oik batchmove Security & Risk Analysis

wordpress.org/plugins/oik-batchmove

The oik-batchmove plugin enables you to perform mass updates to the categories assigned to posts. It also enables you to republish posts.

70 active installs v2.5.3 PHP + WP 3.9+ Updated Aug 14, 2025
categorychangerepublishscheduled-republish
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is oik batchmove Safe to Use in 2026?

Generally Safe

Score 100/100

oik batchmove has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The "oik-batchmove" plugin v2.5.3 demonstrates a generally strong security posture based on the provided static analysis. There are no identified dangerous functions, SQL queries are exclusively handled with prepared statements, and no file operations or external HTTP requests are made, significantly reducing common attack vectors. The lack of any recorded CVEs and a clean vulnerability history further contribute to a positive security outlook. However, several areas warrant attention. The absence of nonce checks and capability checks on any entry points, even though the attack surface is currently zero, presents a potential future risk if new functionalities are added without proper security in mind. Additionally, while the number of outputs is small, a significant portion (33%) is not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if any user-controlled data is reflected in these outputs. The taint analysis showing zero flows is reassuring but relies on the completeness of the analysis itself. Overall, the plugin appears to be developed with security in mind, but the lack of robust input validation and authorization checks on potential future entry points, along with unescaped output, represent areas for improvement and continued vigilance.

Key Concerns

  • Unescaped output detected
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

oik batchmove Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

oik batchmove Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

67% escaped3 total outputs
Attack Surface

oik batchmove Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
filterposts_whereadmin\oik-batchmove.php:372
actionafter_plugin_row_oik-batchmove/oik-batchmove.phpoik-batchmove.php:109
actionoik_admin_menuoik-batchmove.php:122
actionadmin_noticesoik-batchmove.php:123
actionoik_loadedoik-batchmove.php:124
actionoik_fields_loadedoik-batchmove.php:125
actionoik_batchmove_hookoik-batchmove.php:126

Scheduled Events 1

oik_batchmove_hook
Maintenance & Trust

oik batchmove Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 14, 2025
PHP min version
Downloads8K

Community Trust

Rating100/100
Number of ratings1
Active installs70
Developer Profile

oik batchmove Developer Profile

bobbingwide

16 plugins · 7K total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
15 days
View full developer profile
Detection Fingerprints

How We Detect oik batchmove

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/oik-batchmove/css/oik-batchmove.css/wp-content/plugins/oik-batchmove/js/oik-batchmove.js
Script Paths
/wp-content/plugins/oik-batchmove/js/oik-batchmove.js
Version Parameters
oik-batchmove/css/oik-batchmove.css?ver=oik-batchmove/js/oik-batchmove.js?ver=

HTML / DOM Fingerprints

CSS Classes
oik-batchmove
HTML Comments
Copyright 2013-2025 Bobbing Wide (email : herb@bobbingwide.com )This program is free software; you can redistribute it and/or modifyYou may NOT assume that you can use any other version of the GPL.This program is distributed in the hope that it will be useful,+20 more
Data Attributes
name="oik_batchmove_option"
FAQ

Frequently Asked Questions about oik batchmove