Easy WP Page Navigation Security & Risk Analysis

wordpress.org/plugins/easy-wp-page-navigation

Easy to add page navigation in your blog

900 active installs v1.4 PHP + WP 3.0+ Updated Apr 7, 2016
admineasy-wp-page-navigationpage-navigationpage-navigation-in-wordpresstaxonomies
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy WP Page Navigation Safe to Use in 2026?

Generally Safe

Score 85/100

Easy WP Page Navigation has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The plugin "easy-wp-page-navigation" v1.4 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any reported CVEs, critical taint flows, dangerous functions, or file operations is highly encouraging. Furthermore, the plugin demonstrates good coding practices by utilizing prepared statements for all SQL queries and a high percentage of properly escaped output, minimizing the risk of common web vulnerabilities like SQL injection and cross-site scripting (XSS). The lack of external HTTP requests also reduces the attack surface related to external service compromise.

However, a notable concern is the complete absence of nonce checks and capability checks. While the static analysis reports zero unprotected entry points, the lack of these fundamental WordPress security mechanisms on any potential entry points (even if none are currently identified) represents a significant theoretical weakness. If future updates were to introduce AJAX handlers, REST API routes, or shortcodes without proper authorization checks, this could lead to severe vulnerabilities. The vulnerability history being completely clean is a positive sign, suggesting either robust development or a lack of active exploitation, but the absence of built-in authorization checks remains a fundamental risk.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
  • 12% of outputs unescaped
Vulnerabilities
None known

Easy WP Page Navigation Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Easy WP Page Navigation Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
14 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

88% escaped16 total outputs
Attack Surface

Easy WP Page Navigation Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionplugins_loadedeasy-wp-pagenavigation.php:55
actionwp_enqueue_scriptseasy-wp-pagenavigation.php:58
actionadmin_initeasy-wp-pagenavigation.php:61
actionadmin_menueasy-wp-pagenavigation.php:64
actionadmin_enqueue_scriptseasy-wp-pagenavigation.php:67
filterplugin_action_linkseasy-wp-pagenavigation.php:70
filterpre_get_postsinc\functions.php:79
Maintenance & Trust

Easy WP Page Navigation Maintenance & Trust

Maintenance Signals

WordPress version tested4.5.33
Last updatedApr 7, 2016
PHP min version
Downloads31K

Community Trust

Rating96/100
Number of ratings10
Active installs900
Developer Profile

Easy WP Page Navigation Developer Profile

PenciDesign

2 plugins · 940 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy WP Page Navigation

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-wp-page-navigation/css/easy-wp-pagenavigation.css/wp-content/plugins/easy-wp-page-navigation/css/admin.css/wp-content/plugins/easy-wp-page-navigation/js/admin.js
Script Paths
/wp-content/plugins/easy-wp-page-navigation/js/admin.js
Version Parameters
easy-wp-page-navigation/css/easy-wp-pagenavigation.css?ver=easy-wp-page-navigation/css/admin.css?ver=easy-wp-page-navigation/js/admin.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Easy WP Page Navigation