
After Content Security & Risk Analysis
wordpress.org/plugins/after-contentAdds post pagination, related content, author info, social sharing buttons, post meta, text, image and banner after posts content.
Is After Content Safe to Use in 2026?
Generally Safe
Score 85/100After Content has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "after-content" plugin v1.5 exhibits a generally strong security posture with no known historical vulnerabilities. The static analysis reveals a limited attack surface, with only one AJAX handler identified and no REST API routes, shortcodes, or cron events that appear to be publicly accessible or unprotected. The plugin demonstrates good practices by utilizing nonces and capability checks on its entry points, and a majority of its SQL queries use prepared statements.
However, there are several areas of concern. The taint analysis indicates "flows with unsanitized paths," which, while not classified as critical or high severity in this instance, points to a potential for path traversal vulnerabilities if not properly handled. Furthermore, the plugin has a significantly low rate of proper output escaping (only 12%), which is a major red flag. This means that user-supplied data displayed on the frontend could be vulnerable to Cross-Site Scripting (XSS) attacks.
While the vulnerability history is clean, the code analysis reveals weaknesses that, if exploited, could lead to security issues. The low rate of output escaping, in particular, represents a substantial risk that needs immediate attention. In conclusion, the plugin has strengths in its limited attack surface and use of basic security checks, but the significant lack of output escaping and the presence of unsanitized paths are considerable weaknesses that lower its overall security score.
Key Concerns
- Low output escaping rate
- Unsanitized paths in taint flows
After Content Security Vulnerabilities
After Content Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
After Content Attack Surface
AJAX Handlers 1
WordPress Hooks 27
Scheduled Events 1
Maintenance & Trust
After Content Maintenance & Trust
Maintenance Signals
Community Trust
After Content Alternatives
Pure Metafields
pure-metafields
Pure Metafields is very light weight plugin tused to create custom metabox for any post type like page, post and your custom post type support it.
Advanced Query Loop
advanced-query-loop
Transform your Query Loop blocks into powerful, flexible content engines! 🚀
Related Posts By PickPlugins
related-post
Display Related Post under post by taxonomy and terms.
Post Meta Inspector
post-meta-inspector
Peer inside your post meta
Post Meta Data Manager
post-meta-data-manager
View, edit, search, and manage post meta, user meta, and taxonomy meta directly from WordPress edit screens—no database access needed.
After Content Developer Profile
1 plugin · 10 total installs
How We Detect After Content
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/after-content/after-content.css/wp-content/plugins/after-content/js/facebook.js/wp-content/plugins/after-content/js/twitter.js/wp-content/plugins/after-content/js/google-plus.jsafter-content.css?ver=1.5