Juiz Outdated Post Message Security & Risk Analysis

wordpress.org/plugins/juiz-outdated-post-message

This plugin adds a message before or after your post content when this post is outdated

80 active installs v1.0.5 PHP + WP 4.0+ Updated Dec 28, 2024
daysmessageoutdateoutdatedpost
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Juiz Outdated Post Message Safe to Use in 2026?

Generally Safe

Score 92/100

Juiz Outdated Post Message has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "juiz-outdated-post-message" plugin version 1.0.5 exhibits a generally good security posture, particularly in its handling of SQL queries and the absence of external HTTP requests or file operations. The static analysis reveals no critical or high-severity issues in taint analysis, and there is no known vulnerability history, suggesting a low risk of exploitation through common attack vectors like SQL injection or cross-site scripting originating from these areas. However, a significant concern arises from the limited output escaping, with over half of the observed outputs not being properly sanitized. While the attack surface is small and all identified entry points appear to have some form of protection (either through implicit WordPress handling or capability checks, although capability checks are explicitly listed as 0, indicating a potential oversight in the analysis or implementation), the unescaped output represents a potential avenue for cross-site scripting (XSS) vulnerabilities if the data processed by the shortcode is not inherently safe. The lack of explicit nonce checks, even with a limited attack surface, is another area that could be strengthened to prevent cross-site request forgery (CSRF) attacks, though its impact is mitigated by the plugin's apparent focus and limited functionality.

Key Concerns

  • Unescaped output detected
  • Missing nonce checks
Vulnerabilities
None known

Juiz Outdated Post Message Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Juiz Outdated Post Message Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
14
15 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

52% escaped29 total outputs
Attack Surface

Juiz Outdated Post Message Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[outdated] juiz-outdated-post-message.php:165
WordPress Hooks 7
actionadmin_menuadmin\jodpm-admin.inc.php:46
actionadd_meta_boxesadmin\jodpm-admin.inc.php:78
actionsave_postadmin\jodpm-admin.inc.php:111
filteradmin_initadmin\jodpm-admin.inc.php:150
actioninitjuiz-outdated-post-message.php:44
actionwp_enqueue_scriptsjuiz-outdated-post-message.php:56
actionthe_contentjuiz-outdated-post-message.php:127
Maintenance & Trust

Juiz Outdated Post Message Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 28, 2024
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings5
Active installs80
Developer Profile

Juiz Outdated Post Message Developer Profile

Geoffrey

6 plugins · 5K total installs

90
trust score
Avg Security Score
94/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Juiz Outdated Post Message

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/juiz-outdated-post-message/css/juiz-odpm-styles.css
Version Parameters
juiz-outdated-post-message/css/juiz-odpm-styles.css?ver=1.0.5

HTML / DOM Fingerprints

CSS Classes
juiz-outdated-messagejodpm-topjodpm-bottom
Data Attributes
id="jodpm-top"id="jodpm-bottom"
Shortcode Output
[outdated]
FAQ

Frequently Asked Questions about Juiz Outdated Post Message