
All Post Listing Block Security & Risk Analysis
wordpress.org/plugins/all-post-listing-blockExample block written with ESNext standard and JSX support – build step required.
Is All Post Listing Block Safe to Use in 2026?
Generally Safe
Score 92/100All Post Listing Block has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the 'all-post-listing-block' plugin version 1.0.0 reveals a strong security posture with no identified entry points, dangerous functions, or SQL injection vulnerabilities. The absence of file operations and external HTTP requests further contributes to a reduced attack surface. However, a significant concern arises from the 50% of outputs that are not properly escaped. This indicates a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is rendered directly without adequate sanitization. Furthermore, the complete lack of nonce and capability checks across all components is a serious oversight, as it leaves the plugin exposed to various forms of unauthorized access and manipulation, particularly if any new entry points are introduced in future versions. The plugin's vulnerability history is clean, with zero recorded CVEs. While this is a positive indicator, it's crucial to remember that historical data does not guarantee future security, especially given the identified output escaping and authorization weaknesses. In conclusion, the plugin exhibits good practices in avoiding common pitfalls like SQL injection and external requests, but the unescaped outputs and missing authorization checks represent significant risks that require immediate attention.
Key Concerns
- Missing nonce checks
- Missing capability checks
- Half of outputs unescaped
All Post Listing Block Security Vulnerabilities
All Post Listing Block Code Analysis
Output Escaping
All Post Listing Block Attack Surface
WordPress Hooks 4
Maintenance & Trust
All Post Listing Block Maintenance & Trust
Maintenance Signals
Community Trust
All Post Listing Block Alternatives
WP responsive FAQ with category plugin
sp-faq
A quick, easy way to add an responsive FAQs page. You can use this plugin as a jQuery UI accordion. Also work with Gutenberg shortcode block.
Advanced Views – Display Custom Fields (ACF, Pods, MetaBox), Posts, CPT and Woo Products anywhere in Gutenberg, Elementor, Divi, Beaver…
acf-views
Display content with full control over selection and layout. Lightweight and compatible with any theme or page builder.
WP Query Creator
wp-query-creator
WP Query Creator provides an interface for creating WP queries as shortcodes.
CC-ID-Column
cc-id-column
This plugin adds a column with post ID before the title column on wp-admin posts list.
CC-List-Posts
cc-list-posts
This plugin adds similar to wp_list_pages, missing function and shortcode wp_list_posts with pagination support.
All Post Listing Block Developer Profile
2 plugins · 100 total installs
How We Detect All Post Listing Block
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/all-post-listing-block/build/index.js/wp-content/plugins/all-post-listing-block/src/post-list-block/editor.css/wp-content/plugins/all-post-listing-block/build/index.jsplugins_url( $index_js, __FILE__ )HTML / DOM Fingerprints
<!-- The following comment is added by the All Post Listing Block plugin -->