
ACF Post-2-Post Security & Risk Analysis
wordpress.org/plugins/post-2-post-for-acfAutomatic Two Way (Bidirectional) Relationships with ACF
Is ACF Post-2-Post Safe to Use in 2026?
Generally Safe
Score 100/100ACF Post-2-Post has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided static analysis and vulnerability history, the "post-2-post-for-acf" plugin version 1.7.0 exhibits an exceptionally strong security posture. The code analysis reveals a complete absence of identifiable attack vectors such as AJAX handlers, REST API routes, shortcodes, or cron events that are exposed to users. Furthermore, the plugin demonstrates excellent coding practices by employing prepared statements for all SQL queries and properly escaping all outputs. There are no detected dangerous functions, file operations, external HTTP requests, or any taint flows, indicating a lack of potential for code injection or manipulation through user-supplied data.
The plugin's vulnerability history is equally impressive, with zero recorded CVEs, meaning no known vulnerabilities have been publicly disclosed or patched. This lack of historical issues, combined with the current clean static analysis, suggests a mature and well-maintained codebase. The absence of direct capability checks or nonce checks on entry points is a notable observation, but given the complete lack of entry points in the first place, this does not translate into a direct security risk in this specific version. The plugin's strengths lie in its minimal attack surface and its adherence to secure coding practices for any potential, albeit absent, interactions.
In conclusion, version 1.7.0 of the "post-2-post-for-acf" plugin appears to be highly secure. The absence of any entry points or vulnerabilities, coupled with the strict adherence to secure coding principles like prepared statements and output escaping, makes it a very low-risk component. While the absence of explicit authorization checks on theoretical entry points could be a concern in other plugins, here it is mitigated by the fact that no such entry points exist. This plugin, based on this data, is exceptionally robust.
ACF Post-2-Post Security Vulnerabilities
ACF Post-2-Post Code Analysis
Output Escaping
ACF Post-2-Post Attack Surface
WordPress Hooks 5
Maintenance & Trust
ACF Post-2-Post Maintenance & Trust
Maintenance Signals
Community Trust
ACF Post-2-Post Alternatives
Advanced Custom Fields (ACF®)
advanced-custom-fields
ACF helps customize WordPress with powerful, professional and intuitive fields. Proudly powering over 2 million sites, WordPress developers love ACF.
ACF Content Analysis for Yoast SEO
acf-content-analysis-for-yoast-seo
WordPress plugin that adds the content of all ACF fields to the Yoast SEO score analysis.
Advanced Custom Fields: Extended
acf-extended
All-in-one enhancement suite that improves WordPress & Advanced Custom Fields.
Advanced Custom Fields: Font Awesome Field
advanced-custom-fields-font-awesome
Adds a new 'Font Awesome Icon' field to the popular Advanced Custom Fields plugin.
ACF Photo Gallery Field
navz-photo-gallery
A lightweight extension of Advanced Custom Field (ACF) that adds Photo Gallery field to any post/pages on your WordPress website.
ACF Post-2-Post Developer Profile
1 plugin · 3K total installs
How We Detect ACF Post-2-Post
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
acf-post-2-post<!-- ACF Post-2-Post --><!-- End ACF Post-2-Post --><!-- ACF Post-2-Post --data-acf-post-2-post-field-namedata-acf-post-2-post-post-iddata-acf-post-2-post-field-keyacf_post_2_post