RT Elementor Widgets Security & Risk Analysis

wordpress.org/plugins/rt-elementor-widgets

Adds new Widgets that are specifically designed to be used in conjunction with the Elementor Page Builder.

60 active installs v1.0.0 PHP + WP 5.0+ Updated Mar 16, 2021
elementorwidgetswoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is RT Elementor Widgets Safe to Use in 2026?

Generally Safe

Score 85/100

RT Elementor Widgets has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The static analysis of rt-elementor-widgets v1.0.0 reveals a generally positive security posture. The plugin reports zero AJAX handlers, REST API routes, shortcodes, or cron events, indicating a very small attack surface. Critically, all SQL queries are properly prepared, and a high percentage (90%) of output is escaped, significantly mitigating common web vulnerabilities. The absence of dangerous functions, file operations, external HTTP requests, and reported taint flows further strengthens this assessment.

However, a notable concern is the complete lack of nonce checks and capability checks. While the current attack surface is zero, this absence leaves the plugin vulnerable if new entry points are introduced in future updates without proper security controls. The vulnerability history is clean, with no known CVEs, which is a strong positive signal. The plugin appears to follow good practices in its current implementation, but the lack of essential security checks is a weakness that could be exploited if the plugin's functionality expands or if new vulnerabilities are discovered.

In conclusion, rt-elementor-widgets v1.0.0 presents a low immediate risk due to its minimal attack surface and strong adherence to secure coding practices for SQL and output escaping. The clean vulnerability history is commendable. The primary area for improvement lies in implementing nonce and capability checks to ensure robust security against potential future threats, especially as the plugin evolves.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • 10% of output not properly escaped
Vulnerabilities
None known

RT Elementor Widgets Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

RT Elementor Widgets Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
55 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

90% escaped61 total outputs
Attack Surface

RT Elementor Widgets Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actioninitrt-elementor-widgets.php:60
actioninitrt-elementor-widgets.php:62
actioninitrt-elementor-widgets.php:64
actionplugins_loadedrt-elementor-widgets.php:66
actionelementor/theme/register_locationsrt-elementor-widgets.php:69
actionelementor/initrt-elementor-widgets.php:71
actionelementor/widgets/widgets_registeredrt-elementor-widgets.php:73
actionelementor/frontend/after_register_scriptsrt-elementor-widgets.php:76
actionelementor/frontend/after_register_stylesrt-elementor-widgets.php:79
Maintenance & Trust

RT Elementor Widgets Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedMar 16, 2021
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs60
Developer Profile

RT Elementor Widgets Developer Profile

Rigorous Themes

4 plugins · 90 total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect RT Elementor Widgets

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rt-elementor-widgets/assets/css/owl.carousel.css/wp-content/plugins/rt-elementor-widgets/assets/css/owl.theme.css/wp-content/plugins/rt-elementor-widgets/assets/css/style.css/wp-content/plugins/rt-elementor-widgets/assets/js/counter.js/wp-content/plugins/rt-elementor-widgets/assets/js/post-carousel.js/wp-content/plugins/rt-elementor-widgets/assets/js/testimonial.js/wp-content/plugins/rt-elementor-widgets/assets/js/woo-carousel.js/wp-content/plugins/rt-elementor-widgets/assets/js/owl.carousel.js
Script Paths
/wp-content/plugins/rt-elementor-widgets/assets/js/owl.carousel.js/wp-content/plugins/rt-elementor-widgets/assets/js/counter.js/wp-content/plugins/rt-elementor-widgets/assets/js/testimonial.js/wp-content/plugins/rt-elementor-widgets/assets/js/post-carousel.js/wp-content/plugins/rt-elementor-widgets/assets/js/woo-carousel.js

HTML / DOM Fingerprints

CSS Classes
rt-elements
FAQ

Frequently Asked Questions about RT Elementor Widgets