Folderra – Smart Folder Organizer for WordPress Pages & Posts Security & Risk Analysis

wordpress.org/plugins/folderra-smart-folder-organizer

Visual folder management for WordPress — organize pages and posts into smart folders and keep your media library clean.

0 active installs v1.3.1 PHP 7.4+ WP 6.0+ Updated Mar 10, 2026
admin-toolscontent-organizationfolderfoldersmedia-folders
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Folderra – Smart Folder Organizer for WordPress Pages & Posts Safe to Use in 2026?

Generally Safe

Score 100/100

Folderra – Smart Folder Organizer for WordPress Pages & Posts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 24d ago
Risk Assessment

The folderra-smart-folder-organizer plugin v1.3.2 presents a mixed security posture. Its strengths lie in the absence of known CVEs, a high percentage of prepared SQL statements, and a reasonable number of nonce and capability checks. However, significant concerns arise from the substantial attack surface exposed through AJAX handlers, with a notable 7 out of 25 handlers lacking authentication checks. Furthermore, the taint analysis reveals 3 flows with unsanitized paths, categorized as high severity, which could potentially lead to various security vulnerabilities if exploited. The absence of past vulnerabilities is positive, suggesting a generally well-maintained codebase, but this should not overshadow the immediate risks identified in the current version's code. A balanced conclusion is that while there are no historical vulnerabilities, the current static analysis highlights critical areas requiring immediate attention, particularly the unprotected AJAX endpoints and the high-severity taint flows.

Key Concerns

  • Unprotected AJAX handlers
  • High severity unsanitized paths (taint)
  • Moderate output escaping
Vulnerabilities
None known

Folderra – Smart Folder Organizer for WordPress Pages & Posts Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Folderra – Smart Folder Organizer for WordPress Pages & Posts Code Analysis

Dangerous Functions
0
Raw SQL Queries
7
36 prepared
Unescaped Output
178
300 escaped
Nonce Checks
24
Capability Checks
19
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

84% prepared43 total queries

Output Escaping

63% escaped478 total outputs
Data Flows
3 unsanitized

Data Flow Analysis

9 flows3 with unsanitized paths
<class-folderra-media-organizer> (includes\class-folderra-media-organizer.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
7 unprotected

Folderra – Smart Folder Organizer for WordPress Pages & Posts Attack Surface

Entry Points25
Unprotected7

AJAX Handlers 25

authwp_ajax_fold82sm_get_mini_analyticsincludes\class-fold82sm-mini-analytics.php:20
authwp_ajax_fold82sm_media_scan_batchincludes\class-folderra-media-organizer.php:37
authwp_ajax_fold82sm_media_deep_scan_batchincludes\class-folderra-media-organizer.php:38
authwp_ajax_fold82sm_media_hash_batchincludes\class-folderra-media-organizer.php:39
authwp_ajax_fold82sm_media_get_tabincludes\class-folderra-media-organizer.php:40
authwp_ajax_fold82sm_media_apply_actionincludes\class-folderra-media-organizer.php:41
authwp_ajax_fold82sm_media_undo_batchincludes\class-folderra-media-organizer.php:42
authwp_ajax_fold82sm_media_where_usedincludes\class-folderra-media-organizer.php:43
authwp_ajax_fold82sm_save_post_orderincludes\wpsmartfolder-automatic.php:706
authwp_ajax_fold82sm_duplicate_postincludes\wpsmartfolder-automatic.php:737
authwp_ajax_fold82sm_bulk_add_to_folderincludes\wpsmartfolder-automatic.php:798
authwp_ajax_fold82sm_bulk_trashincludes\wpsmartfolder-automatic.php:828
authwp_ajax_fold82sm_trash_postincludes\wpsmartfolder-automatic.php:856
authwp_ajax_fold82sm_create_smart_folder_autoincludes\wpsmartfolder-automatic.php:878
authwp_ajax_fold82sm_save_folders_orderwpsmartfolder.php:2406
authwp_ajax_fold82sm_save_page_orderwpsmartfolder.php:2430
authwp_ajax_fold82sm_delete_folderwpsmartfolder.php:2467
authwp_ajax_fold82sm_get_content_in_folderwpsmartfolder.php:2491
authwp_ajax_fold82sm_get_available_contentwpsmartfolder.php:2600
authwp_ajax_fold82sm_add_content_to_folderwpsmartfolder.php:2681
authwp_ajax_fold82sm_remove_content_from_folderwpsmartfolder.php:2707
authwp_ajax_fold82sm_duplicate_pagewpsmartfolder.php:2729
authwp_ajax_fold82sm_create_folder_from_templatewpsmartfolder.php:2800
authwp_ajax_fold82sm_update_folder_namewpsmartfolder.php:2866
authwp_ajax_fold82sm_save_folder_selectionwpsmartfolder.php:2903
WordPress Hooks 26
actiontemplate_redirectincludes\class-fold82sm-mini-analytics.php:19
actioninitincludes\class-fold82sm-mini-analytics.php:23
actionwp_after_insert_postincludes\class-folderra-media-organizer.php:32
actionadd_attachmentincludes\class-folderra-media-organizer.php:33
actiondelete_attachmentincludes\class-folderra-media-organizer.php:34
actionadmin_enqueue_scriptsincludes\class-folderra-media-organizer.php:46
actioninitincludes\wpsmartfolder-automatic.php:16
actionadmin_menuincludes\wpsmartfolder-automatic.php:64
filteradmin_body_classwpsmartfolder.php:88
actionin_admin_headerwpsmartfolder.php:158
actionadmin_noticeswpsmartfolder.php:186
filteradmin_footer_textwpsmartfolder.php:193
filterupdate_footerwpsmartfolder.php:222
actioninitwpsmartfolder.php:245
actionadd_meta_boxeswpsmartfolder.php:296
actioninitwpsmartfolder.php:315
actioninitwpsmartfolder.php:400
actionadmin_menuwpsmartfolder.php:440
actionadd_meta_boxeswpsmartfolder.php:2936
actionadmin_enqueue_scriptswpsmartfolder.php:2992
actionenqueue_block_editor_assetswpsmartfolder.php:3100
actionadmin_enqueue_scriptswpsmartfolder.php:3126
filterplugin_row_metawpsmartfolder.php:3312
actionadmin_noticeswpsmartfolder.php:3337
actionplugins_loadedwpsmartfolder.php:3449
actionplugins_loadedwpsmartfolder.php:3727
Maintenance & Trust

