Block old browser versions and suspicious browsers Security & Risk Analysis

wordpress.org/plugins/wimb-and-block

With the help of WhatIsMyBrowser the plugin detects old and bad browsers and denies them access. A special robots.txt denies crawling by bad bots.

0 active installs v1.4 PHP 8.1+ WP 6.2+ Updated Feb 23, 2026
bad-botsbanblockingrobots-txtsecurity
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Block old browser versions and suspicious browsers Safe to Use in 2026?

Generally Safe

Score 100/100

Block old browser versions and suspicious browsers has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "wimb-and-block" v1.4 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of known CVEs and the robust implementation of prepared statements for SQL queries (98%) and output escaping (93%) are significant strengths. Furthermore, the plugin demonstrates good security practices by incorporating a healthy number of nonce checks (16) and capability checks (22), indicating an effort to protect against common WordPress attack vectors. The limited attack surface, with zero unprotected entry points, is also a positive indicator.

However, there are areas that warrant caution. The taint analysis reveals 5 flows with unsanitized paths, and while they are not categorized as critical or high severity, they represent potential vectors for data manipulation or unintended behavior if exploited. The presence of 4 external HTTP requests also introduces a dependency on external services, which could be a point of compromise if those services are affected. The single cron event, while not inherently insecure, should be reviewed to ensure it doesn't introduce vulnerabilities, especially if it involves external data or user input.

Overall, "wimb-and-block" v1.4 appears to be a well-developed plugin with a commendable focus on security fundamentals. The lack of historical vulnerabilities further reinforces this. The primary concern lies in the identified unsanitized paths, which, though not critical, demand investigation to confirm their impact and ensure they do not pose a latent risk. With careful review of the taint flows, the plugin's security can be further solidified.

Key Concerns

  • Flows with unsanitized paths detected
Vulnerabilities
None known

Block old browser versions and suspicious browsers Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Block old browser versions and suspicious browsers Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
97 prepared
Unescaped Output
14
195 escaped
Nonce Checks
16
Capability Checks
22
File Operations
0
External Requests
4
Bundled Libraries
0

SQL Query Safety

98% prepared99 total queries

Output Escaping

93% escaped209 total outputs
Data Flows
5 unsanitized

Data Flow Analysis

8 flows5 with unsanitized paths
<block-unblock> (admin\block-unblock.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Block old browser versions and suspicious browsers Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionadmin_initadmin\always-block.php:20
actionadmin_initadmin\deleting.php:17
actionadmin_initadmin\emergency.php:17
actionadmin_initadmin\exclude.php:20
actionadmin_initadmin\log-anonym.php:16
actionadmin_initadmin\logfile.php:24
actionadmin_initadmin\logging.php:27
actionadmin_initadmin\settings.php:28
actionadmin_initadmin\systems.php:20
actionadmin_initadmin\versions.php:20
actionadmin_menuadmin.php:22
actionwimbblock_rotate_hookphp\cron.php:35
actioninitphp\init-check-agent.php:105
filterthe_postsphp\init-robots.php:115
actionplugins_loadedwimb-and-block.php:68
filternetwork_admin_plugin_action_linkswimb-and-block.php:91

Scheduled Events 1

wimbblock_rotate_hook
Maintenance & Trust

Block old browser versions and suspicious browsers Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 23, 2026
PHP min version8.1
Downloads363

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Block old browser versions and suspicious browsers Developer Profile

hupe13

4 plugins · 2K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
95 days
View full developer profile
Detection Fingerprints

How We Detect Block old browser versions and suspicious browsers

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wimb-and-block/admin/css/admin-block-unblock.css/wp-content/plugins/wimb-and-block/admin/css/admin-versions.css/wp-content/plugins/wimb-and-block/admin/css/admin-settings.css/wp-content/plugins/wimb-and-block/admin/css/admin-always-block.css/wp-content/plugins/wimb-and-block/admin/css/admin.css/wp-content/plugins/wimb-and-block/admin/js/admin.js/wp-content/plugins/wimb-and-block/admin/js/admin-versions.js/wp-content/plugins/wimb-and-block/admin/js/admin-settings.js+3 more
Script Paths
/wp-content/plugins/wimb-and-block/admin/js/admin-block-unblock.js/wp-content/plugins/wimb-and-block/admin/js/admin.js/wp-content/plugins/wimb-and-block/admin/js/admin-versions.js/wp-content/plugins/wimb-and-block/admin/js/admin-settings.js/wp-content/plugins/wimb-and-block/admin/js/admin-always-block.js/wp-content/plugins/wimb-and-block/php/js/wimb-options.js
Version Parameters
wimb-and-block/admin/css/admin-block-unblock.css?ver=wimb-and-block/admin/css/admin-versions.css?ver=wimb-and-block/admin/css/admin-settings.css?ver=wimb-and-block/admin/css/admin-always-block.css?ver=wimb-and-block/admin/css/admin.css?ver=wimb-and-block/admin/js/admin.js?ver=wimb-and-block/admin/js/admin-versions.js?ver=wimb-and-block/admin/js/admin-settings.js?ver=wimb-and-block/admin/js/admin-block-unblock.js?ver=wimb-and-block/admin/js/admin-always-block.js?ver=wimb-and-block/php/js/wimb-options.js?ver=

HTML / DOM Fingerprints

CSS Classes
wimbbox
Data Attributes
data-wp-hooks-tab
JS Globals
wimbblock_optionswimbblock_ajax_object
FAQ

Frequently Asked Questions about Block old browser versions and suspicious browsers