
Controlled Draft Publisher Security & Risk Analysis
wordpress.org/plugins/controlled-draft-publisherPublishes one draft post every configurable interval, with logging and an admin dashboard.
Is Controlled Draft Publisher Safe to Use in 2026?
Generally Safe
Score 100/100Controlled Draft Publisher has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The controlled-draft-publisher plugin v1.4 exhibits a generally strong security posture, primarily due to the absence of known vulnerabilities and a healthy approach to code security. The static analysis reveals no dangerous functions, SQL queries are exclusively prepared, and there are no identified taint flows with unsanitized paths. Furthermore, the plugin demonstrates diligent use of nonce checks and capability checks for its limited entry points.
However, a notable concern arises from the output escaping. With 60% of outputs properly escaped, it indicates that 40% of the plugin's output might be vulnerable to Cross-Site Scripting (XSS) attacks. While there are no direct indications of XSS in the taint analysis, poorly escaped output is a common vector for such vulnerabilities, especially in conjunction with other potential weaknesses. The plugin's vulnerability history is clean, which is a positive sign, suggesting past development practices have been secure. Nonetheless, the moderate output escaping rate is the primary area of risk that warrants attention.
Key Concerns
- Moderate output escaping rate
Controlled Draft Publisher Security Vulnerabilities
Controlled Draft Publisher Code Analysis
Output Escaping
Data Flow Analysis
Controlled Draft Publisher Attack Surface
WordPress Hooks 4
Scheduled Events 3
Maintenance & Trust
Controlled Draft Publisher Maintenance & Trust
Maintenance Signals
Community Trust
Controlled Draft Publisher Alternatives
Cron Jobs
leira-cron-jobs
Easily manage and monitor your WordPress cron jobs from a clean, intuitive interface.
Cronjob Scheduler
cronjob-scheduler
Cronjob Scheduler allows you to automate regular tasks and actions within your WordPress installation!
Simple Auto Post Scheduler
simple-auto-post-scheduler
Schedule posts to be published at specific times and intervals with an easy-to-use interface.
Blog2Social: Social Media Auto Post & Scheduler
blog2social
Automatically share and schedule your WordPress content on top social platforms like Facebook, Instagram, LinkedIn, TikTok, and more.
Action Scheduler
action-scheduler
Action Scheduler - Job Queue for WordPress
Controlled Draft Publisher Developer Profile
2 plugins · 70 total installs
How We Detect Controlled Draft Publisher
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/controlled-draft-publisher/css/cdp-admin.css/wp-content/plugins/controlled-draft-publisher/js/cdp-admin.js/wp-content/plugins/controlled-draft-publisher/js/cdp-admin.jscontrolled-draft-publisher/css/cdp-admin.css?ver=controlled-draft-publisher/js/cdp-admin.js?ver=HTML / DOM Fingerprints
cdp-dashboard-wrappercdp-graph-containercdp-stats-gridcdp-log-tablecdp-log-entry<!-- Controlled Draft Publisher Dashboard --><!-- Controlled Draft Publisher Settings --><!-- Controlled Draft Publisher Stats --><!-- Controlled Draft Publisher Log -->data-cdp-intervaldata-cdp-post-typesdata-cdp-loggingdata-cdp-posts-per-rundata-cdp-categoriescdp_admin_ajax_objectcdp_data_for_chart