
Mobile Blocks Security & Risk Analysis
wordpress.org/plugins/mobile-pagesThe Mobile Blocks plugin makes it easy to create awesome mobile pages for WordPress using the Gutenberg Block Editor.
Is Mobile Blocks Safe to Use in 2026?
Use With Caution
Score 63/100Mobile Blocks has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "mobile-pages" plugin v1.0.2 presents a mixed security posture. While it utilizes nonces and capability checks to a moderate degree, and the majority of its output is properly escaped, several significant concerns are evident. The presence of an unprotected AJAX handler creates a direct attack vector. Furthermore, the taint analysis revealing flows with unsanitized paths, though not categorized as critical or high, suggests potential for vulnerabilities if these paths are exploited. The plugin's vulnerability history is a major red flag, with one unpatched medium severity CVE related to Cross-Site Scripting, and the last vulnerability being quite recent. This indicates a pattern of past security weaknesses and a current, unresolved risk. The plugin's strengths lie in its relatively small attack surface for entry points and its attempt at securing some operations with nonces and capability checks. However, the unprotected AJAX handler and the history of unpatched vulnerabilities significantly elevate the risk profile, demanding immediate attention.
Key Concerns
- Unprotected AJAX handler
- Flows with unsanitized paths
- Unpatched medium CVE
- SQL queries not always prepared
- Output not always escaped
- Bundled Freemius library v1.0
Mobile Blocks Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Mobile Pages <= 1.0.2 - Reflected Cross-Site Scripting
Mobile Blocks Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Mobile Blocks Attack Surface
AJAX Handlers 1
WordPress Hooks 28
Maintenance & Trust
Mobile Blocks Maintenance & Trust
Maintenance Signals
Community Trust
Mobile Blocks Alternatives
Classic Editor
classic-editor
Enables the previous "classic" editor and the old-style Edit Post screen with TinyMCE, Meta Boxes, etc. Supports all plugins that extend this screen.
Starter Templates – AI-Powered Templates for Elementor & Gutenberg
astra-sites
The growing library of 300+ ready-to-use templates that work with all WordPress themes including Astra, Hello, OceanWP, GeneratePress and more
Classic Widgets
classic-widgets
Enables the previous "classic" widgets settings screens in Appearance - Widgets and the Customizer. Disables the block editor from managing widgets.
Advanced Editor Tools
tinymce-advanced
Extends and enhances the block editor (Gutenberg) and the classic editor (TinyMCE).
Spectra Gutenberg Blocks – Website Builder for the Block Editor
ultimate-addons-for-gutenberg
Power-up Gutenberg with advanced blocks for faster website creation. Build your WordPress website effortlessly using powerful building blocks!
Mobile Blocks Developer Profile
9 plugins · 1K total installs
How We Detect Mobile Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mobile-pages/src/css/admin-page.css/wp-content/plugins/mobile-pages/src/css/mobile-pages.css/wp-content/plugins/mobile-pages/src/js/admin-page.js/wp-content/plugins/mobile-pages/src/js/mobile-pages.js/wp-content/plugins/mobile-pages/src/js/admin-page.js/wp-content/plugins/mobile-pages/src/js/mobile-pages.jsmobile-pages/src/css/admin-page.css?ver=mobile-pages/src/css/mobile-pages.css?ver=mobile-pages/src/js/admin-page.js?ver=mobile-pages/src/js/mobile-pages.js?ver=HTML / DOM Fingerprints
gbmp-textgbmp-mobile-firstgbmp-mob1-regexgbmp-mob2-regexgbmp-mob-ex-regexgbmp_nonce