
List Custom Post with featured image Security & Risk Analysis
wordpress.org/plugins/list-custom-post-with-featured-imageSimple plugin. Show feature image, title with pagination on anywhere using shortcode.
Is List Custom Post with featured image Safe to Use in 2026?
Generally Safe
Score 92/100List Custom Post with featured image has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "list-custom-post-with-featured-image" v1.2 demonstrates a generally strong security posture based on the provided static analysis. There are no identified dangerous functions, external HTTP requests, or file operations. All SQL queries utilize prepared statements, and all observed outputs are properly escaped, indicating good development practices in these areas. The absence of known vulnerabilities and CVEs in its history further contributes to a positive security outlook. The attack surface is minimal, consisting solely of a single shortcode, and importantly, there are no unprotected entry points identified in the static analysis. Taint analysis also yielded no critical or high severity issues, suggesting no readily exploitable data flows.
Despite these strengths, a significant concern arises from the complete absence of nonce checks and capability checks. While the static analysis reported zero unprotected entry points, the lack of these fundamental WordPress security mechanisms on the shortcode leaves it vulnerable to CSRF (Cross-Site Request Forgery) attacks if the shortcode's functionality, when processed, involves any state-changing operations or sensitive data manipulation. This oversight is a critical weakness that could be exploited by an attacker to perform actions on behalf of an unsuspecting user. The plugin's vulnerability history of zero CVEs is excellent, but the lack of these checks represents a potential for future vulnerabilities if the plugin's functionality evolves without addressing this gap.
Key Concerns
- Missing nonce checks
- Missing capability checks
List Custom Post with featured image Security Vulnerabilities
List Custom Post with featured image Code Analysis
List Custom Post with featured image Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
List Custom Post with featured image Maintenance & Trust
Maintenance Signals
Community Trust
List Custom Post with featured image Alternatives
Basic URL ShortCodes
basic-url-shortcodes
Provides simple shortcodes to output essential WordPress URLs inside posts, pages and widgets.
WP Smart Pagination
wp-smart-pagination
Improve your WordPress powered blog pagination with extra input number where users can jump to any (x) page.
Advanced Custom Fields: W4 Post List Bridge
advanced-custom-fields-w4-post-list-bridge
This plugin provides a [post_field field="field-name"] shortcode connecting an Advanced Custom Fields field to your W4 Post List list templa …
CC-List-Posts
cc-list-posts
This plugin adds similar to wp_list_pages, missing function and shortcode wp_list_posts with pagination support.
NextPage Link
nextpage-link
A link to the next page can be displayed using a short code.
List Custom Post with featured image Developer Profile
6 plugins · 3K total installs
How We Detect List Custom Post with featured image
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/list-custom-post-with-featured-image/css/lcpfi_style.csslist-custom-post-with-featured-image/css/lcpfi_style.css?ver=HTML / DOM Fingerprints
lcpfi-post-gallerylcpfi-sectionlcpfi-wrapperlcpfi-pagination-sectionlcpfi-glpaginationpost_typelimitorderpagination<div class="lcpfi-post-gallery"><div class="row"><div class="col-md-3 lcpfi-section"><div class="wpb_wrapper"><div class="lcpfi-wrapper"><a href=""></a></div><h4><a href="