
Yabe Ukiyo Security & Risk Analysis
wordpress.org/plugins/yabe-ukiyoBricks remote templates manager.
Is Yabe Ukiyo Safe to Use in 2026?
Generally Safe
Score 100/100Yabe Ukiyo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'yabe-ukiyo' v2.0.10 plugin presents a mixed security picture. On the positive side, the plugin demonstrates good practices by having no recorded vulnerabilities in its history and no identified critical or high severity taint flows. Furthermore, it avoids dangerous functions, file operations, and external HTTP requests, all of which are strong indicators of a secure development approach. The high percentage of SQL queries using prepared statements also suggests a good understanding of preventing SQL injection.
However, there are significant areas of concern. The complete absence of output escaping for all identified outputs (18 total) is a critical weakness, exposing users to potential cross-site scripting (XSS) vulnerabilities. Additionally, the lack of any nonce or capability checks, even with a seemingly small attack surface (0 entry points), raises red flags. While there are no explicit unprotected entry points in the static analysis, this absence of authorization and security checks on any potential interaction points is a major oversight that could be exploited if any new entry points are introduced or if the current entry points have subtle bypasses. The vulnerability history being clean is positive but doesn't negate the immediate risks identified in the code analysis.
In conclusion, while the plugin benefits from a clean vulnerability history and a focus on preventing common SQL issues, the critical flaw of unescaped output and the concerning lack of authorization checks present a substantial risk. The plugin would require significant remediation in these areas to achieve a truly secure posture.
Key Concerns
- 0% of outputs properly escaped
- No nonce checks implemented
- No capability checks implemented
Yabe Ukiyo Security Vulnerabilities
Yabe Ukiyo Code Analysis
SQL Query Safety
Output Escaping
Yabe Ukiyo Attack Surface
Maintenance & Trust
Yabe Ukiyo Maintenance & Trust
Maintenance Signals
Community Trust
Yabe Ukiyo Alternatives
Bricksable for Bricks Builder
bricksable
Elevate your website game with the Bricksable collection of premium elements for Bricks Builder. Designed to speed up your workflow, our customizable …
Bricks Navigator
brickslabs-bricks-navigator
Adds quick links in the WordPress admin bar for users of Bricks theme.
Templateberg – Gutenberg Templates, WordPress Themes Template Kits & WordPress Templates
templateberg
Templateberg offers Gutenberg templates & WordPress theme kits. Import pre-designed layouts & build beautiful sites fast.
Magical Addons For Elementor ( Header Footer Builder, Free Elementor Widgets, Elementor Templates Library )
magical-addons-for-elementor
60+ widgets, 100+ sections, 1600+ icons, GSAP animations, custom CSS/code, conditional display, header/footer builder & role manager
WPKoi Templates for Elementor
wpkoi-templates-for-elementor
Unlock 400+ stunning Elementor templates that transform your website into a visual masterpiece. Compatible with popular WordPress themes.
Yabe Ukiyo Developer Profile
4 plugins · 140 total installs
How We Detect Yabe Ukiyo
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/yabe-ukiyo/src/js/yabe-ukiyo.js/wp-content/plugins/yabe-ukiyo/src/css/yabe-ukiyo.css/wp-content/plugins/yabe-ukiyo/src/js/yabe-ukiyo.jsyabe-ukiyo/src/js/yabe-ukiyo.js?ver=yabe-ukiyo/src/css/yabe-ukiyo.css?ver=HTML / DOM Fingerprints
yabeUkiyoRemoteTemplatesbricksData.remoteTemplateSettings/wp-json/yabe-ukiyo/v1/admin/wp-json/bricks/v1/get-templates-data