
ShortBuild Security & Risk Analysis
wordpress.org/plugins/shortbuildShortBuild Beautiful ready-made Business Templates
Is ShortBuild Safe to Use in 2026?
Generally Safe
Score 92/100ShortBuild has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The shortbuild plugin v1.6.15 demonstrates a generally strong security posture with several good practices in place. The code shows a high percentage of properly escaped output and 100% of SQL queries utilize prepared statements, which are significant strengths. The absence of dangerous functions, file operations, and external HTTP requests further contributes to a reduced attack surface. The plugin also includes nonce and capability checks, indicating an awareness of common security vulnerabilities.
However, there is a notable concern regarding the plugin's entry points. Specifically, one AJAX handler is identified as unprotected, meaning it lacks authentication checks. This could allow unauthenticated users to interact with this functionality, potentially leading to vulnerabilities if not handled carefully. The lack of any recorded vulnerabilities in its history is a positive indicator, suggesting a mature and relatively secure development process. Despite this, the unprotected AJAX handler remains a key area of concern that requires attention for a fully secure implementation.
Key Concerns
- Unprotected AJAX handler
ShortBuild Security Vulnerabilities
ShortBuild Code Analysis
Output Escaping
ShortBuild Attack Surface
AJAX Handlers 1
WordPress Hooks 41
Maintenance & Trust
ShortBuild Maintenance & Trust
Maintenance Signals
Community Trust
ShortBuild Alternatives
Theme Demo Importer and Patterns Library for CozyThemes – Cozy Essential Addons
cozy-essential-addons
Cozy Essential Addons is the free WordPress plugin for Custom post type and provides basic skeletal for custom post type list.
CPO Content Types
cpo-content-types
Add support for special content types in your website, such as a portfolio, features, and slides.
Walker Core
walker-core
Walker Core is the companion plugin for WalkerWP Themes, which provides core functionality and custom post type for the themes.
Pluglab
pluglab
Adds customizer settings and controls for Unibird Tech Theme.
Home Improvement Companion
home-improvement-companion
This plugin is a must-have plugin offering powerful features to fine tune home improvement and renovation service businesses websites.
ShortBuild Developer Profile
63 plugins · 101K total installs
How We Detect ShortBuild
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/shortbuild/assets/css/customizer.css/wp-content/plugins/shortbuild/assets/js/customizer.js/wp-content/plugins/shortbuild/assets/shortbuild-bu.css/wp-content/plugins/shortbuild/assets/shortbuild-bu.js/wp-content/plugins/shortbuild/assets/js/customizer.js/wp-content/plugins/shortbuild/assets/shortbuild-bu.jsshortbuild/assets/css/customizer.css?ver=shortbuild/assets/js/customizer.js?ver=shortbuild-bu.css?ver=shortbuild-bu.js?ver=HTML / DOM Fingerprints
news-excerpt-btn<!--
Translators: %s is the name of current theme.
--><!-- Clicking the button below will install and activate the Advanced Import plugin. -->data-namedata-slugshortbuild<div class="news-excerpt-btn"><a href="