
Uix Shortcodes Security & Risk Analysis
wordpress.org/plugins/uix-shortcodesUix Shortcodes brings an amazing set of beautiful and useful elements to your site that lets you do nifty things with very little effort.
Is Uix Shortcodes Safe to Use in 2026?
Generally Safe
Score 94/100Uix Shortcodes has a strong security track record. Known vulnerabilities have been patched promptly.
The uix-shortcodes plugin, version 2.0.5, presents a mixed security profile. On the positive side, the plugin demonstrates good practices by implementing capability checks on a significant number of entry points and appears to have no directly unprotected AJAX handlers or REST API routes. The taint analysis shows no critical or high-severity unsanitized flows, and the majority of output is properly escaped, indicating a conscious effort to prevent common web vulnerabilities. However, the historical vulnerability data is a significant concern. The presence of three known CVEs, with two classified as high severity and one as medium, suggests a history of exploitable security flaws, even if they are currently patched. The common types of past vulnerabilities, Cross-site Scripting and Code Injection, are serious and can lead to full site compromise.
Key Concerns
- High severity vulnerabilities in history (2)
- Medium severity vulnerabilities in history (1)
- SQL queries not using prepared statements (2)
- Bundled library (TinyMCE)
Uix Shortcodes Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
Uix Shortcodes <= 2.0.4 - Authenticated (Contributor+) Stored Cross-Site Scripting
Uix Shortcodes <= 2.0.3 - Unauthenticated Arbitrary Shortcode Execution
Uix Shortcodes – Compatible with Gutenberg <= 1.9.9 - Unauthenticated Arbitrary Shortcode Execution
Uix Shortcodes Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Uix Shortcodes Attack Surface
AJAX Handlers 2
Shortcodes 40
WordPress Hooks 37
Maintenance & Trust
Uix Shortcodes Maintenance & Trust
Maintenance Signals
Community Trust
Uix Shortcodes Alternatives
Saiy2k Nostr Components
saiy2k-nostr-components
Gutenberg blocks and shortcodes for Nostr web components. Display Nostr zap buttons, follow buttons, posts, profiles.
oik
oik
Over 80 advanced, powerful shortcodes, and 9 blocks for displaying the content of your WordPress website.
Shortcode Preview Block
shortcode-with-preview-block
Shows preview of any shortcode on editor side. It renders shortcode in the editor side so editor does not need to visit front side.
Blocks to Shortcode – Use blocks everywhere: in page templates, Elementor, etc.
blocks-to-shortcode
Easily convert blocks into shortcodes and reuse them anywhere on your site - in posts, pages, widgets, templates, and page builders like Elementor.
Dev Content Blocks
dev-content-blocks
Content blocks for global content, with revisions. Use HTML without formatting being broken. Not only for devs.
Uix Shortcodes Developer Profile
6 plugins · 540 total installs
How We Detect Uix Shortcodes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/uix-shortcodes/assets/add-ons/piechart/jquery.easypiechart.min.js/wp-content/plugins/uix-shortcodes/assets/add-ons/prettyPhoto/jquery.prettyPhoto.js/wp-content/plugins/uix-shortcodes/assets/add-ons/prettyPhoto/jquery.prettyPhoto.css/wp-content/plugins/uix-shortcodes/assets/add-ons/muuri/muuri.min.js/wp-content/plugins/uix-shortcodes/css/shortcodes.min.css/wp-content/plugins/uix-shortcodes/css/shortcodes-rtl.min.css/wp-content/plugins/uix-shortcodes/js/shortcodes.min.js/wp-content/plugins/uix-shortcodes/shortcodes/editor/style.min.css/wp-content/plugins/uix-shortcodes/js/shortcodes.min.jsuix-shortcodes/css/shortcodes.min.css?ver=uix-shortcodes/css/shortcodes-rtl.min.css?ver=uix-shortcodes/js/shortcodes.min.js?ver=HTML / DOM Fingerprints
uix_shortcodesuix-shortcodes-containerwp_plug_uixsc_root_path[uix_shortcodes[uix_sc_module_container[uix_sc_module_pricing_col3[uix_sc_module_pricing_col4