Template Widget for Beaver Builder Security & Risk Analysis

wordpress.org/plugins/template-widget-for-beaver-builder

Adds a widget to display Beaver Builder saved templates in sidebars, footer or any other area.

100 active installs v1.0.1 PHP + WP 3.6+ Updated Feb 19, 2017
beaver-builderbeaver-builder-addonbeaver-builder-templatebeaver-builder-widgettemplate-widget
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Template Widget for Beaver Builder Safe to Use in 2026?

Generally Safe

Score 85/100

Template Widget for Beaver Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The static analysis of the "template-widget-for-beaver-builder" plugin v1.0.1 indicates a generally positive security posture. The absence of AJAX handlers, REST API routes, shortcodes, and cron events, particularly those lacking authentication, significantly limits the plugin's attack surface. The code also demonstrates good practices by using prepared statements for all SQL queries and avoiding dangerous functions, file operations, and external HTTP requests. The vulnerability history is clean, with no known CVEs, which suggests a history of secure development or diligent patching by the developers. However, a significant concern arises from the low percentage of properly escaped output (13%). This indicates that a substantial portion of user-supplied or dynamic data displayed by the plugin may not be adequately sanitized, leaving it vulnerable to Cross-Site Scripting (XSS) attacks. The lack of nonce checks and capability checks, while not directly leading to immediate critical vulnerabilities based on the current analysis, are fundamental security measures that should be implemented, especially if the plugin's functionality evolves to include user interactions or administrative actions. The absence of taint analysis results is also notable; while it might indicate no critical flows were found, it could also mean the analysis was not performed thoroughly enough or the plugin's design avoids complex data flows that would trigger taint analysis. Overall, the plugin exhibits strengths in limiting its attack surface and handling database interactions securely, but the widespread output escaping deficiency and missing fundamental security checks present a notable risk that requires attention.

Key Concerns

  • Low output escaping percentage
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Template Widget for Beaver Builder Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Template Widget for Beaver Builder Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
21
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

13% escaped24 total outputs
Attack Surface

Template Widget for Beaver Builder Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionwidgets_initclasses\class-template-widget.php:152
Maintenance & Trust

Template Widget for Beaver Builder Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedFeb 19, 2017
PHP min version
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

Template Widget for Beaver Builder Developer Profile

IdeaBox Creations

8 plugins · 112K total installs

71
trust score
Avg Security Score
88/100
Avg Patch Time
201 days
View full developer profile
Detection Fingerprints

How We Detect Template Widget for Beaver Builder

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/template-widget-for-beaver-builder/classes/class-template-widget.php/wp-content/plugins/template-widget-for-beaver-builder/template-widget-for-beaver-builder.php
Version Parameters
template-widget-for-beaver-builder/template-widget-for-beaver-builder.php?ver=1.0.1template-widget-for-beaver-builder/classes/class-template-widget.php?ver=1.0.1

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Template Widget for Beaver Builder