
Pages Security & Risk Analysis
wordpress.org/plugins/pagesA WordPress plugin to easily view your pages in the dashboard.
Is Pages Safe to Use in 2026?
Generally Safe
Score 85/100Pages has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "pages" plugin v1.1.0 exhibits a strong security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. Furthermore, the code signals indicate diligent security practices, with no dangerous functions, file operations, or external HTTP requests identified. Notably, all SQL queries are prepared, and all output is properly escaped, mitigating common web vulnerabilities.
The taint analysis reveals no flows with unsanitized paths, further reinforcing the impression of secure coding. The plugin's vulnerability history is also clean, with no recorded CVEs of any severity. This lack of historical vulnerabilities, combined with the robust static analysis findings, suggests a well-maintained and secure plugin.
However, a critical observation is the complete absence of nonce and capability checks across all entry points. While the current version has no exposed entry points to exploit, this is a significant weakness. Should any new entry points be introduced in future versions without proper authentication and authorization checks, it could lead to severe vulnerabilities. The current security is a result of a limited attack surface, not necessarily inherent robust security mechanisms for all potential entry points.
Key Concerns
- Missing nonce checks on all entry points
- Missing capability checks on all entry points
Pages Security Vulnerabilities
Pages Code Analysis
Pages Attack Surface
WordPress Hooks 1
Maintenance & Trust
Pages Maintenance & Trust
Maintenance Signals
Community Trust
Pages Alternatives
Admin Dashboard Last Edits
admin-dashboard-last-edits
Easy and lightweight solution for showing the last edited posts and pages on the admin dashboard.
CW Show on Selected Pages
cw-show-on-selected-pages-sosp
Have you ever tried to display sidebar-content just on selected pages? You can realize this with this widget. You can choose wether you want to displa …
Drafts
drafts
A WordPress plugin to quickly and easily view all your recent draft posts.
Published
published
A WordPress plugin to quickly and easily view all your published posts.
One Click Demo Import
one-click-demo-import
Import your demo content, widgets and theme settings with one click. Theme authors! Enable simple theme demo import for your users.
Pages Developer Profile
16 plugins · 3K total installs
How We Detect Pages
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
pages-posts-widget-wrapperpages-posts-widget