Bold Page Builder
by boldthemes · Page Builders
Also makes 7 other plugins · 58.8K+ installs across the portfolio →
Free Page Builder and Visual Composer - Build stunning responsive post and page layouts with easy to use drag and drop builder - no coding required.
80 health vs 69 average across 1,269 Page Builders plugins
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Well optimized
Biggest win: Support resolution
To rank higher: Mark more forum threads resolved — the resolved ratio feeds the ranking.
Get the full rank-higher report →Daily downloads
Since 2022-10-05 · 1,421 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
19.0K
now · peak 91.8K
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Rating trend
Star average over time · dips mark rough releases
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
Actively maintainedHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
14
releases in the last 12 months
2mo ago
latest release · v5.9.5
15
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin · 36% run the current release. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “40K+”. Our estimate pins where the real number sits.
Refined from the date this plugin crossed into its current band.
Install history · since 2018-11-28 · 1,442 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price.
Details
Recent reviews
All reviews on wp.org ↗- ★★★★★ swapnil12341.3y ago
In your theme, you want us to use your builder, but it has very limited options when compared with WPBakery or Elementor. 1. In your theme Industrial, the homepage slider is not responsive. There is no option to make that section row to make responsive. 2. Shortcodes added in the text block are not showing on the frontend. You should look into these issues and try to fix them.Thank you
Read on wp.org ↗ - ★★★★★ Fausto1.3y ago
Posiblemente el mejor maquetador de WordPress, al menos así me lo parece por su facilidad, rapidez y usabilidad, encima es gratuito. Ágilmente puedes copiar y pegar varios modulos, incopora IA y es una herramienta muy versatil. Me sorprende que no esté más extendida y que no sea más conocida y popular. Es una excelente herramienta. Mucho mejor que WP Bakery, por ejemplo.
Read on wp.org ↗ - ★★★★★ Yahya Cotton Eddaqqaq1.4y ago
the builder is very limited, I had a horrible experience with it. This topic was modified 1 year, 3 months ago by Yahya Cotton Eddaqqaq.
Read on wp.org ↗ - ★★★★★ fasm1.5y ago
I’ve been using it for almost 10 years ?! And I’m very happy with it. I did only one page design with it, that what I was looing for. Once, with an update I had to fix my page designs because the margin system had change (it’s a bit anoying…) but over the years I have been very happy with the simplicity, the flexibility, the well organised setup system. It’s not as complex and optionnable than it’s new concurrents but I like it’s speed to organise as I want my layouts.It’s funny how people love it or hate it. It’s a basic builder to organise your frame. Everything else is cosmetic that you won’t have much here. It’s an old fashion builder but so powerfull. This topic was modified 1 year, 4 months ago by fasm. Reason: forgot things
Read on wp.org ↗ - ★★★★★ tdutkowski1.6y ago
Very bad builder, so limited. Do not recommended.
Read on wp.org ↗ - ★★★★★ guerre641.7y ago
The developers of this builder are obviously missing in action, or simply do not care one iota for people who continue to use it. There is no response via the support system on wordpress dot org, which is absolutely useless. The latest update of Bold Builder broke the layout on my Client’s site and there doesn’t appear to be any way to fix it. What makes matters worse is, this has happened over the last few updates and others have asked for support before me and not received a single answer or acknowledgment. I am going to encourage my Client to let me rebuild their website, as the current state of this plugin is disastrous. STAY AWAY FROM BOLD BUILDER!!! If I could give it no stars at all, I would. This topic was modified 1 year, 7 months ago by guerre64.
Read on wp.org ↗ - ★★★★★ onetailer1.8y ago
I regret choosing the Stellarium template from BoldTheme. While the design looked promising initially, the actual functionality fell far short of expectations. False Advertising: The template was advertised as WooCommerce-compatible, but critical features, like “Add to Cart” and “Checkout,” simply don’t work as expected. Combining WooCommerce with other elements like the Cost Calculator is impossible, a limitation that wasn’t clearly disclosed beforehand. Technical Issues: The template constantly triggered errors related to the “Coming Soon” plugin and other core functionalities. Instead of providing solutions, support deflected responsibility, making these issues my problem to fix. Subpar Support: Despite paying for extended support, the assistance was unhelpful and dismissive. Simple requests, like making the demo work as advertised, were ignored. The team suggested submitting a refund request rather than resolving the issues—a deeply frustrating experience for a paying customer. Misleading Setup: The demo content and WooCommerce functionality do not replicate the advertised examples. If you’re looking for a functional e-commerce solution, this template is far from ready out of the box. I rarely leave reviews, but this experience was extremely disappointing. I would not recommend this template unless you’re prepared to spend hours troubleshooting and rebuilding features that should work from the start.
