Netroics Blog Posts Grid Security & Risk Analysis

wordpress.org/plugins/netroics-blog-posts-grid

Netroics Blog Posts Grid is best wordpress plugin to display blog posts at your website! If You use this plugin you will get blog posts awesome design …

0 active installs v1.0 PHP 7.2+ WP 5.2+ Updated Aug 6, 2022
blogblog-designblog-gridblog-layoutnetroics-blog-posts-grid
64
C · Use Caution
CVEs total1
Unpatched1
Last CVEAug 8, 2022
Safety Verdict

Is Netroics Blog Posts Grid Safe to Use in 2026?

Use With Caution

Score 64/100

Netroics Blog Posts Grid has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.

1 known CVE 1 unpatched Last CVE: Aug 8, 2022Updated 3yr ago
Risk Assessment

The "netroics-blog-posts-grid" plugin v1.0 exhibits a mixed security posture. On the positive side, static analysis shows no dangerous functions, all SQL queries utilize prepared statements, and a high percentage of output is properly escaped. There are no file operations or external HTTP requests detected, and the overall attack surface is small with only one shortcode entry point.

However, significant concerns arise from the plugin's vulnerability history. The presence of one unpatched medium severity CVE, specifically Cross-site Scripting (XSS), is a critical red flag. The fact that this vulnerability is from August 2022 and remains unpatched indicates a lack of active maintenance and timely security patching by the developers, leaving existing installations vulnerable.

While the static analysis itself reveals few immediate code-level risks in this specific version, the historical XSS vulnerability coupled with the absence of nonce checks and capability checks on its single entry point (the shortcode) suggests potential avenues for exploitation if the XSS vulnerability isn't addressed or if similar vulnerabilities exist. The lack of any taint analysis results is also notable, though it might simply mean no flows were detectable in this specific version's code.

Key Concerns

  • Unpatched medium severity CVE (XSS)
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
1

Netroics Blog Posts Grid Security Vulnerabilities

CVEs by Year

1 CVE in 2022 · unpatched
2022
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

WF-d67d5662-0cc7-4b14-a50b-15158f6e4239-netroics-blog-posts-gridmedium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Netroics Blog Posts Grid <= 1.0 - Authenticated (Subscriber+) Stored Cross-Site Scripting

Aug 8, 2022Unpatched
Code Analysis
Analyzed Mar 17, 2026

Netroics Blog Posts Grid Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
70 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

92% escaped76 total outputs
Attack Surface

Netroics Blog Posts Grid Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[NetroicsPosts] netroics-test-plugin.php:191
WordPress Hooks 8
actionadmin_menuinc\functions.php:18
actionwp_footerinc\netroics-dynamic-style.php:96
actionwp_enqueue_scriptsnetroics-test-plugin.php:30
actionadmin_enqueue_scriptsnetroics-test-plugin.php:40
actionadmin_enqueue_scriptsnetroics-test-plugin.php:45
actioninitnetroics-test-plugin.php:114
actioninitnetroics-test-plugin.php:194
actionadmin_initnetroics-test-plugin.php:199
Maintenance & Trust

Netroics Blog Posts Grid Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedAug 6, 2022
PHP min version7.2
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Netroics Blog Posts Grid Developer Profile

Md. Murad Hossain

1 plugin · 0 total installs

69
trust score
Avg Security Score
64/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Netroics Blog Posts Grid

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/netroics-blog-posts-grid/css/netroicstp-style.css/wp-content/plugins/netroics-blog-posts-grid/css/netroicstp-font-awesome.min.css/wp-content/plugins/netroics-blog-posts-grid/css/netroicstp-admin-style.css/wp-content/plugins/netroics-blog-posts-grid/js/my-script.js/wp-content/plugins/netroics-blog-posts-grid/js/cp-active.js
Script Paths
/wp-content/plugins/netroics-blog-posts-grid/js/my-script.js/wp-content/plugins/netroics-blog-posts-grid/js/cp-active.js

HTML / DOM Fingerprints

CSS Classes
features__lists_mainfeatures__listsfeature__singlefeature_single_detailsnetroicstp_pagination
HTML Comments
<!-- Start features Lists section --><!-- End features Lists section -->
Shortcode Output
[NetroicsPosts]
FAQ

Frequently Asked Questions about Netroics Blog Posts Grid