
P2 Resolved Posts Security & Risk Analysis
wordpress.org/plugins/p2-resolved-postsLightweight GTD for the P2 WordPress theme.
Is P2 Resolved Posts Safe to Use in 2026?
Generally Safe
Score 85/100P2 Resolved Posts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "p2-resolved-posts" v0.3.6 exhibits a generally good security posture due to the absence of known vulnerabilities and a strong adherence to secure coding practices in certain areas. The static analysis reveals no identified CVEs, no dangerous functions, no file operations, and no external HTTP requests, which significantly reduces the potential attack surface. Furthermore, all SQL queries are protected by prepared statements, and a nonce check is present, indicating an awareness of common WordPress security pitfalls. However, a notable concern arises from the taint analysis, which identified two flows with unsanitized paths. While these are not categorized as critical or high severity, they represent potential avenues for injection-type vulnerabilities if not properly handled downstream.
Another area of concern is the output escaping. With 56% of outputs properly escaped, there is a significant portion that is not, potentially leading to cross-site scripting (XSS) vulnerabilities if user-supplied data is rendered directly. The absence of capability checks is also a weakness, as it implies that functionalities might be accessible to users without the necessary permissions. Despite the lack of critical security flaws and a clean vulnerability history, the identified taint flows and incomplete output escaping warrant careful attention to prevent potential security incidents.
Key Concerns
- Taint flows with unsanitized paths identified
- Less than 100% output escaping
- No capability checks for entry points
P2 Resolved Posts Security Vulnerabilities
P2 Resolved Posts Code Analysis
Output Escaping
Data Flow Analysis
P2 Resolved Posts Attack Surface
WordPress Hooks 15
Maintenance & Trust
P2 Resolved Posts Maintenance & Trust
Maintenance Signals
Community Trust
P2 Resolved Posts Alternatives
P2 By Email
p2-by-email
Use P2? Use email? Use both!
AdMinimal Bar – Minimize the Admin Bar
adminimal-bar
AdMinimal Bar is designed to streamline your workflow and enhance productivity. With AdMinimal Bar, you can minimize the WordPress admin bar on the fr …
REDSHAPE Easy Labels
redshape-easy-labels
Organize content with colored labels, notes, and dashboard widgets with 5 visualization types.
Mailchimp for WooCommerce
mailchimp-for-woocommerce
Connect your store to your Mailchimp audience to track sales, create targeted emails, send abandoned cart emails, and more.
Schedule Post Changes With PublishPress Future: Unpublish, Delete, Change Status, Trash, Change Categories
post-expirator
PublishPress Future can make scheduled changes to your content. You can unpublish posts, move posts to a new status, update the categories, and more.
P2 Resolved Posts Developer Profile
213 plugins · 19.2M total installs
How We Detect P2 Resolved Posts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/p2-resolved-posts/css/p2-resolved-posts.css/wp-content/plugins/p2-resolved-posts/js/p2-resolved-posts.js/wp-content/plugins/p2-resolved-posts/js/p2-resolved-posts.jsp2-resolved-posts/css/p2-resolved-posts.css?ver=p2-resolved-posts/js/p2-resolved-posts.js?ver=HTML / DOM Fingerprints
p2-resolved-posts-resolvedp2-resolved-posts-unresolvedp2_resolved_posts_vars