NH Related Posts Security & Risk Analysis

wordpress.org/plugins/nh-related-posts

Display related posts automatically at the end of single posts based on categories.

0 active installs v1.0.4 PHP 7.4+ WP 6.0+ Updated Dec 23, 2025
post-relationrelated-postswordpress-plugin
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is NH Related Posts Safe to Use in 2026?

Generally Safe

Score 100/100

NH Related Posts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "nh-related-posts" v1.0.4 plugin exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, cron events, or file operations indicates a minimal attack surface, with zero unprotected entry points. Furthermore, the code adheres to secure development practices by not utilizing dangerous functions, performing all SQL queries with prepared statements, and ensuring all output is properly escaped. The plugin also shows no signs of known vulnerabilities, with zero CVEs recorded in its history. This combination of a small attack surface and rigorous adherence to security best practices in the code itself points to a highly secure plugin. The only area where a deduction might be considered, albeit a minor one based on the absence of specific evidence, is the complete lack of nonce and capability checks. While the static analysis found no exploitable entry points, as the plugin grows or is extended, the absence of these standard WordPress security mechanisms could become a concern if new entry points are introduced without proper authorization and verification.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

NH Related Posts Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

NH Related Posts Release Timeline

v1.0.4Current
v1.0.3
v1.0.2
v1.0.1
v1.0
Code Analysis
Analyzed Apr 16, 2026

NH Related Posts Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
7 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped7 total outputs
Attack Surface

NH Related Posts Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionwp_enqueue_scriptsincludes/enqueue.php:11
filterthe_contentincludes/post.php:13
Maintenance & Trust

NH Related Posts Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 23, 2025
PHP min version7.4
Downloads228

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

NH Related Posts Developer Profile

NAZMUL

2 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect NH Related Posts

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/nh-related-posts/assets/main.css
Version Parameters
nh-related-posts/assets/main.css?ver=

HTML / DOM Fingerprints

CSS Classes
nhrepo-related-posts
FAQ

Frequently Asked Questions about NH Related Posts