(Simply) Guest Author Name Security & Risk Analysis

wordpress.org/plugins/guest-author-name

Create a post and override the author name with one or more names or text. You can also create a link for the author name field

3K active installs v4.42 PHP + WP 4.1+ Updated Feb 22, 2026
authorguest-author-nameoverride-author-name
98
A · Safe
CVEs total2
Unpatched0
Last CVEJul 4, 2025
Safety Verdict

Is (Simply) Guest Author Name Safe to Use in 2026?

Generally Safe

Score 98/100

(Simply) Guest Author Name has a strong security track record. Known vulnerabilities have been patched promptly.

2 known CVEsLast CVE: Jul 4, 2025Updated 1mo ago
Risk Assessment

The "guest-author-name" plugin v4.42 exhibits a generally strong security posture based on the static analysis. The absence of a significant attack surface with unprotected entry points is a positive indicator. Furthermore, the code demonstrates good practices with 100% of SQL queries using prepared statements and a high percentage of properly escaped output. The presence of nonce and capability checks also contributes to a more secure implementation.

However, the plugin's vulnerability history is a notable concern. With two known medium-severity vulnerabilities, both related to Cross-Site Scripting (XSS), it suggests a recurring weakness in input sanitization or output escaping for certain scenarios. While no vulnerabilities are currently unpatched, the historical pattern warrants vigilance. The taint analysis showing no unsanitized flows is reassuring for the current version, but the past issues highlight that this may not always be the case.

In conclusion, the "guest-author-name" plugin v4.42 has made positive strides in securing its codebase, particularly in its handling of database queries and general output. Nevertheless, the historical prevalence of XSS vulnerabilities indicates a persistent area of risk that should be monitored closely in future versions. The lack of immediate critical or high risks in the static analysis is encouraging, but the past vulnerability trend is a significant weakness.

Key Concerns

  • Medium severity XSS vulnerabilities in history
  • Two known CVEs in vulnerability history
Vulnerabilities
2

(Simply) Guest Author Name Security Vulnerabilities

CVEs by Year

1 CVE in 2024
2024
1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2025-24764medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

(Simply) Guest Author Name <= 4.36 - Authenticated (Contributor+) Stored Cross-Site Scripting

Jul 4, 2025 Patched in 4.40 (18d)
CVE-2024-0254medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

(Simply) Guest Author Name <= 4.34 - Authenticated (Contributor+) Stored Cross-Site Scripting

Jan 26, 2024 Patched in 4.35 (186d)
Code Analysis
Analyzed Mar 16, 2026

(Simply) Guest Author Name Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
42 escaped
Nonce Checks
1
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

86% escaped49 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<sfly-guest-author> (sfly-guest-author.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

(Simply) Guest Author Name Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 37
actionadmin_noticesguest-author-notices.php:2
actionadmin_initguest-author-notices.php:3
actionadmin_menusfly-guest-author-settings.php:12
actionadmin_initsfly-guest-author-settings.php:13
actionwp_enqueue_scriptssfly-guest-author.php:45
actionget_sidebarsfly-guest-author.php:46
filterwp_list_comments_argssfly-guest-author.php:50
actionadd_meta_boxessfly-guest-author.php:58
actionsave_postsfly-guest-author.php:59
actionquick_edit_custom_boxsfly-guest-author.php:63
actionmanage_posts_custom_columnsfly-guest-author.php:64
filtermanage_edit-post_columnssfly-guest-author.php:65
actionadmin_enqueue_scriptssfly-guest-author.php:66
filterthe_authorsfly-guest-author.php:151
filterget_the_author_display_namesfly-guest-author.php:152
actionampforwp_modify_author_namesfly-guest-author.php:156
filterget_the_author_display_namesfly-guest-author.php:157
actionthe_postsfly-guest-author.php:159
filterauthor_linksfly-guest-author.php:160
filterget_the_author_linksfly-guest-author.php:161
filterget_the_author_urlsfly-guest-author.php:162
filterampforwp_author_descriptionsfly-guest-author.php:163
filterauthor_descriptionsfly-guest-author.php:164
filterget_the_author_descriptionsfly-guest-author.php:165
filterget_the_author_idsfly-guest-author.php:166
filterauthor_idsfly-guest-author.php:167
filterget_avatarsfly-guest-author.php:168
filterget_avatar_urlsfly-guest-author.php:169
filterwpseo_canonicalsfly-guest-author.php:172
actionpre_get_postssfly-guest-author.php:174
filtertd_wp_booster_module_constructorsfly-guest-author.php:176
actioncomment_form_topsfly-guest-author.php:177
filterbody_classsfly-guest-author.php:178
filterget_comment_authorsfly-guest-author.php:263
filterget_comment_author_linksfly-guest-author.php:264
filterauthor_linksfly-guest-author.php:1076
filterget_the_author_display_namesfly-guest-author.php:1077
Maintenance & Trust

(Simply) Guest Author Name Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 22, 2026
PHP min version
Downloads78K

Community Trust

Rating94/100
Number of ratings23
Active installs3K
Developer Profile

(Simply) Guest Author Name Developer Profile

A. Jones

5 plugins · 4K total installs

76
trust score
Avg Security Score
96/100
Avg Patch Time
121 days
View full developer profile
Detection Fingerprints

How We Detect (Simply) Guest Author Name

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/guest-author-name/assets/guest-author-post.js
Script Paths
/wp-content/plugins/guest-author-name/assets/guest-author-post.js
Version Parameters
guest_author_post_scripts?ver=1.10

HTML / DOM Fingerprints

CSS Classes
sfly_guest-author-post
Data Attributes
guest_author_url_selector_singleguest_author_open_new_windowguest_author_remove_linkguest_author_name_quickeditguest_author_disable_for_commentsguest_author_name_admin+1 more
JS Globals
jQuery
FAQ

Frequently Asked Questions about (Simply) Guest Author Name