Better Revisions Security & Risk Analysis

wordpress.org/plugins/better-revisions

Extend your Revisions: Add important fields like "Permalink" or "Status" to the revisions for a better Content Management.

90 active installs v0.5 PHP + WP 4.4+ Updated Apr 13, 2023
historypage-revisionpost-revisionrevisionrevisions
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Better Revisions Safe to Use in 2026?

Generally Safe

Score 85/100

Better Revisions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The 'better-revisions' plugin v0.5 exhibits a strong security posture based on the provided static analysis. The absence of any detected dangerous functions, unsanitized taint flows, or raw SQL queries is highly positive. Furthermore, all observed outputs are properly escaped, and there are no file operations or external HTTP requests, which significantly reduces the attack surface. The presence of a nonce check is also a good security practice.

However, the complete lack of capability checks, despite the presence of a nonce check, is a notable concern. While the attack surface is currently reported as zero, the absence of proper authorization checks on any potential future entry points could leave the plugin vulnerable. The vulnerability history being completely clean is a good sign, but it's important to remember this is a snapshot in time and doesn't guarantee future safety.

In conclusion, 'better-revisions' v0.5 appears to be well-coded from a security perspective, adhering to many best practices. The primary area for improvement would be the implementation of robust capability checks to ensure that only authorized users can interact with the plugin's functionality. This, combined with the already low attack surface and absence of critical code flaws, suggests a relatively low overall risk, but vigilance is still recommended.

Key Concerns

  • Missing capability checks
Vulnerabilities
None known

Better Revisions Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Better Revisions Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
5 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped5 total outputs
Attack Surface

Better Revisions Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actioninitbetter-revisions.php:92
actioninitbetter-revisions.php:94
actionwp_loadedbetter-revisions.php:112
actionpost_updatedbetter-revisions.php:114
actionwp_restore_post_revisionbetter-revisions.php:116
actionadmin_enqueue_scriptsbetter-revisions.php:120
filter_wp_post_revision_fieldsbetter-revisions.php:125
Maintenance & Trust

Better Revisions Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.0
Last updatedApr 13, 2023
PHP min version
Downloads9K

Community Trust

Rating90/100
Number of ratings2
Active installs90
Developer Profile

Better Revisions Developer Profile

slehner

1 plugin · 90 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Better Revisions

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/better-revisions/js/revisions.js
Script Paths
/wp-content/plugins/better-revisions/js/revisions.js

HTML / DOM Fingerprints

JS Globals
revisions_js_object
FAQ

Frequently Asked Questions about Better Revisions