Aged Content Message Security & Risk Analysis

wordpress.org/plugins/aged-content-message

Displays a message at the top of single posts published x years ago or earlier, informing about content that may be outdated.

20 active installs v1.4.4 PHP + WP 3.9+ Updated Jan 5, 2024
contentdatemessagenotificationtext
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Aged Content Message Safe to Use in 2026?

Generally Safe

Score 85/100

Aged Content Message has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The aged-content-message plugin, version 1.4.4, exhibits a strong security posture based on the provided static analysis. The plugin has no identified AJAX handlers, REST API routes, shortcodes, or cron events, resulting in a zero attack surface for direct entry points. Furthermore, the code analysis reveals no dangerous functions, file operations, or external HTTP requests. All SQL queries are properly prepared, and a high percentage of output is correctly escaped, indicating good coding practices regarding data handling and prevention of common injection vulnerabilities.

Taint analysis shows no identified flows, suggesting no apparent vulnerabilities related to unsanitized data processing. The vulnerability history is also clean, with no known CVEs or past security issues recorded. The presence of a capability check is a positive sign for access control where applicable. The complete absence of vulnerabilities in its history further reinforces its secure reputation.

Overall, this plugin appears to be developed with security in mind. The minimal attack surface, robust code signals concerning SQL and output escaping, and lack of any vulnerability history are significant strengths. While the absence of nonce checks on AJAX (due to zero AJAX handlers) and potential unescaped output (though at a low rate) are noted, these are not exploitable issues in the current version's attack surface. The plugin's security is commendable.

Key Concerns

  • No nonce checks on AJAX handlers
  • Minor potential for unescaped output (10%)
Vulnerabilities
None known

Aged Content Message Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Aged Content Message Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
27 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

90% escaped30 total outputs
Attack Surface

Aged Content Message Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionplugins_loadedaged-content-message.php:71
actionadmin_noticesinc\admin.php:6
actionadmin_menuinc\admin.php:7
actionadmin_initinc\admin.php:8
filterthe_contentinc\frontend.php:6
actionwp_headinc\frontend.php:7
Maintenance & Trust

Aged Content Message Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedJan 5, 2024
PHP min version
Downloads4K

Community Trust

Rating80/100
Number of ratings3
Active installs20
Developer Profile

Aged Content Message Developer Profile

Torsten Landsiedel

4 plugins · 2K total installs

88
trust score
Avg Security Score
91/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Aged Content Message

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/aged-content-message/css/aged-content-message.css
Version Parameters
aged-content-message/css/aged-content-message.css?ver=

HTML / DOM Fingerprints

CSS Classes
aged-content-message
Data Attributes
data-aged-content-message
FAQ

Frequently Asked Questions about Aged Content Message