
bbPress Unread Posts v2 Security & Risk Analysis
wordpress.org/plugins/bbpress-unread-posts-v2Simple Plugin which shows whether a registered user has read a Post or not.
Is bbPress Unread Posts v2 Safe to Use in 2026?
Generally Safe
Score 85/100bbPress Unread Posts v2 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "bbpress-unread-posts-v2" v1.0.8 plugin exhibits a generally strong security posture from a static analysis perspective. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events as entry points significantly limits the plugin's attack surface. Furthermore, the use of prepared statements for all SQL queries and the presence of capability checks are positive indicators of secure coding practices. The taint analysis showing no unsanitized paths or critical/high severity flows further reinforces this. However, a significant concern arises from the fact that 100% of output is not properly escaped. This means that any data displayed by the plugin, if it originates from user input or external sources without proper sanitization, could be vulnerable to cross-site scripting (XSS) attacks. The lack of known vulnerabilities in its history is a positive sign, suggesting a well-maintained codebase or a lack of targeted attacks. Despite the lack of direct code vulnerabilities identified in static analysis, the unescaped output represents a tangible risk that could be exploited.
Key Concerns
- Unescaped output
bbPress Unread Posts v2 Security Vulnerabilities
bbPress Unread Posts v2 Code Analysis
Output Escaping
Data Flow Analysis
bbPress Unread Posts v2 Attack Surface
WordPress Hooks 8
Maintenance & Trust
bbPress Unread Posts v2 Maintenance & Trust
Maintenance Signals
Community Trust
bbPress Unread Posts v2 Alternatives
bbP topic count
bbp-topic-count
For bbPress - adds any combination of topics, replies and totals under the authors avatar in topics and replies
Post Comments as bbPress Topics
bbpress-post-topics
Replace the comments on your WordPress blog posts with topics from an integrated bbPress install
topicPolls Pro for bbPress
gd-topic-polls
Implement a polls system for topics in bbPress powered forums, with settings to control voting, poll closing, display of results and more.
bbp last post
bbp-last-post
For bbPress - changes the freshness displays to date
bbPress New Topics
bbpress-new-topics
Displays a "new" label on topics that are unread or have unread replies for all keymasters and moderators.
bbPress Unread Posts v2 Developer Profile
1 plugin · 70 total installs
How We Detect bbPress Unread Posts v2
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bbpress-unread-posts-v2/style.cssHTML / DOM Fingerprints
bbpresss_unread_posts_iconbbpress_mark_all_read_wrapperbbpress_mark_all_readmarkedUnreadbbpresss_unread_posts_amount