
Fast Post Lists Security & Risk Analysis
wordpress.org/plugins/fast-post-listsProvide shortcodes to display a filtered list of posts, grouped by category/tag, with optional thumbnails.
Is Fast Post Lists Safe to Use in 2026?
Generally Safe
Score 92/100Fast Post Lists has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "fast-post-lists" plugin v0.7.1 exhibits a generally good security posture based on the provided static analysis. It avoids dangerous functions, performs all SQL queries using prepared statements, has no file operations, and no external HTTP requests. The plugin also has a clean vulnerability history with zero recorded CVEs, indicating a history of stable and secure development.
However, there are significant concerns regarding output escaping. The analysis shows that 100% of the identified outputs are not properly escaped, presenting a high risk of Cross-Site Scripting (XSS) vulnerabilities. While the plugin has a single capability check and a shortcode as an entry point, the lack of output escaping on any output is a critical flaw that could allow attackers to inject malicious scripts into the website.
In conclusion, while the plugin's foundation is strong with secure database interactions and a clean history, the complete absence of output escaping is a major security weakness that needs immediate attention. This single issue overshadows the positive aspects of the plugin's current state and exposes users to significant XSS risks.
Key Concerns
- 0% output escaping
- 0 nonces on entry points
Fast Post Lists Security Vulnerabilities
Fast Post Lists Code Analysis
Output Escaping
Fast Post Lists Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Fast Post Lists Maintenance & Trust
Maintenance Signals
Community Trust
Fast Post Lists Alternatives
Easy Content Lists
easy-content-lists
Shortcodes for easily listing all your pages, posts, taxonomies, and tags.
Recently Updated Pages and Posts
recently-updated-pages-and-posts
Creates a sidebar widget that lists recently updated pages and posts including newly published items.
A-Z Indexing startup
a-z-indexing-startup
This is a simple plugin that provides an A-Z index of the posts displayed on a particular page based on the post title.
Thesis Footer Tool
thesis-footer-tool
Provides a simple way to manage items in and around the footer of a Thesis Theme.
CC-List-Posts
cc-list-posts
This plugin adds similar to wp_list_pages, missing function and shortcode wp_list_posts with pagination support.
Fast Post Lists Developer Profile
11 plugins · 22K total installs
How We Detect Fast Post Lists
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fast-post-lists/admin.js/wp-content/plugins/fast-post-lists/admin.jsHTML / DOM Fingerprints
post_index_group_head[fu_postlist]<div class="post_index_group_head">