
last updated Security & Risk Analysis
wordpress.org/plugins/last-updatedMark posts as significantly updated an display them in a widget.
Is last updated Safe to Use in 2026?
Generally Safe
Score 85/100last updated has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'last-updated' plugin v2.1 exhibits a generally strong security posture with no identified vulnerabilities in its history and a limited attack surface. The absence of AJAX handlers, REST API routes, shortcodes, and cron events, coupled with no recorded CVEs, indicates diligent development practices and a low likelihood of common plugin exploits.
However, the static analysis reveals a critical concern: 0% of the 28 output operations are properly escaped. This presents a significant risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data or data processed by the plugin could be rendered directly into the page without sanitization. While the plugin uses prepared statements for its single SQL query and includes capability checks, the lack of output escaping is a glaring weakness that overshadows these positive aspects. Further investigation into the nature of the outputs is recommended to fully gauge the XSS risk.
Given the plugin's clean vulnerability history and minimal attack surface, the primary area for immediate improvement is output escaping. Addressing this deficiency would significantly enhance the plugin's overall security, moving it towards a more robust and secure state.
Key Concerns
- Unescaped output detected
last updated Security Vulnerabilities
last updated Code Analysis
SQL Query Safety
Output Escaping
last updated Attack Surface
WordPress Hooks 5
Maintenance & Trust
last updated Maintenance & Trust
Maintenance Signals
Community Trust
last updated Alternatives
Widget Builder
widget-builder
Widget Builder uses native WordPress editing interface to provide a unique tool to build custom widgets for your site(s).
Simple Page to Sidebar
simple-page-to-sidebar
Simple Page to Sidebar lets you simply add page content to a sidebar. No more, no less.
CPT Calender Widget for WordPress
cpt-calender-widget
Create Custom Post and and select CPT from dropdown.
Multiple Sidebar Generator
multiple-sidebar-generator
Easily assign custom, widget-enabled sidebars to any page.
Ownyourblog Banner Widget
ownyourblog-banner-widget
Simple, but powerful widget to show any banner you want in your sidebar. One-click solution!
last updated Developer Profile
2 plugins · 110 total installs
How We Detect last updated
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/last-updated/languages//wp-content/plugins/last-updated/js/mw_lastupdated_script.jsHTML / DOM Fingerprints
mw_lastupdatedname="mw_significant_update"id="mw_significant_update_true"id="mw_significant_update_false"class="mw_lastupdated_time"<input type="radio" id="mw_significant_update_true" name="mw_significant_update" value="true"><label for="mw_significant_update_true"><input type="radio" id="mw_significant_update_false" name="mw_significant_update" value="false" checked="checked"><label for="mw_significant_update_false">