
WPZOOM Addons for Beaver Builder Security & Risk Analysis
wordpress.org/plugins/wpzoom-addons-for-beaver-builderA suite of useful addons for Beaver Builder for WPZOOM themes.
Is WPZOOM Addons for Beaver Builder Safe to Use in 2026?
Generally Safe
Score 96/100WPZOOM Addons for Beaver Builder has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin "wpzoom-addons-for-beaver-builder" version 1.3.8 exhibits a mixed security posture. On one hand, the static analysis shows a very small attack surface with no apparent unprotected entry points, excellent use of prepared statements for SQL queries, and a reasonable number of file operations and external HTTP requests. The presence of nonce checks and a single capability check, while limited, are positive signs. However, a significant concern arises from the very low percentage of properly escaped output (12%). This suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into user views.
The vulnerability history is a major red flag, with a total of 6 known CVEs, including 1 high and 5 medium severity vulnerabilities. The common types of vulnerabilities, specifically Remote File Inclusion and Cross-Site Scripting, align with the output escaping concerns identified in the static analysis. While there are currently no unpatched CVEs, the historical pattern of these specific vulnerability types is worrying and indicates a recurring weakness in how user-supplied data is handled. The most recent vulnerability was identified on July 1st, 2024, suggesting that despite past fixes, the underlying issues may not be fully eradicated.
In conclusion, while the plugin demonstrates some good security practices like prepared statements and a limited attack surface, the critically low output escaping percentage and the history of XSS and RFI vulnerabilities present substantial risks. The plugin requires immediate attention to address the widespread output escaping deficiencies and a thorough review to ensure past vulnerability patterns are truly resolved.
Key Concerns
- Low percentage of properly escaped output (12%)
- History of 1 high severity vulnerability
- History of 5 medium severity vulnerabilities
- Common vulnerability type: Cross-site Scripting
- Common vulnerability type: Remote File Inclusion
- Only 1 capability check observed
WPZOOM Addons for Beaver Builder Security Vulnerabilities
CVEs by Year
Severity Breakdown
6 total CVEs
Beaver Builder Addons by WPZOOM <= 1.3.5 - Authenticated (Editor+) Local File Inclusion
Beaver Builder Addons by WPZOOM <= 1.3.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Testimonials Widget
Beaver Builder Addons by WPZOOM <= 1.3.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Box Widget
Beaver Builder Addons by WPZOOM <= 1.3.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button Widget
Beaver Builder Addons by WPZOOM <= 1.3.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Team Members Widget
Beaver Builder Addons by WPZOOM <= 1.3.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Heading Widget
WPZOOM Addons for Beaver Builder Code Analysis
Output Escaping
WPZOOM Addons for Beaver Builder Attack Surface
AJAX Handlers 1
WordPress Hooks 19
Maintenance & Trust
WPZOOM Addons for Beaver Builder Maintenance & Trust
Maintenance Signals
Community Trust
WPZOOM Addons for Beaver Builder Alternatives
Header Footer for Beaver Builder
bb-header-footer
An easy-to-use Beaver Builder addon to import pages or templates as a header or a footer across a Beaver Builder website.
WPZOOM Beaver Builder Templates
wpzoom-beaver-builder-templates
WPZOOM Beaver Builder Templates contains a collection of pre-designed templates for Beaver Builder page builder.
Beaver Builder Page Builder – Drag and Drop Website Builder
beaver-builder-lite-version
The Professional's Choice for Drag & Drop WordPress Page Building. Fast, Reliable, and Trusted since 2014.
HT Mega Addons for Elementor – Elementor Widgets & Template Builder
ht-mega-for-elementor
Elementor addon offering 135+ widgets — Mega Menu, Ready Templates, Page Builder, Slider, Gallery, Post Grid, AI Writer & more.
Livemesh Addons by Elementor
addons-for-elementor
Elementor Addons that saves time with multiple ready-to-use drag and drop styles for 30+ essential widgets built for Elementor page builder.
WPZOOM Addons for Beaver Builder Developer Profile
24 plugins · 337K total installs
How We Detect WPZOOM Addons for Beaver Builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpzoom-addons-for-beaver-builder/assets/css/magnific-popup.css/wp-content/plugins/wpzoom-addons-for-beaver-builder/assets/js/jquery.magnific-popup.min.js/wp-content/plugins/wpzoom-addons-for-beaver-builder/assets/js/jquery.magnific-popup.min.jswpzoom-addons-for-beaver-builder/assets/css/magnific-popup.css?ver=wpzoom-addons-for-beaver-builder/assets/js/jquery.magnific-popup.min.js?ver=HTML / DOM Fingerprints
wpzabb-ui-panel-wrapperdata-wpzabb-ui-panelwpzabb_global_settings