Make Column Clickable for Elementor Security & Risk Analysis

wordpress.org/plugins/make-column-clickable-elementor

Make entire columns, sections and containers clickable in Elementor — improve navigation and user experience with just one link.

100K active installs v1.6.2 PHP 7.4+ WP 5.0+ Updated Sep 21, 2025
columncontainerelementorpage-buildersection
99
A · Safe
CVEs total1
Unpatched0
Last CVESep 22, 2025
Safety Verdict

Is Make Column Clickable for Elementor Safe to Use in 2026?

Generally Safe

Score 99/100

Make Column Clickable for Elementor has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Sep 22, 2025Updated 6mo ago
Risk Assessment

The 'make-column-clickable-elementor' plugin version 1.6.2 demonstrates a generally good security posture based on the static analysis. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and the proper escaping of all outputs are significant strengths. Furthermore, the lack of file operations, external HTTP requests, and the absence of any taint analysis findings for unsanitized paths suggest robust code hygiene.

However, the plugin has a history of one known CVE, which was a medium-severity Cross-Site Scripting (XSS) vulnerability. While this vulnerability is currently patched (as indicated by 'Currently unpatched: 0'), it highlights a past weakness in input handling or output neutralization, even if the static analysis doesn't currently reveal any such flaws in this specific version. The plugin also has zero capability checks and zero nonce checks, which is a concern for any plugin that might interact with user-submitted data, as it increases the potential attack surface if new entry points are introduced or if existing ones are inadvertently exposed.

In conclusion, the plugin exhibits strong secure coding practices in its current state, with no apparent vulnerabilities or critical code signals. The primary weakness lies in the historical XSS vulnerability, which, despite being patched, suggests a potential for such issues if not meticulously maintained. The lack of capability and nonce checks, while not immediately exploitable based on the provided data, represents a missed opportunity for layered security and should be addressed to further harden the plugin.

Key Concerns

  • Historical medium severity CVE (XSS)
  • No nonce checks on potential entry points
  • No capability checks on potential entry points
Vulnerabilities
1

Make Column Clickable for Elementor Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-59592medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Make Column Clickable Elementor <= 1.6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting

Sep 22, 2025 Patched in 1.6.1 (5d)
Code Analysis
Analyzed Mar 16, 2026

Make Column Clickable for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

Make Column Clickable for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
actionwp_enqueue_scriptsincludes\class-column-clickable.php:21
actionelementor/element/column/section_advanced/after_section_endincludes\class-column-clickable.php:23
actionelementor/frontend/column/before_renderincludes\class-column-clickable.php:25
actionelementor/element/section/section_advanced/after_section_endincludes\class-column-clickable.php:27
actionelementor/frontend/section/before_renderincludes\class-column-clickable.php:29
actionelementor/element/container/section_layout/after_section_endincludes\class-column-clickable.php:31
actionelementor/frontend/container/before_renderincludes\class-column-clickable.php:33
actionplugins_loadedmake-column-clickable-elementor.php:112
Maintenance & Trust

Make Column Clickable for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedSep 21, 2025
PHP min version7.4
Downloads755K

Community Trust

Rating98/100
Number of ratings53
Active installs100K
Developer Profile

Make Column Clickable for Elementor Developer Profile

Fernando Acosta

7 plugins · 109K total installs

92
trust score
Avg Security Score
89/100
Avg Patch Time
5 days
View full developer profile
Detection Fingerprints

How We Detect Make Column Clickable for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/make-column-clickable-elementor/assets/js/make-column-clickable.js
Version Parameters
make-column-clickable-elementor/assets/js/make-column-clickable.js?ver=

HTML / DOM Fingerprints

CSS Classes
make-column-clickable-elementor
Data Attributes
data-column-clickabledata-column-clickable-blank
FAQ

Frequently Asked Questions about Make Column Clickable for Elementor