No Sub-Category Posts in Loops Security & Risk Analysis

wordpress.org/plugins/no-sub-category-posts-in-loop

Once activated, only posts from the current category are displayed in your loop (no posts from sub cats).

100 active installs v0.4 PHP + WP 3.1+ Updated Nov 19, 2015
categoriescatsloopposts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is No Sub-Category Posts in Loops Safe to Use in 2026?

Generally Safe

Score 85/100

No Sub-Category Posts in Loops has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The plugin "no-sub-category-posts-in-loop" v0.4 exhibits a generally strong security posture based on the static analysis and vulnerability history provided. The absence of any reported CVEs, including currently unpatched ones, is a significant positive indicator. Furthermore, the code analysis reveals no dangerous functions, no direct SQL queries (all use prepared statements), no file operations, and no external HTTP requests. This suggests a well-contained and thoughtfully developed plugin, minimizing common attack vectors. However, a few areas warrant attention. The plugin has a total of 2 output instances, with only 50% properly escaped. This means one output is potentially vulnerable to cross-site scripting (XSS) if user-supplied data is ever reflected without proper sanitization. Additionally, the lack of any nonce checks or capability checks, while seemingly acceptable given the zero attack surface reported, could become a concern if the plugin were to be extended or integrated with features that introduce new entry points.

Key Concerns

  • Partial output escaping detected
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

No Sub-Category Posts in Loops Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

No Sub-Category Posts in Loops Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

50% escaped2 total outputs
Attack Surface

No Sub-Category Posts in Loops Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
filterposts_whereft-no-subcats-in-loop.php:114
actiontemplate_redirectft-no-subcats-in-loop.php:115
actionadmin_noticesft-no-subcats-in-loop.php:137
actionadmin_initft-no-subcats-in-loop.php:140
Maintenance & Trust

No Sub-Category Posts in Loops Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedNov 19, 2015
PHP min version
Downloads6K

Community Trust

Rating100/100
Number of ratings3
Active installs100
Developer Profile

No Sub-Category Posts in Loops Developer Profile

Glenn Ansley

7 plugins · 670 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect No Sub-Category Posts in Loops

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about No Sub-Category Posts in Loops