Tableberg – Simple Gutenberg Table Block Security & Risk Analysis

wordpress.org/plugins/tableberg

Table Block For the Block Editor. Craft Beautiful Tables With Ease.

2K active installs v0.6.14 PHP 7.0+ WP 6.1+ Updated Feb 20, 2026
amazon-affiliatecomparison-tablesdata-visualizationresponsive-tabletable
98
A · Safe
CVEs total2
Unpatched0
Last CVEDec 8, 2025
Safety Verdict

Is Tableberg – Simple Gutenberg Table Block Safe to Use in 2026?

Generally Safe

Score 98/100

Tableberg – Simple Gutenberg Table Block has a strong security track record. Known vulnerabilities have been patched promptly.

2 known CVEsLast CVE: Dec 8, 2025Updated 1mo ago
Risk Assessment

The Tableberg plugin v0.6.14 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and a high percentage of properly escaped output. It also includes nonce and capability checks on its entry points. The absence of critical or high-severity taint flows and dangerous functions is also a positive indicator.

However, a significant concern is the presence of one AJAX handler that lacks authorization checks. This creates a direct entry point for unauthenticated users to potentially interact with the plugin in unintended ways, leading to a security risk. The plugin's history of two medium-severity vulnerabilities, including missing authorization and cross-site scripting, is also noteworthy. Although these are not currently unpatched, they highlight past security weaknesses that require ongoing vigilance.

In conclusion, while Tableberg v0.6.14 shows strengths in its handling of database interactions and output escaping, the unprotected AJAX handler and past vulnerability patterns introduce areas of concern. The plugin is generally well-coded but requires careful attention to its authorization mechanisms for all entry points to mitigate potential risks.

Key Concerns

  • Unprotected AJAX handler
  • Medium severity vulnerabilities in history
  • Bundled Freemius v1.0 library
Vulnerabilities
2

Tableberg – Simple Gutenberg Table Block Security Vulnerabilities

CVEs by Year

2 CVEs in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2025-66096medium · 4.3Missing Authorization

Table Block by Tableberg <= 0.6.9 - Missing Authorization

Dec 8, 2025 Patched in 0.6.10 (5d)
CVE-2025-32171medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Table Block by Tableberg <= 0.6.10 - Authenticated (Contributor+) Stored Cross-Site Scripting

Apr 4, 2025 Patched in 0.6.12 (246d)
Code Analysis
Analyzed Mar 16, 2026

Tableberg – Simple Gutenberg Table Block Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
43 escaped
Nonce Checks
3
Capability Checks
3
File Operations
5
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

Output Escaping

93% escaped46 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
update_toggle_control (includes\Admin\Tableberg_Admin.php:112)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

Tableberg – Simple Gutenberg Table Block Attack Surface

Entry Points3
Unprotected1

AJAX Handlers 3

authwp_ajax_TablebergReviewNoticeHideincludes\Admin\Tableberg_Admin.php:70
authwp_ajax_tableberg_toggle_controlincludes\Admin\Tableberg_Admin.php:78
authwp_ajax_tableberg_block_propertiesincludes\Admin\Tableberg_Admin.php:79
WordPress Hooks 17
actionadmin_menuincludes\Admin\Tableberg_Admin.php:67
actionadmin_enqueue_scriptsincludes\Admin\Tableberg_Admin.php:68
actionadmin_noticesincludes\Admin\Tableberg_Admin.php:69
filtertableberg/filter/admin_settings_menu_dataincludes\Admin\Tableberg_Admin.php:71
actionadmin_noticesincludes\Admin_Notices_Manager.php:36
actionwp_footerincludes\Assets.php:34
actioninitincludes\Blocks\Button.php:23
actioninitincludes\Blocks\Cell.php:25
actioninitincludes\Blocks\Image.php:21
actioninitincludes\Blocks\Table.php:28
filtertableberg/filter/admin_settings_menu_dataincludes\Version_Control.php:50
filterupgrader_package_optionsincludes\Version_Control.php:103
filterupgrader_package_optionsincludes\Version_Sync_Base.php:178
filterupgrader_pre_downloadincludes\Version_Sync_Manager.php:67
actioninittableberg.php:103
actioninittableberg.php:139
actionrest_api_inittableberg.php:152
Maintenance & Trust

Tableberg – Simple Gutenberg Table Block Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 20, 2026
PHP min version7.0
Downloads34K

Community Trust

Rating96/100
Number of ratings41
Active installs2K
Developer Profile

Tableberg – Simple Gutenberg Table Block Developer Profile

Imtiaz Rayhan

7 plugins · 16K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
313 days
View full developer profile
Detection Fingerprints

How We Detect Tableberg – Simple Gutenberg Table Block

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/tableberg/includes/assets/js/frontend.js/wp-content/plugins/tableberg/build/tableberg.build.js/wp-content/plugins/tableberg/build/tableberg-editor-style.css/wp-content/plugins/tableberg/build/tableberg-frontend-style.css/wp-content/plugins/tableberg/includes/Admin/assets/tableberg-admin.build.js
Script Paths
includes/assets/js/frontend.jsbuild/tableberg.build.jsincludes/Admin/assets/tableberg-admin.build.js
Version Parameters
ver=0.6.11ver=0.6.14

HTML / DOM Fingerprints

CSS Classes
tableberg-wrapper
Data Attributes
data-tableberg-block-id
JS Globals
tablebergPatternstablebergPatternCategoriestablebergApp
REST Endpoints
/wp-json/tableberg/v1/patterns/custom-fields
FAQ

Frequently Asked Questions about Tableberg – Simple Gutenberg Table Block