
Surbma | Divi Extras Security & Risk Analysis
wordpress.org/plugins/surbma-divi-extrasUseful modifications for the Divi Theme.
Is Surbma | Divi Extras Safe to Use in 2026?
Generally Safe
Score 85/100Surbma | Divi Extras has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of surbma-divi-extras v5.1 reveals an exceptionally clean codebase with no detected attack surface, dangerous functions, file operations, or external HTTP requests. All SQL queries are properly prepared, and all output is correctly escaped, indicating strong adherence to secure coding practices. The absence of any recorded vulnerabilities or CVEs in its history further strengthens this positive security posture, suggesting a well-maintained and thoroughly vetted plugin.
While the current version appears highly secure, the complete lack of any capability checks or nonce checks across its zero entry points is a notable observation. This could imply that the plugin is designed to be purely decorative or rely entirely on its parent theme (Divi) for any necessary authorization, which is generally a less robust security approach if there were any hidden entry points or future functionalities. However, based on the provided data, there are no immediate exploitable vulnerabilities. The plugin exhibits excellent immediate security but lacks explicit built-in authorization mechanisms, which might be a concern for future development or unforeseen interactions.
In conclusion, surbma-divi-extras v5.1 presents an excellent security profile based on the provided static analysis and vulnerability history. Its strengths lie in its zero attack surface, safe handling of data, and lack of historical vulnerabilities. The sole area for potential consideration, though not a direct vulnerability based on this data, is the absence of explicit capability and nonce checks, which could be a point of improvement for future robustness.
Key Concerns
- No nonce checks found
- No capability checks found
Surbma | Divi Extras Security Vulnerabilities
Surbma | Divi Extras Code Analysis
Output Escaping
Surbma | Divi Extras Attack Surface
WordPress Hooks 4
Maintenance & Trust
Surbma | Divi Extras Maintenance & Trust
Maintenance Signals
Community Trust
Surbma | Divi Extras Alternatives
Surbma | Divi Remove Project CPT & Taxonomies
surbma-divi-remove-project-cpt
Removes the Project Custom Post Type from Divi theme.
Surbma | Divi Project Shortcodes
surbma-divi-project-shortcodes
Shortcodes to display Divi's Project elements, like category and tag list.
Supreme Modules Lite – Divi Theme, Extra Theme and Divi Builder
supreme-modules-for-divi
Divi Supreme lite plugin enhances the experience and features found on Divi and extend with custom creative modules to help you build amazing websites …
Shortcodes for Divi
shortcodes-for-divi
Shortcodes for Divi by WP Zone Allows you to use Divi Shortcodes everywhere where text comes.
Squad Modules Lite – Advanced Divi Modules for Divi Theme, Extra Theme and Divi Builder
squad-modules-for-divi
The Essential Divi plugin, offering 25+ stunning free modules like Advanced Divider, Flip box, and more.
Surbma | Divi Extras Developer Profile
27 plugins · 30K total installs
How We Detect Surbma | Divi Extras
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/surbma-divi-extras/css/surbma-divi-extras.csssurbma-divi-extras/css/surbma-divi-extras.css?ver=3.2.2HTML / DOM Fingerprints
logo_containerlogo_helper