Beaver Builder Page Builder – Drag and Drop Website Builder
by Beaver Builder · Page Builders
Also makes 2 other plugins · 204K+ installs across the portfolio →
The Professional's Choice for Drag & Drop WordPress Page Building. Fast, Reliable, and Trusted since 2014.
90 health vs 69 average across 1,269 Page Builders plugins
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Well optimized
Biggest win: Support resolution
To rank higher: Mark more forum threads resolved — the resolved ratio feeds the ranking.
Get the full rank-higher report →Daily downloads
Since 2022-10-05 · 1,421 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
117.2K
now · peak 342.9K
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Rating trend
Star average over time · dips mark rough releases
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
Actively maintainedHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
9
releases in the last 12 months
3mo ago
latest release · v2.10.2.2
160
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin · 51% run the current release. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “100K+”. Our estimate pins where the real number sits.
Refined from the date this plugin crossed into its current band.
Install history · since 2015-12-01 · 1,500 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price. The recent download trend is too spiky to read.
Details
Recent reviews
All reviews on wp.org ↗- ★★★★★ salamat782mo ago
I’ve been using beaver builder for a few years. I’m always impressed with their support super fast, helpful and kind.
Read on wp.org ↗ - ★★★★★ jelmerjellema5mo ago
We chose Beaver Builder for our agency because new people coming in can start working with it right away, while it has all the flexibility needed for experts to make things work. It’s very easy to create pages in, but doesn’t block your creativity as programmer: we can do anything in it. The team is friendly and, important these days, human. We and many other EU based companies are very busy removing American products from their dependencies, especially those that store company or client data (which Beaver Builder does not). But even though they are USA based we wouldn’t want to let go of them, because their support feels so close to home. We would ask them to move to Europe though.
Read on wp.org ↗ - ★★★★★ rimasu5mo ago
After five years, my single page views created with Beaver Themer stopped working. Support was able to solve the problem within three hours of submitting a ticket. They flushed the permalinks and that worked. Thank you.
Read on wp.org ↗ - ★★★★★ humpiedump5mo ago
The thing I like most about Beaver builder is that it works, always. In 8 years I never needed to rollback to older versions after doing an update because websites were broken. As a big plus there’s great helpfull facebook community and the supportteam is fast.
Read on wp.org ↗ - ★★★★★ kl200010mo ago
Had an issue with vimeo embed code being stripped out from the FAQ module. Support fixed the issue and released an updated version of their plugin!
Read on wp.org ↗ - ★★★★★ Eelke11mo ago
I was having trouble embedding a video on a homepage built with Beaver Builder, but the BB-crew helped me out multiple times until we found the solution. Thanks a bunch!
Read on wp.org ↗ - ★★★★★ edwinnieves1.0y ago
Recently got an email from WP saying “Some themes have automatically updated to their latest versions on your site. No further action is needed on your part. These themes are now up to date: Beaver Builder Theme (from version 1.7.10 to 1.7.18.1)”. However, it seems the update messed up the header on my site and I had to contact the BB support team for help. I have to say it was a wonderful experience! Not only did the team (Ben Carlo specifically) responded almost immediately; but they were able to identify the problem and resolve it within minutes. Kudos to Beaver Builder for having such a committed, smart team to support their suite of products! PS: It seems the issue was that WP updated the Beaver Themer plugin to its latest version but not the Beaver Builder plugin. PS2: Note to the BB developers… perhaps there is a way for a plugin update process to check if there are related plugins that also need to be updated. After all, all the tools may work in sync.
Read on wp.org ↗ - ★★★★★ Tinelle Louis1.1y ago
Another reviewer stated that “There is no built-in option to hide or show specific blocks on mobile or tablet.” That is a lie. Those features and more are available. The documentation is extensive and support is top tier with a fast turnaround. Also, the Facebook group is a great resource. I use the bb plugin, the bb theme, and bb themer together for full ultimate flexibility for about 5 years now. To get additional modules, I have purchased UUAB and PowerPack. I would say that is the only negative I have about BB. I wish it had more modules.
Read on wp.org ↗
Known vulnerabilities
via Wordfence Intelligence35 disclosed vulnerabilities on record for this plugin, all fixed in the current version. Sites on older versions stay exposed until they update.
