
Block old browser versions and suspicious browsers Security & Risk Analysis
wordpress.org/plugins/wimb-and-blockWith the help of WhatIsMyBrowser the plugin detects old and bad browsers and denies them access. A special robots.txt denies crawling by bad bots.
Is Block old browser versions and suspicious browsers Safe to Use in 2026?
Generally Safe
Score 100/100Block old browser versions and suspicious browsers has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wimb-and-block" v1.4 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of known CVEs and the robust implementation of prepared statements for SQL queries (98%) and output escaping (93%) are significant strengths. Furthermore, the plugin demonstrates good security practices by incorporating a healthy number of nonce checks (16) and capability checks (22), indicating an effort to protect against common WordPress attack vectors. The limited attack surface, with zero unprotected entry points, is also a positive indicator.
However, there are areas that warrant caution. The taint analysis reveals 5 flows with unsanitized paths, and while they are not categorized as critical or high severity, they represent potential vectors for data manipulation or unintended behavior if exploited. The presence of 4 external HTTP requests also introduces a dependency on external services, which could be a point of compromise if those services are affected. The single cron event, while not inherently insecure, should be reviewed to ensure it doesn't introduce vulnerabilities, especially if it involves external data or user input.
Overall, "wimb-and-block" v1.4 appears to be a well-developed plugin with a commendable focus on security fundamentals. The lack of historical vulnerabilities further reinforces this. The primary concern lies in the identified unsanitized paths, which, though not critical, demand investigation to confirm their impact and ensure they do not pose a latent risk. With careful review of the taint flows, the plugin's security can be further solidified.
Key Concerns
- Flows with unsanitized paths detected
Block old browser versions and suspicious browsers Security Vulnerabilities
Block old browser versions and suspicious browsers Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Block old browser versions and suspicious browsers Attack Surface
WordPress Hooks 16
Scheduled Events 1
Maintenance & Trust
Block old browser versions and suspicious browsers Maintenance & Trust
Maintenance Signals
Community Trust
Block old browser versions and suspicious browsers Alternatives
crawler-hunter
crawler-hunter
It is a simple but effective plugin. Stops spam bots by checking browser content. You can also add an ip address to the blacklist.
WP fail2ban – Advanced Security
wp-fail2ban
WP fail2ban uses fail2ban to protect your WordPress site.
Stop User Enumeration
stop-user-enumeration
Helps secure your site against hacking attacks through detecting User Enumeration
iQ Block Country
iq-block-country
Allow or disallow visitors from certain countries accessing (parts of) your website
WP Fail2Ban Redux
wp-fail2ban-redux
Records various WordPress events to your server's system log for integration with Fail2Ban.
Block old browser versions and suspicious browsers Developer Profile
4 plugins · 2K total installs
How We Detect Block old browser versions and suspicious browsers
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wimb-and-block/admin/css/admin-block-unblock.css/wp-content/plugins/wimb-and-block/admin/css/admin-versions.css/wp-content/plugins/wimb-and-block/admin/css/admin-settings.css/wp-content/plugins/wimb-and-block/admin/css/admin-always-block.css/wp-content/plugins/wimb-and-block/admin/css/admin.css/wp-content/plugins/wimb-and-block/admin/js/admin.js/wp-content/plugins/wimb-and-block/admin/js/admin-versions.js/wp-content/plugins/wimb-and-block/admin/js/admin-settings.js+3 more/wp-content/plugins/wimb-and-block/admin/js/admin-block-unblock.js/wp-content/plugins/wimb-and-block/admin/js/admin.js/wp-content/plugins/wimb-and-block/admin/js/admin-versions.js/wp-content/plugins/wimb-and-block/admin/js/admin-settings.js/wp-content/plugins/wimb-and-block/admin/js/admin-always-block.js/wp-content/plugins/wimb-and-block/php/js/wimb-options.jswimb-and-block/admin/css/admin-block-unblock.css?ver=wimb-and-block/admin/css/admin-versions.css?ver=wimb-and-block/admin/css/admin-settings.css?ver=wimb-and-block/admin/css/admin-always-block.css?ver=wimb-and-block/admin/css/admin.css?ver=wimb-and-block/admin/js/admin.js?ver=wimb-and-block/admin/js/admin-versions.js?ver=wimb-and-block/admin/js/admin-settings.js?ver=wimb-and-block/admin/js/admin-block-unblock.js?ver=wimb-and-block/admin/js/admin-always-block.js?ver=wimb-and-block/php/js/wimb-options.js?ver=HTML / DOM Fingerprints
wimbboxdata-wp-hooks-tabwimbblock_optionswimbblock_ajax_object