
More Types Security & Risk Analysis
wordpress.org/plugins/more-typesAdds any number of extra Post types, besides Post and Page, for the WordPess Admin. Also allows for special editing rights for specific User roles for …
Is More Types Safe to Use in 2026?
Generally Safe
Score 85/100More Types has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "more-types" v1.2 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and a complete lack of identified vulnerabilities in its history suggest a well-maintained and secure codebase. Furthermore, the static analysis reveals a very small attack surface with no discoverable AJAX handlers, REST API routes, shortcodes, or cron events, all of which are highly protected or absent. The plugin also demonstrates good practices regarding SQL queries, using prepared statements exclusively. However, a significant concern lies in the output escaping, where only 36% of outputs are properly escaped. This indicates a potential for cross-site scripting (XSS) vulnerabilities, especially if user-provided data is reflected in the output without adequate sanitization. While no taint flows or dangerous functions were detected, the incomplete output escaping presents a notable risk that warrants attention. The presence of file operations and a single nonce check without any capability checks further suggests areas where more robust security controls might be beneficial. Overall, while the plugin avoids common and severe vulnerabilities, the output escaping deficiency is a critical weakness that needs to be addressed to achieve a truly secure state.
Key Concerns
- Low output escaping coverage
- No capability checks found
More Types Security Vulnerabilities
More Types Code Analysis
Output Escaping
Data Flow Analysis
More Types Attack Surface
WordPress Hooks 17
Maintenance & Trust
More Types Maintenance & Trust
Maintenance Signals
Community Trust
More Types Alternatives
Post Admin Word Count
post-admin-word-count
Adds a sortable word count column to the admin post list for all public post types. Efficient, lightweight and built with modern best practices.
SuperCPT
super-cpt
Insanely easy and attractive custom post types, custom post meta, and custom taxonomies
More Taxonomies
more-taxonomies
Add more taxonomies to your WordPress installation.
At A Glance Widget Plus
at-a-glance-widget-plus
A WordPress plugin to extend the core at a glance widget. This adds available custom post types and their count on at a glance widget.
Abandon Themes Admin
abandon-theme-options
This is a WordPress plugin that adds an admin options page to your theme and all the main options a theme designer would need.
More Types Developer Profile
2 plugins · 1K total installs
How We Detect More Types
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/more-types/more-types-object.php/wp-content/plugins/more-types/more-types-settings-object.phpHTML / DOM Fingerprints
more_types_script