
WPMozo Blocks and Addons Security & Risk Analysis
wordpress.org/plugins/wpmozo-blocks-and-addonsWPMozo Blocks and Addons is a plugin that enhances the Gutenberg editor with a collection of powerful and customizable blocks.
Is WPMozo Blocks and Addons Safe to Use in 2026?
Generally Safe
Score 100/100WPMozo Blocks and Addons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'wpmozo-blocks-and-addons' v1.7.0 demonstrates a generally strong security posture based on the provided static analysis. It utilizes prepared statements for all SQL queries and exhibits excellent output escaping practices, with 99% of outputs being properly escaped. The presence of nonce and capability checks on its entry points, coupled with the absence of dangerous functions and external HTTP requests, further reinforces this positive assessment. The fact that there are no recorded vulnerabilities or CVEs, and no taint flows indicating potential injection issues, is also a significant strength.
However, there are a few areas that warrant attention. The plugin has two AJAX handlers, and while the static analysis indicates no unprotected handlers, a deeper dive into the implementation of these checks would be prudent to ensure they are robust. The presence of file operations, though not flagged as a specific concern in this analysis, can sometimes represent an attack vector if not handled with extreme care regarding user-supplied input. The absence of taint analysis results could mean that no flows were found or that the analysis was not comprehensive enough to detect subtle vulnerabilities.
Overall, the plugin appears to be well-developed from a security perspective, with a focus on core secure coding practices. The lack of historical vulnerabilities is a good indicator, but ongoing vigilance and thorough auditing of any authenticated entry points are always recommended for any plugin. The low number of entry points and the apparent good handling of them suggest a manageable risk profile.
Key Concerns
- AJAX handlers present, requires verification of auth checks
- File operations present, potential risk if not carefully handled
- Taint analysis not fully conclusive (0 flows analyzed)
WPMozo Blocks and Addons Security Vulnerabilities
WPMozo Blocks and Addons Code Analysis
Output Escaping
WPMozo Blocks and Addons Attack Surface
AJAX Handlers 2
WordPress Hooks 23
Maintenance & Trust
WPMozo Blocks and Addons Maintenance & Trust
Maintenance Signals
Community Trust
WPMozo Blocks and Addons Alternatives
Gutenberg Block Editor Toolkit – EditorsKit
block-options
EditorsKit provides a set of page building tools to supercharge the WordPress Gutenberg block editor.
Gutentor – Gutenberg Blocks – Page Builder for Gutenberg Editor
gutentor
Advanced yet easy, Gutenberg editor page builder blocks. Create a masterpiece, pixel perfect website using modern WordPress Gutenberg blocks.
Orbi Blocks – Gutenberg Blocks, Patterns & Templates
orbi-blocks
Create pixel-perfect, modern WordPress websites with ease using our advanced yet user-friendly Gutenberg editor page builder blocks.
Page Builder Gutenberg Blocks – CoBlocks
coblocks
CoBlocks is a suite of page builder WordPress blocks for Gutenberg, with 10+ new blocks and a true page builder experience with rows and columns.
Stackable – Page Builder Gutenberg Blocks
stackable-ultimate-gutenberg-blocks
Custom Blocks that transform your WordPress Block Editor into a page builder
WPMozo Blocks and Addons Developer Profile
5 plugins · 410 total installs
How We Detect WPMozo Blocks and Addons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpmozo-blocks-and-addons/includes/assets/css/editor/wpmozo-blocks-and-addons-editor.css/wp-content/plugins/wpmozo-blocks-and-addons/includes/assets/js/editor/editor.js/wp-content/plugins/wpmozo-blocks-and-addons/includes/assets/css/vendors/swiper-bundle.css/wp-content/plugins/wpmozo-blocks-and-addons/includes/assets/css/vendors/wpmozo-swiper.css/wp-content/plugins/wpmozo-blocks-and-addons/includes/assets/css/vendors/magnificPopup.css/wp-content/plugins/wpmozo-blocks-and-addons/includes/assets/js/vendors/swiper-bundle.js/wp-content/plugins/wpmozo-blocks-and-addons/includes/assets/css/vendors/twentytwenty.css/wp-content/plugins/wpmozo-blocks-and-addons/includes/assets/css/vendors/all-animation.css+7 morehttps://elicus.comwpmozo-blocks-and-addons/includes/assets/css/editor/wpmozo-blocks-and-addons-editor.css?ver=wpmozo-blocks-and-addons/includes/assets/js/editor/editor.js?ver=wpmozo-blocks-and-addons/includes/assets/css/vendors/swiper-bundle.css?ver=wpmozo-blocks-and-addons/includes/assets/css/vendors/wpmozo-swiper.css?ver=wpmozo-blocks-and-addons/includes/assets/css/vendors/magnificPopup.css?ver=wpmozo-blocks-and-addons/includes/assets/js/vendors/swiper-bundle.js?ver=wpmozo-blocks-and-addons/includes/assets/css/vendors/twentytwenty.css?ver=wpmozo-blocks-and-addons/includes/assets/css/vendors/all-animation.css?ver=wpmozo-blocks-and-addons/includes/assets/js/vendors/imagesloaded.pkgd.js?ver=wpmozo-blocks-and-addons/includes/assets/js/vendors/jquery_event_move.js?ver=wpmozo-blocks-and-addons/includes/assets/js/vendors/jquery_twentytwenty.js?ver=wpmozo-blocks-and-addons/includes/assets/js/vendors/tilt-jquery.js?ver=wpmozo-blocks-and-addons/includes/assets/js/vendors/lottie.min.js?ver=wpmozo-blocks-and-addons/includes/assets/js/vendors/isotope.pkgd.js?ver=wpmozo-blocks-and-addons/includes/assets/js/vendors/magnificPopup.js?ver=HTML / DOM Fingerprints
wpmozo-block-wrapperwpmozo-swiperwpmozo-swiper-button-nextwpmozo-swiper-button-prevwpmozo-twentytwentytwentytwenty-beforetwentytwenty-aftertwentytwenty-handle+2 more<!-- wp:wpmozo/accordion --><!-- /wp:wpmozo/accordion --><!-- wp:wpmozo/button --><!-- /wp:wpmozo/button -->+42 moredata-wpmozo-blockdata-block-namewindow.wpmozoBlocks