
PageApp Security & Risk Analysis
wordpress.org/plugins/pageappExtensions to Wordpress wp-json for the PageApp API and mobile framework
Is PageApp Safe to Use in 2026?
Generally Safe
Score 100/100PageApp has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'pageapp' v1.5.6 plugin exhibits a generally strong security posture, with no known critical vulnerabilities and excellent adherence to best practices in several key areas. The absence of external HTTP requests, the exclusive use of prepared statements for all SQL queries, and a high percentage of properly escaped output are significant strengths. The plugin also demonstrates an awareness of security by including nonce and capability checks. However, the static analysis does reveal some areas for concern that temper an otherwise positive assessment. Specifically, the presence of three flows with unsanitized paths in the taint analysis, including one of high severity, indicates a potential for vulnerabilities related to file operations or user-supplied input being used insecurely. While the attack surface appears minimal, the existence of these unsanitized paths is a critical oversight that could be exploited. The plugin's vulnerability history being completely clear is a very positive sign, suggesting responsible development and maintenance. In conclusion, 'pageapp' v1.5.6 is built on a solid foundation of secure coding practices, but the identified taint flow issues present a notable risk that needs to be addressed to achieve a truly robust security profile.
Key Concerns
- High severity taint flow with unsanitized path
- Flows with unsanitized paths identified
- File operations present (potential risk)
PageApp Security Vulnerabilities
PageApp Release Timeline
PageApp Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
PageApp Attack Surface
WordPress Hooks 35
Maintenance & Trust
PageApp Maintenance & Trust
Maintenance Signals
Community Trust
PageApp Alternatives
REST API for Relevanssi
rest-api-for-relevanssi
The plugin provides a REST API endpoint for the Relevanssi search plugin.
Ajax Load More for Relevanssi
ajax-load-more-for-relevanssi
Ajax Load More extension that adds compatibility with Relevanssi.
REST API blocks
rest-api-blocks
Add gutenberg blocks data into the post / page REST API endpoints.
Disable REST API for Real
sar-disable-rest-api
Really prevents the REST API from handling requests (default) or require user to be logged in.
SearchWP API
searchwp-api
Run advanced searches via the WordPress REST API and SearchWP.
PageApp Developer Profile
14 plugins · 400 total installs
How We Detect PageApp
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pageapp/inc/cachelib.php/wp-content/plugins/pageapp/inc/httplib.php/wp-content/plugins/pageapp/inc/jsonlib.php/wp-content/plugins/pageapp/inc/pluginlib.php/wp-content/plugins/pageapp/inc/restlib.php/wp-content/plugins/pageapp/inc/settingslib.php/wp-content/plugins/pageapp/inc/utilslib.phpHTML / DOM Fingerprints
id="pageapp_apioptions"id="pageapp_relevanssi"id="pageapp_whitelist"id="pageapp_addimages"id="pageapp_categories"id="pageapp_customposts"+22 more/wp-json/pageapp/wp-json/pageapp/v1