Folderra – Smart Folder Organizer for WordPress Pages & Posts Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 10, 2026
PHP min version7.4
Downloads810

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Folderra – Smart Folder Organizer for WordPress Pages & Posts Developer Profile

davelabs

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Folderra – Smart Folder Organizer for WordPress Pages & Posts

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/folderra-smart-folder-organizer/assets/css/admin/admin-notices.css/wp-content/plugins/folderra-smart-folder-organizer/assets/css/admin/dashboard.css/wp-content/plugins/folderra-smart-folder-organizer/assets/css/admin/folders-list.css/wp-content/plugins/folderra-smart-folder-organizer/assets/css/admin/settings.css/wp-content/plugins/folderra-smart-folder-organizer/assets/css/admin/special-folder.css/wp-content/plugins/folderra-smart-folder-organizer/assets/js/admin/dashboard.js/wp-content/plugins/folderra-smart-folder-organizer/assets/js/admin/folders-list.js/wp-content/plugins/folderra-smart-folder-organizer/assets/js/admin/settings.js+1 more
Version Parameters
folderra-smart-folder-organizer/assets/css/admin/admin-notices.css?ver=folderra-smart-folder-organizer/assets/css/admin/dashboard.css?ver=folderra-smart-folder-organizer/assets/css/admin/folders-list.css?ver=folderra-smart-folder-organizer/assets/css/admin/settings.css?ver=folderra-smart-folder-organizer/assets/css/admin/special-folder.css?ver=folderra-smart-folder-organizer/assets/js/admin/dashboard.js?ver=folderra-smart-folder-organizer/assets/js/admin/folders-list.js?ver=folderra-smart-folder-organizer/assets/js/admin/settings.js?ver=folderra-smart-folder-organizer/assets/js/admin/special-folder.js?ver=

HTML / DOM Fingerprints

CSS Classes
folderra-admin-pagefold82sm-noticefolderra-dashboard-foldersfold82sm-folder-list-tablefolderra-folder-rowfolderra-folder-namefolderra-folder-count
HTML Comments
<!-- Main version constant --><!-- Backward compatibility for PRO plugin integration --><!-- INTERNATIONALIZATION --><!-- NOTICES MANAGEMENT -->+9 more
Data Attributes
data-folder-iddata-folder-namedata-parent-id
JS Globals
window.fold82sm_folders_list_datawindow.fold82sm_folder_details_datawindow.fold82sm_settings_data
FAQ

Frequently Asked Questions about Folderra – Smart Folder Organizer for WordPress Pages & Posts