Read on wp.org ↗ - ★★★★★ 7mdo2u1.8y ago
My website has been ready for a long time, but the requests for my offered service were too low, so I hired an agency to improve it. Now I had a new theme and I have to rewrite all the texts. An administrator was also added, who simply put everything on my server without giving me a detailed explanation. Problem: I am a German native speaker. Now that I have watched many youtube videos and found the document for the theme customization it works quite well. A better explanation of the setup would be nice.
Read on wp.org ↗
Latest updates
via wp.org changelogRecent releases and news for this plugin
- — Version 5.9.5 Security: escaped the shortcode bb_version attribute before it is written into the rendered output, preventing a stored XSS via a crafted attribute value (authenticated, content-editing users). Security: added a capabili 5.9.5
- — Version 5.9.4 Fixed colored-icon SVGs being stripped in the front-end editor preview (added inline SVG to the editor re-render kses allowlist). 5.9.4
- — Version 5.9.3 Redesigned the Row “Columns layout” control: row width and column structure are now selected separately, with the column structure shown as layout preview thumbnails. Fixed horizontal page overflow on rows configured wit 5.9.3
- — Version 5.9.2 Security: hardened the Raw Content save filter against a null-byte / control-character bypass that could allow Contributor-level users to store executable scripts (CVE-2026-5920). 5.9.2
- — Version 5.9.1 Fixed CSS Post Grid not rendering the excerpt, share, date, and super/subheadline when those options were enabled. Fixed category filtering on the CSS Post Grid and Masonry Post Grid for categories with encoded (non-ASCI 5.9.1
- — Version 5.9.0 Added 1300, 1500, and 1600 pixel boxed row widths to the Section and Row “Columns layout” / “Row width” dropdowns (alongside the existing 1200 and 1400 options). Fixed an unwanted border that appeared around colored head 5.9.0
Known vulnerabilities
via Wordfence Intelligence36 disclosed vulnerabilities on record for this plugin, 3 still affect the current version.
- Medium · 6.4 Bold Page Builder <= 5.6.8 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2026-08-15 CVE-2026-2357 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.6.8 Patched in 5.6.9
- Medium · 6.4 Bold Page Builder <= 5.6.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via bt_bb_button Shortcode ↗2026-05-13 CVE-2026-3694 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.6.8 Patched in 5.6.9
- Medium · 6.4 Bold Page Builder <= 5.4.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode ↗2026-02-06 CVE-2025-12159 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.4.8 No patch available
- Medium · 6.4 Bold Page Builder <= 5.5.3 - Authenticated (Author+) Stored DOM-based Cross-Site Scripting in Post Grid ↗2026-02-06 CVE-2025-13463 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.5.3 No patch available
- Medium · 6.4 Bold Builder <= 5.5.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via bt_bb_tabs Shortcode ↗2026-02-06 CVE-2025-12803 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) Affects <= 5.5.3 Patched in 5.5.4
- 2026-02-06 CVE-2025-15267 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.5.7 No patch available
- Medium · 6.4 Bold Page Builder <= 5.6.9 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2026-01-20 CVE-2026-25451 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.6.9 Patched in 5.7.0
- Medium · 6.4 Bold Page Builder <= 5.5.2 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2025-11-27 CVE-2025-66057 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.5.2 Patched in 5.5.3
- Medium · 6.4 Bold Page Builder <= 5.4.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via `percentage` Parameter ↗2025-10-23 CVE-2025-7730 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.4.5 Patched in 5.4.6
- Medium · 6.4 Bold Page Builder <= 5.4.3 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2025-08-27 CVE-2025-58194 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.4.3 Patched in 5.4.4
- Medium · 6.4 Bold Page Builder <= 5.4.1 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2025-07-16 CVE-2025-54006 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.4.1 Patched in 5.4.2
- 2025-07-02 CVE-2024-5647 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.1.2 Patched in 5.1.3
- Medium · 6.4 Bold Builder <= 5.3.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via additional_settings Parameter ↗2025-05-28 CVE-2025-5286 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.3.6 Patched in 5.3.7
- Medium · 6.4 Bold Page Builder <= 5.3.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'data-text' Parameter ↗2025-05-17 CVE-2025-3715 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.3.5 Patched in 5.3.6
