
Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin Security & Risk Analysis
wordpress.org/plugins/paginationAdd customizable WordPress pagination to your website. Easily split long posts and pages into multiple parts for improved navigation and user experien …
Is Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin Safe to Use in 2026?
Generally Safe
Score 99/100Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin has a strong security track record. Known vulnerabilities have been patched promptly.
The 'pagination' plugin v1.2.7 exhibits a generally good security posture, with no identified critical or high severity vulnerabilities in static and taint analysis. The plugin demonstrates strong adherence to security best practices, as evidenced by a high percentage of properly escaped outputs and a significant number of nonce and capability checks. Furthermore, the absence of any unpatched CVEs is a positive sign.
However, there are some areas that warrant attention. The presence of 50% of SQL queries not using prepared statements, while not resulting in immediate high-risk vulnerabilities in this analysis, represents a potential risk for SQL injection if input validation were to be less robust in other areas. The plugin also performs six external HTTP requests, which could be a vector for supply chain attacks or data exfiltration if the target endpoints are compromised or malicious. The limited number of entry points (two AJAX handlers) with no identified unauthenticated access is a strength, but it's crucial to ensure these handlers are thoroughly secured with proper authorization checks.
Historically, the plugin has had three medium-severity Cross-Site Scripting (XSS) vulnerabilities, with the last one being addressed in March 2023. While these are currently patched, this pattern indicates a recurring area of concern that requires ongoing vigilance. The overall security is good due to strong input sanitization and authorization practices evident in the static analysis, but the SQL query and external HTTP request areas, combined with past XSS history, suggest that continuous monitoring and potential code review are advisable to maintain a strong security profile.
Key Concerns
- SQL queries not using prepared statements (50%)
- External HTTP requests (6)
Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
Pagination by BestWebSoft <= 1.2.2 - Authenticated (Administrator+) Stored Cross-Site Scripting
Pagination by BestWebSoft < 1.2.2 - Authenticated (Administrator+) Stored Cross-Site Scripting
Pagination by BestWebSoft <= 1.0.6 - Multiple Cross-Site Scripting
Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin Attack Surface
AJAX Handlers 2
WordPress Hooks 22
Maintenance & Trust
Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin Maintenance & Trust
Maintenance Signals
Community Trust
Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin Alternatives
WP-PageNavi
wp-pagenavi
Adds a more advanced paging navigation interface.
Load More Products for WooCommerce
load-more-products-for-woocommerce
Load products from next page via AJAX with infinite scrolling or load more products button
WP-Paginate
wp-paginate
WP-Paginate is a simple and flexible pagination plugin which provides users with better navigation on your WordPress site.
YITH Infinite Scrolling
yith-infinite-scrolling
Add infinite scrolling to archive post or shop page.
WP PageNavi Style
wp-pagenavi-style
Adds a more styling options to Wp-PageNavi wordpress plugin.
Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin Developer Profile
17 plugins · 207K total installs
How We Detect Pagination by BestWebSoft – Customizable WordPress Content Splitter and Navigation Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pagination/css/style.css/wp-content/plugins/pagination/js/script.js/wp-content/plugins/pagination/includes/class-pgntn-settings.php/wp-content/plugins/pagination/js/script.jspagination/css/style.css?ver=pagination/js/script.js?ver=HTML / DOM Fingerprints
pagination_navpgntn-pagination-wrapperpgntn-pagination-links<!-- general --><!-- This is a placeholder for the settings form -->data-pgntn-settingspgntn_params[pagination][pgntn]