
Listings Post Type Enable Security & Risk Analysis
wordpress.org/plugins/listings-post-type-enableA simple plugin that creates a "listings" custom post type. It is also add a recent listings custom widget and a new category listings widge …
Is Listings Post Type Enable Safe to Use in 2026?
Generally Safe
Score 85/100Listings Post Type Enable has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "listings-post-type-enable" plugin, version 0.1.5, exhibits a generally positive security posture based on the provided static analysis. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events, particularly those lacking authentication or permission checks, significantly limits the plugin's attack surface. Furthermore, the analysis reveals no critical or high-severity taint flows, no dangerous function usage, and all SQL queries are properly prepared. The presence of nonce and capability checks, while only one of each, indicates an awareness of WordPress security best practices.
However, a notable concern lies within the output escaping. With only 32% of the 44 identified outputs being properly escaped, there is a significant risk of Cross-Site Scripting (XSS) vulnerabilities. Attackers could potentially inject malicious scripts through user-supplied data that is not adequately sanitized before being displayed to users. The plugin's vulnerability history is clean, with no recorded CVEs, which is a strong positive. This, combined with the limited attack surface and secure handling of SQL, suggests a potentially well-maintained codebase. Nevertheless, the unescaped output is a substantial weakness that requires immediate attention to prevent potential exploitation.
Key Concerns
- Low percentage of properly escaped output
Listings Post Type Enable Security Vulnerabilities
Listings Post Type Enable Code Analysis
Output Escaping
Listings Post Type Enable Attack Surface
WordPress Hooks 9
Maintenance & Trust
Listings Post Type Enable Maintenance & Trust
Maintenance Signals
Community Trust
Listings Post Type Enable Alternatives
LabTheme Companion
labtheme-companion
The plugin generates multiple custom post types and number of exclusive widgets which are needed for wordpress theme developed by labtheme
Custom Post Type UI
custom-post-type-ui
Admin UI for creating custom content types like post types and taxonomies
Meta Box
meta-box
Meta Box plugin is a powerful, professional developer toolkit to create custom meta boxes and custom fields for your custom post types in WordPress.
Intuitive Custom Post Order
intuitive-custom-post-order
Intuitively reorder Posts, Pages, Custom Post Types, Taxonomies, and Sites with a simple drag-and-drop interface.
Custom Post Type Permalinks
custom-post-type-permalinks
Edit the permalink of custom post type.
Listings Post Type Enable Developer Profile
13 plugins · 3K total installs
How We Detect Listings Post Type Enable
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
ketchupthemes-widget_recent_listings