
Easy Post Re-Order Security & Risk Analysis
wordpress.org/plugins/easy-post-re-orderThis Easy Post Re-order, Re order your Posts and Media (Images) using the Drag and Drop easily update your sort. Also add Ajax Features for easy order …
Is Easy Post Re-Order Safe to Use in 2026?
Generally Safe
Score 92/100Easy Post Re-Order has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "easy-post-re-order" v1.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and performing nonce checks. It also has no recorded vulnerability history, suggesting a generally stable and secure codebase thus far.
However, significant security concerns arise from its attack surface. The plugin exposes two AJAX handlers, both of which lack authentication checks. This means that any unauthenticated user could potentially interact with these handlers, posing a risk if they can be manipulated to perform unintended actions. While the taint analysis and static code signals show no critical or high-severity issues like unsanitized paths or dangerous functions, the absence of proper authorization on critical entry points is a glaring weakness.
In conclusion, while the plugin's vulnerability history is clean and it avoids common pitfalls like raw SQL or unescaped output, the lack of authentication on its AJAX endpoints is a serious security oversight that requires immediate attention. This could lead to unauthorized actions or potential privilege escalation if these endpoints handle sensitive data or functionality.
Key Concerns
- 2 unprotected AJAX handlers
- Low percentage of properly escaped output
Easy Post Re-Order Security Vulnerabilities
Easy Post Re-Order Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Easy Post Re-Order Attack Surface
AJAX Handlers 2
WordPress Hooks 16
Maintenance & Trust
Easy Post Re-Order Maintenance & Trust
Maintenance Signals
Community Trust
Easy Post Re-Order Alternatives
Custom Content
custom-content
Custom Content plugin Extend the Visual Composer with ES Modules (ES Custom Content) display custom contents using shortcode, widgets and VC module.
Wp List Category Posts With Pagination
wp-list-category-posts-with-pagination
Wp List Category Posts With Pagination allows you to list posts from a category into a post or page with pagination using the [es-catlist]
Custom Content Display in WooCommerce Invoicess
custom-content-for-invoices
WooCommerce Custom Content for Invoices plugin display custom contents or values into your invoices.
Easy Post Re-Order Developer Profile
5 plugins · 210 total installs
How We Detect Easy Post Re-Order
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easy-post-re-order/css/easy-post-re-order.css/wp-content/plugins/easy-post-re-order/js/easy-post-re-order.js/wp-content/plugins/easy-post-re-order/js/easy-post-re-order.jseasy-post-re-order/css/easy-post-re-order.css?ver=easy-post-re-order/js/easy-post-re-order.js?ver=HTML / DOM Fingerprints
espro_sortableespro_drag_handledata-post-iddata-new-ordereasysoftonic_post_re_orderESPROS