Timeline Module for Beaver Builder Security & Risk Analysis

wordpress.org/plugins/timeline-for-beaver-builder

URL : https://wordpress.org/plugins/timeline-for-beaver-builder Timeline Module for Beaver Builder A quick and easy to use timeline plugin to build cr …

2K active installs v1.1.5 PHP + WP 4.4+ Updated Jan 19, 2026
bb-timelinebeaver-builderdrag-and-drop-timelinepage-builder-timelinetimeline-module-for-beaver-builder
99
A · Safe
CVEs total1
Unpatched0
Last CVEJul 9, 2024
Safety Verdict

Is Timeline Module for Beaver Builder Safe to Use in 2026?

Generally Safe

Score 99/100

Timeline Module for Beaver Builder has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Jul 9, 2024Updated 2mo ago
Risk Assessment

The static analysis for timeline-for-beaver-builder v1.1.5 reveals a generally strong security posture with no apparent vulnerabilities detected in the examined code signals. The absence of dangerous functions, reliance on prepared statements for all SQL queries, and 100% proper output escaping are excellent practices. Furthermore, the lack of file operations and external HTTP requests simplifies the attack surface. The total absence of AJAX handlers, REST API routes, shortcodes, and cron events with accessible entry points significantly limits potential exploit vectors. However, the plugin's history shows one known medium vulnerability (Cross-site Scripting) patched on July 9th, 2024. While this specific version appears to have addressed past issues, the existence of a previous XSS vulnerability, even if patched, suggests a potential for such issues to arise if not meticulously reviewed. The current analysis does not indicate any taint flows or unprotected entry points, which is a positive sign for this version.

Key Concerns

  • Previously patched medium vulnerability (XSS)
Vulnerabilities
1

Timeline Module for Beaver Builder Security Vulnerabilities

CVEs by Year

1 CVE in 2024
2024
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2024-37919medium · 4.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Timeline Module for Beaver Builder <= 1.1.3 - Authenticated (Editor+) Stored Cross-Site Scripting

Jul 9, 2024 Patched in 1.1.4 (31d)
Code Analysis
Analyzed Mar 16, 2026

Timeline Module for Beaver Builder Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
457 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped457 total outputs
Attack Surface

Timeline Module for Beaver Builder Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actioninittimeline-for-beaver-builder.php:31
actioninittimeline-for-beaver-builder.php:32
actionadmin_noticestimeline-for-beaver-builder.php:44
actionnetwork_admin_noticestimeline-for-beaver-builder.php:45
Maintenance & Trust

Timeline Module for Beaver Builder Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 19, 2026
PHP min version
Downloads51K

Community Trust

Rating92/100
Number of ratings10
Active installs2K
Developer Profile

Timeline Module for Beaver Builder Developer Profile

Pratik Chaskar

16 plugins · 14K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
131 days
View full developer profile
Detection Fingerprints

How We Detect Timeline Module for Beaver Builder

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Timeline Module for Beaver Builder