
Intuitive Custom Post Order Security & Risk Analysis
wordpress.org/plugins/intuitive-custom-post-orderIntuitively reorder Posts, Pages, Custom Post Types, Taxonomies, and Sites with a simple drag-and-drop interface.
Is Intuitive Custom Post Order Safe to Use in 2026?
Generally Safe
Score 99/100Intuitive Custom Post Order has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin 'intuitive-custom-post-order' v3.2.0 exhibits a generally good security posture based on the static analysis, with no reported critical or high severity vulnerabilities in its history. The code analysis indicates a robust implementation of security best practices, including 100% proper output escaping and a high percentage (78%) of SQL queries utilizing prepared statements. Furthermore, all identified AJAX entry points have nonce checks, and four capability checks are present, suggesting a strong emphasis on authorization. The absence of dangerous functions, file operations, and external HTTP requests also contributes positively to its security profile. However, the plugin has a history of four medium severity CVEs, primarily related to SQL Injection, Missing Authorization, and CSRF. While none are currently unpatched, this history indicates a recurring pattern of potential vulnerabilities that, if not meticulously addressed in future updates, could re-emerge. The presence of 3 AJAX handlers, even with auth checks, represents a potential attack surface that, while currently secured, warrants continued vigilance.
Key Concerns
- History of 4 medium severity CVEs
- 3 AJAX handlers represent a potential attack surface
Intuitive Custom Post Order Security Vulnerabilities
CVEs by Year
Severity Breakdown
4 total CVEs
Intuitive Custom Post Order <= 3.1.3 - Missing Authorization to Authenticated Settings Change
Intuitive Custom Post Order <= 3.1.4.1 - Authenticated (Admin+) SQL Injection
Intuitive Custom Post Order <= 3.1.3 - Missing Authorization to Authenticated Settings Change
Intuitive Custom Post Order <= 3.1.3 - Cross-Site Request Forgery
Intuitive Custom Post Order Code Analysis
SQL Query Safety
Output Escaping
Intuitive Custom Post Order Attack Surface
AJAX Handlers 3
WordPress Hooks 22
Maintenance & Trust
Intuitive Custom Post Order Maintenance & Trust
Maintenance Signals
Community Trust
Intuitive Custom Post Order Alternatives
Custom Category Post Order
custom-post-order-category
Order your post by category or custom post type by drag & drop interface.
Simple Custom Post Order
simple-custom-post-order
Easily reorder posts, pages, custom post types, and taxonomies with intuitive drag-and-drop sorting in the WordPress admin.
GAP3 Coders Taxonomy Post Order
gap3coders-taxonomy-post-order
Easily reorder posts within taxonomy terms using drag-and-drop interface. Custom order automatically applies to frontend without any code changes.
Post Types Order
post-types-order
Sort posts and custom post type objects using a drag-and-drop, sortable JavaScript AJAX interface, or through the default WordPress dashboard
Reorder Posts
metronet-reorder-posts
A simple and easy way to reorder your custom post types in WordPress.
Intuitive Custom Post Order Developer Profile
3 plugins · 400K total installs
How We Detect Intuitive Custom Post Order
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/intuitive-custom-post-order/admin/js/common.js/wp-content/plugins/intuitive-custom-post-order/admin/js/tag.js/wp-content/plugins/intuitive-custom-post-order/admin/js/post.js/wp-content/plugins/intuitive-custom-post-order/admin/js/sites.js/wp-content/plugins/intuitive-custom-post-order/admin/css/style.css/wp-content/plugins/intuitive-custom-post-order/admin/js/common.js/wp-content/plugins/intuitive-custom-post-order/admin/js/tag.js/wp-content/plugins/intuitive-custom-post-order/admin/js/post.js/wp-content/plugins/intuitive-custom-post-order/admin/js/sites.js/wp-content/plugins/intuitive-custom-post-order/admin/js/common.js?ver=/wp-content/plugins/intuitive-custom-post-order/admin/js/tag.js?ver=/wp-content/plugins/intuitive-custom-post-order/admin/js/post.js?ver=/wp-content/plugins/intuitive-custom-post-order/admin/js/sites.js?ver=/wp-content/plugins/intuitive-custom-post-order/admin/css/style.css?ver=HTML / DOM Fingerprints
hicpo-settings-wraphicpo-settings-formhicpo-post-type-settingshicpo-taxonomy-settingshicpo-sites-settingshicpo-sortabledata-hicpo-ptdata-hicpo-taxonomydata-hicpo-siteshicpo_order_settingshicpo_order_post_typeshicpo_order_taxonomieshicpo_order_siteshicpo_current_post_typehicpo_current_taxonomy