers, Buttons, Shape Dividers, and Layout Options
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/magic-content-box-lite/dist/blocks.style.build.css/wp-content/plugins/magic-content-box-lite/src/assets/fontawesome/css/all.css/wp-content/plugins/magic-content-box-lite/dist/blocks.build.jsmagic-content-box-lite/dist/blocks.style.build.css?ver=magic-content-box-lite/src/assets/fontawesome/css/all.css?ver=magic-content-box-lite/dist/blocks.build.js?ver=magic-content-box-lite/dist/blocks.editor.build.css?ver=HTML / DOM Fingerprints
magic-content-box-lite-wrapperdata-blockdata-block-typemagic_content_box_lite_editor_scriptmagic_content_box_lite_frontend_script