ShortBuild Security & Risk Analysis

wordpress.org/plugins/shortbuild

ShortBuild Beautiful ready-made Business Templates

1K active installs v1.6.15 PHP 7.4+ WP 5.6+ Updated Jan 17, 2025
callouthome-pageportfoliotestimonial
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is ShortBuild Safe to Use in 2026?

Generally Safe

Score 92/100

ShortBuild has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The shortbuild plugin v1.6.15 demonstrates a generally strong security posture with several good practices in place. The code shows a high percentage of properly escaped output and 100% of SQL queries utilize prepared statements, which are significant strengths. The absence of dangerous functions, file operations, and external HTTP requests further contributes to a reduced attack surface. The plugin also includes nonce and capability checks, indicating an awareness of common security vulnerabilities.

However, there is a notable concern regarding the plugin's entry points. Specifically, one AJAX handler is identified as unprotected, meaning it lacks authentication checks. This could allow unauthenticated users to interact with this functionality, potentially leading to vulnerabilities if not handled carefully. The lack of any recorded vulnerabilities in its history is a positive indicator, suggesting a mature and relatively secure development process. Despite this, the unprotected AJAX handler remains a key area of concern that requires attention for a fully secure implementation.

Key Concerns

  • Unprotected AJAX handler
Vulnerabilities
None known

ShortBuild Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

ShortBuild Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
260 escaped
Nonce Checks
1
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

98% escaped266 total outputs
Attack Surface
1 unprotected

ShortBuild Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_shortbuild_bu_getting_startedinc\init.php:47
WordPress Hooks 41
actioncustomize_registerinc\bagility\features\customizer.php:197
actioncustomize_registerinc\bagility\features\customizer.php:241
actioncustomize_registerinc\bagility\features\customizer.php:524
actioncustomize_registerinc\bagility\features\customizer.php:606
actioncustomize_registerinc\bagility\features\customizer.php:860
actioncustomize_registerinc\bagility\features\customizer.php:948
actioncustomize_registerinc\bagility\features\customizer.php:1054
actioncustomize_registerinc\bagility\features\customizer.php:1082
actioncustomize_registerinc\bagility\features\customizer.php:1220
actioncustomize_registerinc\bagility\features\customizer.php:1248
actionsbp_short_homepage_sectionsinc\bagility\sections\homepage.php:76
actionsbp_short_homepage_sectionsinc\bagility\sections\homepage.php:188
actionsbp_short_homepage_sectionsinc\bagility\sections\homepage.php:305
actionsbp_short_homepage_sectionsinc\bagility\sections\homepage.php:352
actionsbp_short_homepage_sectionsinc\bagility\sections\homepage.php:432
filteradvanced_import_demo_listsinc\init.php:45
filteradmin_menuinc\init.php:46
filteradmin_enqueue_scriptsinc\init.php:48
filteradmin_enqueue_scriptsinc\init.php:49
actionadvanced_import_replace_term_idsinc\init.php:52
actioncustomize_registerinc\short\features\customizer.php:154
actioncustomize_registerinc\short\features\customizer.php:187
actioncustomize_registerinc\short\features\customizer.php:366
actioncustomize_registerinc\short\features\customizer.php:412
actioncustomize_registerinc\short\features\customizer.php:696
actioncustomize_registerinc\short\features\customizer.php:780
actioncustomize_registerinc\short\features\customizer.php:1028
actioncustomize_registerinc\short\features\customizer.php:1112
actioncustomize_registerinc\short\features\customizer.php:1255
actioncustomize_registerinc\short\features\customizer.php:1283
actioncustomize_registerinc\short\features\customizer.php:1420
actioncustomize_registerinc\short\features\customizer.php:1447
actionsbp_short_homepage_sectionsinc\short\sections\homepage.php:70
actionsbp_short_homepage_sectionsinc\short\sections\homepage.php:150
actionsbp_short_homepage_sectionsinc\short\sections\homepage.php:260
actionsbp_short_homepage_sectionsinc\short\sections\homepage.php:376
actionsbp_short_homepage_sectionsinc\short\sections\homepage.php:423
actionsbp_short_homepage_sectionsinc\short\sections\homepage.php:512
actioninitshortbuild.php:75
actionadmin_enqueue_scriptsshortbuild.php:80
actioncustomize_preview_initshortbuild.php:91
Maintenance & Trust

ShortBuild Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJan 17, 2025
PHP min version7.4
Downloads53K

Community Trust

Rating0/100
Number of ratings0
Active installs1K
Developer Profile

ShortBuild Developer Profile

themeansar

63 plugins · 101K total installs

97
trust score
Avg Security Score
96/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect ShortBuild

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/shortbuild/assets/css/customizer.css/wp-content/plugins/shortbuild/assets/js/customizer.js/wp-content/plugins/shortbuild/assets/shortbuild-bu.css/wp-content/plugins/shortbuild/assets/shortbuild-bu.js
Script Paths
/wp-content/plugins/shortbuild/assets/js/customizer.js/wp-content/plugins/shortbuild/assets/shortbuild-bu.js
Version Parameters
shortbuild/assets/css/customizer.css?ver=shortbuild/assets/js/customizer.js?ver=shortbuild-bu.css?ver=shortbuild-bu.js?ver=

HTML / DOM Fingerprints

CSS Classes
news-excerpt-btn
HTML Comments
<!-- Translators: %s is the name of current theme. --><!-- Clicking the button below will install and activate the Advanced Import plugin. -->
Data Attributes
data-namedata-slug
JS Globals
shortbuild
Shortcode Output
<div class="news-excerpt-btn"><a href="
FAQ

Frequently Asked Questions about ShortBuild