
Favorite Post Security & Risk Analysis
wordpress.org/plugins/favorite-postThis is a simple yet another favorite post plugin.
Is Favorite Post Safe to Use in 2026?
Generally Safe
Score 85/100Favorite Post has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "favorite-post" plugin version 1.0 exhibits a mixed security posture. On the positive side, it has a limited attack surface with no REST API routes or cron events, and all identified entry points appear to have some level of authentication protection. Furthermore, all SQL queries are correctly prepared, and there are no recorded vulnerabilities or CVEs, suggesting a history of responsible development. However, significant concerns arise from the static analysis. The use of the `create_function` is a critical red flag due to its potential for code injection. Compounding this is the high percentage of unsanitized taint flows, with two identified as high severity. This indicates that user-supplied data is not being adequately cleaned before being used in potentially sensitive operations. The low percentage of properly escaped output (19%) also presents a significant risk of cross-site scripting (XSS) vulnerabilities, as malicious content could be injected into the website's frontend.
Key Concerns
- High severity unsanitized taint flows
- Low percentage of properly escaped output
- Use of dangerous function create_function
Favorite Post Security Vulnerabilities
Favorite Post Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Favorite Post Attack Surface
AJAX Handlers 1
Shortcodes 2
WordPress Hooks 3
Maintenance & Trust
Favorite Post Maintenance & Trust
Maintenance Signals
Community Trust
Favorite Post Alternatives
Favorites
favorites
Favorites for any post type. Easily add favoriting/liking, wishlists, or any other similar functionality using the developer-friendly API.
Slickstream: Engagement and Conversions
slick-engagement
Use Slickstream to upgrade your site search. Get beautiful as-you-type search, relevant content recommendations, user favorites and more!
CBX Bookmark & Favorite
cbxwpbookmark
Bookmark and Favorite plugin for WordPress with category/list support.
My Favorites
my-favorites
Save user's favorite posts and list them.
Admin Bookmarks
my-admin-bookmarks
Bookmark your favorite posts, pages or custom post types within the WordPress admin
Favorite Post Developer Profile
9 plugins · 370 total installs
How We Detect Favorite Post
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/favorite-post/css/style.css/wp-content/plugins/favorite-post/js/script.jsfavorite-post/style.css?ver=favorite-post/script.js?ver=HTML / DOM Fingerprints
wpf-favoritewpf-not-favoritewfp[favorite-post-btn][favorite-post]