
Master Blocks – Ultimate Gutenberg Blocks for Marketers Security & Risk Analysis
wordpress.org/plugins/ultimate-blocks-for-gutenbergMaster Blocks is a powerful WordPress Gutenberg blocks plugin that helps you to create beautiful pages in default WordPress Editor.
Is Master Blocks – Ultimate Gutenberg Blocks for Marketers Safe to Use in 2026?
Generally Safe
Score 100/100Master Blocks – Ultimate Gutenberg Blocks for Marketers has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ultimate-blocks-for-gutenberg" plugin v1.4.1.4 presents a mixed security posture. On the positive side, it shows good practices with 100% of its SQL queries using prepared statements and a significant percentage (83%) of output properly escaped. The absence of any known CVEs or recorded vulnerability history suggests a generally stable codebase. However, there are notable concerns related to its attack surface. The plugin exposes 11 entry points, with 5 of these, specifically all 5 REST API routes, lacking permission callbacks. This means these routes are accessible without any authentication or authorization checks, creating a significant risk for potential unauthorized actions. Additionally, the presence of a dangerous function like `create_function` is a red flag, as it can be misused in certain contexts to execute arbitrary code. The taint analysis, while showing only two flows, indicates that these flows involve unsanitized paths, which warrants careful investigation to ensure they don't lead to exploitable vulnerabilities.
Key Concerns
- REST API routes without permission callbacks
- Presence of dangerous function: create_function
- Taint flows with unsanitized paths
- Output escaping not 100% proper
Master Blocks – Ultimate Gutenberg Blocks for Marketers Security Vulnerabilities
Master Blocks – Ultimate Gutenberg Blocks for Marketers Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Master Blocks – Ultimate Gutenberg Blocks for Marketers Attack Surface
AJAX Handlers 6
REST API Routes 5
WordPress Hooks 59
Maintenance & Trust
Master Blocks – Ultimate Gutenberg Blocks for Marketers Maintenance & Trust
Maintenance Signals
Community Trust
Master Blocks – Ultimate Gutenberg Blocks for Marketers Alternatives
Spectra Gutenberg Blocks – Website Builder for the Block Editor
ultimate-addons-for-gutenberg
Power-up Gutenberg with advanced blocks for faster website creation. Build your WordPress website effortlessly using powerful building blocks!
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
kadence-blocks
20+ AI-powered Gutenberg Blocks with endless options, enabling top-notch efficiency for high-performance dynamic website creation.
Page Builder: Pagelayer – Drag and Drop website builder
pagelayer
The most advanced frontend drag & drop page builder. Pagelayer is a light weight but extremely powerful Website Builder.
Superb Addons: Blocks, Patterns & Theme Designer for the Block Editor & FSE
superb-blocks
Create beautiful WordPress websites easily with 10+ blocks, 200+ patterns, 100+ pre-built pages, animations and Theme Designer. No coding needed!
GutenKit – Page Builder Blocks, Patterns, and Templates for Gutenberg Block Editor
gutenkit-blocks-addon
GutenKit – Ultimate no-code Gutenberg blocks to design stunning web pages and visually stunning posts in WordPress block editor.
Master Blocks – Ultimate Gutenberg Blocks for Marketers Developer Profile
45 plugins · 43K total installs
How We Detect Master Blocks – Ultimate Gutenberg Blocks for Marketers
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ultimate-blocks-for-gutenberg/assets/css/style.css/wp-content/plugins/ultimate-blocks-for-gutenberg/assets/css/editor.css/wp-content/plugins/ultimate-blocks-for-gutenberg/assets/js/editor.js/wp-content/plugins/ultimate-blocks-for-gutenberg/assets/js/frontend.jsultimate-blocks-for-gutenberg/assets/css/style.css?ver=ultimate-blocks-for-gutenberg/assets/css/editor.css?ver=ultimate-blocks-for-gutenberg/assets/js/editor.js?ver=ultimate-blocks-for-gutenberg/assets/js/frontend.js?ver=HTML / DOM Fingerprints
egb-blocksegb-layout-iddata-uniqueidJLTMB_URLJLTMB_ASSETSJLTMB_IMAGESJLTMB_VER