- Medium · 6.4 Bold Page Builder <= 5.3.2 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2025-05-07 CVE-2025-47488 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.3.2 Patched in 5.3.3
- Medium · 4.4 Bold Page Builder <= 5.3.0 - Authenticated (Administrator+) Stored Cross-Site Scripting ↗2025-05-07 CVE-2025-47525 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.3.0 Patched in 5.3.1
- 2024-12-11 CVE-2024-54382 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Affects <= 5.1.5 Patched in 5.1.6
- Medium · 6.4 Bold Page Builder <= 5.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2024-12-02 CVE-2024-53801 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.2.1 Patched in 5.2.2
- Medium · 4.3 Bold Page Builder <= 5.1.3 - Missing Authorization ↗
- Medium · 6.4 Bold Page Builder <= 5.1.- - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2024-09-30 CVE-2024-47391 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.1.0 Patched in 5.1.1
- Medium · 6.4 Bold Page Builder <= 5.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2024-09-24 CVE-2024-47298 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.1.1 Patched in 5.1.2
- Medium · 6.4 Bold Page Builder <= 5.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via bt_bb_button Shortcode ↗2024-07-29 CVE-2024-7100 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.0.2 Patched in 5.0.3
- Medium · 5.4 Bold Page Builder <= 4.8.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Separator Element ↗2024-04-09 CVE-2024-2733 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.8 Patched in 4.8.9
- Medium · 6.4 Bold Page Builder <= 4.8.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via AI Features ↗2024-04-09 CVE-2024-2734 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.8 Patched in 4.8.9
- Medium · 6.4 Bold Page Builder <= 4.8.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via "Price List" Element ↗2024-04-09 CVE-2024-2735 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.8 Patched in 4.8.9
- Medium · 6.4 Bold Page Builder <= 4.8.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via HTML Tags ↗2024-04-09 CVE-2024-2736 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.8 Patched in 4.8.9
- Medium · 6.4 Bold Page Builder <= 4.8.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Widget URL Attribute ↗2024-04-05 CVE-2024-3266 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.8 Patched in 4.8.9
- 2024-04-05 CVE-2024-3267 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.8 Patched in 4.8.9
- Medium · 6.4 Bold Page Builder <= 4.7.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via class ↗2024-03-25 CVE-2024-30179 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.7.6 Patched in 4.7.7
- Medium · 5.4 Bold Page Builder <= 4.8.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Icon Link ↗2024-02-12 CVE-2024-1160 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.0 Patched in 4.8.1
- Medium · 5.4 Bold Page Builder <= 4.8.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button URL ↗2024-02-12 CVE-2024-1157 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.0 Patched in 4.8.1
- Medium · 6.4 Bold Page Builder <= 4.8.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Raw Content ↗2024-02-12 CVE-2024-1159 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.8.0 Patched in 4.8.1
- Medium · 6.4 Bold Page Builder <= 4.6.1 - Authenticated (Contributor+) Stored Cross-Site Scripting ↗2023-12-05 CVE-2023-49823 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.6.1 Patched in 4.7.0
- 2022-06-20 CVE-2022-2089 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects < 4.3.3 Patched in 4.3.3
Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.
CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 8.1.12 · WP 7.0
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2026-05-04 50K+ → 40K+ down after 1072 days in tier
- 2023-05-28 60K+ → 50K+ down
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
-
Elementor Website Builder – more than just a page builder 10M+ installs · 4.5★ · 3 shared tags A -
Page Builder: Pagelayer – Drag and Drop website builder 400K+ installs · 3.9★ · 3 shared tags B -
Colibri Page Builder 90K+ installs · 4.4★ · 3 shared tags A -
Post and Page Builder by BoldGrid – Visual Drag and Drop Editor 50K+ installs · 4.7★ · 3 shared tags A -
TemplateSpare – 1000+ WordPress Starter Templates & Full Site Migration Tool | 1-Click Import/Export & No-Code Builder 10K+ installs · 4.0★ · 3 shared tags B -
SKT Page Builder 2K+ installs · 3.5★ · 3 shared tags B
Embed this report card
Drop a live Pulse card for Bold Page Builder into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/bold-page-builder" width="480" height="300" style="border:0" loading="lazy" title="Bold Page Builder — Plugin Pulse"></iframe> Bold Page Builder: 40K+ active installs, 3.6★ (66 reviews). Plugin Pulse (WP Mayor), as of 2026-08-25. https://plugins.wpmayor.com/plugin/bold-page-builder