- 2026-08-14 CVE-2026-17090 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.10.2.2 Patched in 2.10.3.2
- 2026-04-07 CVE-2026-2481 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.10.1.1 Patched in 2.10.1.2
- 2026-03-23 CVE-2026-40744 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 2.10.1.2 Patched in 2.10.1.5
- 2026-02-10 CVE-2026-1231 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.10.0.5 Patched in 2.10.0.6
- 2026-01-21 CVE-2025-69319 Improper Control of Generation of Code ('Code Injection') Affects <= 2.9.4.1 Patched in 2.9.4.2
- Medium · 4.3 Beaver Builder – WordPress Page Builder <= 2.9.4 - Authenticated (Contributor+) Sensitive Information Exposure ↗2025-12-08 CVE-2025-12558 Exposure of Sensitive Information to an Unauthorized Actor Affects <= 2.9.4 Patched in 2.9.4.1
- 2025-08-27 CVE-2025-8897 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.9.2.1 Patched in 2.9.3.1
- Medium · 6.4 Beaver Builder – WordPress Page Builder <= 2.8.4.4 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2024-12-12 CVE-2024-11832 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.4.4 Patched in 2.8.5.3
- 2024-12-02 CVE-2024-53797 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.4.3 Patched in 2.8.4.4
- 2024-10-29 CVE-2024-9505 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.4.2 Patched in 2.8.4.3
- 2024-10-24 CVE-2024-50430 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.3.7 Patched in 2.8.3.9
- 2024-09-26 CVE-2024-9049 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.3.6 Patched in 2.8.3.7
- 2024-08-28 CVE-2024-7895 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.3.5 Patched in 2.8.3.6
- 2024-08-26 CVE-2024-43926 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.3.2 Patched in 2.8.3.4
- 2024-07-04 CVE-2024-37500 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.2.2 Patched in 2.8.3
- 2024-05-10 CVE-2024-4430 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.1.2 Patched in 2.8.1.3
- Medium · 6.4 Beaver Builder – WordPress Page Builder <= 2.8.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2024-05-07 CVE-2024-3923 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.1.1 Patched in 2.8.1.2
- 2024-04-01 CVE-2024-2925 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.8.0.5 Patched in 2.8.0.7
- 2024-03-28 CVE-2024-30425 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.7.4.4 Patched in 2.7.4.5
- 2024-03-11 CVE-2024-1080 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.7.4.4 Patched in 2.7.4.5
- 2024-02-28 CVE-2024-1074 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.7.4.2 Patched in 2.7.4.3
- Medium · 6.4 Beaver Builder – WordPress Page Builder <= 2.7.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2024-02-20 CVE-2024-0897 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.7.4.2 Patched in 2.7.4.3
- Medium · 5.4 Beaver Builder <= 2.7.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Icon Widget ↗2024-02-20 CVE-2024-0871 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.7.4.2 Patched in 2.7.4.3
- Medium · 6.4 Beaver Builder – WordPress Page Builder <= 2.7.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2024-02-20 CVE-2024-0896 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.7.4.2 Patched in 2.7.4.3
- Medium · 5.4 Beaver Builder – WordPress Page Builder <= 2.7.4.2 - Reflected (DOM-Based) Cross-Site Scripting ↗2024-02-20 CVE-2024-1038 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.7.4.2 Patched in 2.7.4.3
- Medium · 6.4 Beaver Builder – WordPress Page Builder <= 2.7.2 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2023-12-26 CVE-2023-50889 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.7.2 Patched in 2.7.2.1
- Medium · 6.4 Beaver Builder – WordPress Page Builder <= 2.5.5.2 - Authenticated Stored Cross-Site Scripting via Text Editor ↗2022-08-29 CVE-2022-2716 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.5.5.2 Patched in 2.5.5.3
- 2022-08-29 CVE-2022-2517 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.5.5.2 Patched in 2.5.5.3
- Medium · 6.4 Beaver Builder – WordPress Page Builder <= 2.5.5.2 - Authenticated Stored Cross-Site Scripting via Image URL ↗2022-08-29 CVE-2022-2934 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.5.5.2 Patched in 2.5.5.3
- Medium · 6.4 Beaver Builder – WordPress Page Builder <= 2.5.5.2 - Authenticated Stored Cross-Site Scripting via 'caption' ↗2022-08-29 CVE-2022-2695 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.5.5.2 Patched in 2.5.5.3
- Medium · 5.4 Beaver Builder <= 2.5.4.3 - Missing Authorization ↗
- 2016-02-08 Missing Authorization Affects <= 1.7 Patched in 1.7.1
Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.
CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 8.1.12 · WP 7.0.1
Languages
via translate.wordpress.orgTranslated into 62 languages, 4 at 90% or more
Plus 38 more locales with partial translations.
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2023-09-02 200K+ → 100K+ down
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
-
Elementor Website Builder – more than just a page builder 10M+ installs · 4.5★ · 2 shared tags A -
Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode 700K+ installs · 4.9★ · 2 shared tags A -
Page Builder: Pagelayer – Drag and Drop website builder 400K+ installs · 3.9★ · 2 shared tags B -
Colibri Page Builder 90K+ installs · 4.4★ · 2 shared tags A -
Kubio AI Page Builder 80K+ installs · 4.3★ · 2 shared tags A
-
TemplateSpare – 1000+ WordPress Starter Templates & Full Site Migration Tool | 1-Click Import/Export & No-Code Builder 10K+ installs · 4.0★ · 2 shared tags B
Embed this report card
Drop a live Pulse card for Beaver Builder Page Builder – Drag and Drop Website Builder into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/beaver-builder-lite-version" width="480" height="300" style="border:0" loading="lazy" title="Beaver Builder Page Builder – Drag and Drop Website Builder — Plugin Pulse"></iframe> Beaver Builder Page Builder – Drag and Drop Website Builder: 100K+ active installs, 4.7★ (394 reviews). Plugin Pulse (WP Mayor), as of 2026-08-25. https://plugins.wpmayor.com/plugin/beaver-builder-lite-version