PlugVersions – Easily roll back to previous versions of your plugins. Security & Risk Analysis

wordpress.org/plugins/plugversions

Retains up to three versions when you update a plugin. It works with premium and custom plugins too.

1K active installs v0.2.1 PHP 7.4+ WP 4.9+ Updated Dec 10, 2025
backupplugin-versionsrestorerollbackupdate
98
A · Safe
CVEs total1
Unpatched0
Last CVEDec 23, 2024
Safety Verdict

Is PlugVersions – Easily roll back to previous versions of your plugins. Safe to Use in 2026?

Generally Safe

Score 98/100

PlugVersions – Easily roll back to previous versions of your plugins. has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Dec 23, 2024Updated 3mo ago
Risk Assessment

The plugin "plugversions" v0.2.1 exhibits a generally good security posture based on static analysis, with a strong adherence to secure coding practices such as using prepared statements for all SQL queries and a high percentage of properly escaped output. The limited attack surface, consisting of only one AJAX handler, is notably protected with authentication checks. There are no concerning taint analysis findings, indicating no critical or high severity flows with unsanitized paths.

However, the plugin's vulnerability history presents a significant concern. It has a known high-severity vulnerability in its past, specifically related to missing authorization. While this vulnerability is currently patched, the existence of a past high-severity issue, especially one involving authorization, indicates a potential for similar weaknesses to be introduced or re-introduced in future development. This suggests that while the current code may be clean, ongoing vigilance and thorough code reviews are essential.

In conclusion, "plugversions" v0.2.1 shows strengths in its current code's implementation of secure coding standards and a minimal attack surface. The primary weakness lies in its past vulnerability history, which necessitates a cautious approach and highlights the importance of robust security testing and development processes to prevent recurrence of authorization-related flaws.

Key Concerns

  • Past high severity vulnerability (Missing Authorization)
Vulnerabilities
1

PlugVersions – Easily roll back to previous versions of your plugins. Security Vulnerabilities

CVEs by Year

1 CVE in 2024
2024
Patched Has unpatched

Severity Breakdown

High
1

1 total CVE

CVE-2024-12881high · 8.8Missing Authorization

PlugVersions – Easily rollback to previous versions of your plugins <= 0.0.7 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Creation

Dec 23, 2024 Patched in 0.0.8 (1d)
Code Analysis
Analyzed Mar 16, 2026

PlugVersions – Easily roll back to previous versions of your plugins. Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
26 escaped
Nonce Checks
2
Capability Checks
4
File Operations
3
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped27 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<pr-admin> (admin\pr-admin.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

PlugVersions – Easily roll back to previous versions of your plugins. Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_eos_plugin_reviews_restore_versionadmin\pr-ajax-admin.php:10
WordPress Hooks 11
filterplugin_action_linksadmin\classes\class-plugversions-restoring-link.php:56
filterall_pluginsadmin\classes\class-plugversions-restoring-link.php:58
actionadmin_headadmin\pr-admin.php:25
actionadmin_footeradmin\pr-admin.php:67
actionadmin_initadmin\pr-admin.php:227
filterupgrader_source_selectionadmin\pr-admin.php:342
actionadmin_initadmin\pr-admin.php:419
actionupgrader_process_completeadmin\pr-admin.php:449
actionadmin_noticesadmin\pr-admin.php:492
filterplugin_action_links_plugversions/plugversions.phpadmin\pr-admin.php:534
filtersite_transient_update_pluginsplugversions.php:37
Maintenance & Trust

PlugVersions – Easily roll back to previous versions of your plugins. Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedDec 10, 2025
PHP min version7.4
Downloads20K

Community Trust

Rating88/100
Number of ratings7
Active installs1K
Developer Profile

PlugVersions – Easily roll back to previous versions of your plugins. Developer Profile

Jose Mortellaro

56 plugins · 26K total installs

87
trust score
Avg Security Score
99/100
Avg Patch Time
62 days
View full developer profile
Detection Fingerprints

How We Detect PlugVersions – Easily roll back to previous versions of your plugins.

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about PlugVersions – Easily roll back to previous versions of your plugins.