
Post Expiring Security & Risk Analysis
wordpress.org/plugins/post-expiringExpire post by set the date of expiring
Is Post Expiring Safe to Use in 2026?
Generally Safe
Score 85/100Post Expiring has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'post-expiring' v1.4 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events indicates a minimal attack surface, which is further reinforced by the lack of unprotected entry points. The code signals are also encouraging, with no dangerous functions detected, all SQL queries utilizing prepared statements, and a high percentage of output escaping. This suggests robust development practices aimed at preventing common vulnerabilities.
The vulnerability history is equally positive, with no known CVEs recorded for this plugin. This lack of past security incidents, coupled with the clean static analysis, indicates a low likelihood of immediate, exploitable vulnerabilities. However, the complete absence of nonce checks and capability checks on potential entry points (even if there are none currently exposed) represents a potential weakness. If future updates were to introduce new entry points without these essential security measures, it could open the door to vulnerabilities.
In conclusion, 'post-expiring' v1.4 appears to be a well-secured plugin with no apparent critical security flaws. Its strengths lie in its limited attack surface and adherence to secure coding practices like prepared statements and output escaping. The primary area of concern, albeit theoretical at this stage, is the lack of explicit nonce and capability checks, which is a good practice to implement even in plugins with minimal exposed functionality.
Key Concerns
- No nonce checks
- No capability checks
- Some outputs not escaped
Post Expiring Security Vulnerabilities
Post Expiring Code Analysis
Output Escaping
Post Expiring Attack Surface
WordPress Hooks 12
Maintenance & Trust
Post Expiring Maintenance & Trust
Maintenance Signals
Community Trust
Post Expiring Alternatives
WP Post Expires
wp-post-expires
Plugin adds post expires time after which will be performed actions: add prefix to title, move to drafts or trash.
Delete Expired Transients
delete-expired-transients
Delete old, expired transients from WordPress wp_options table
Expiring Posts
expiring-posts
This plugin adds functionality to expire a post on a given date.
VA Simple Expires
va-simple-expires
This is the fork of Simple Expires created by Mr. abmcr. Simple plugin which can set up the term of validity.
Simple Expires
simple-expires
Enable Posts and Pages to automatically expire and change at a certain time, and provide notification of expiration.
Post Expiring Developer Profile
2 plugins · 1K total installs
How We Detect Post Expiring
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-expiring/assets/css/post-expiring.css/wp-content/plugins/post-expiring/assets/js/jquery.datetimepicker.js/wp-content/plugins/post-expiring/assets/js/admin.jsHTML / DOM Fingerprints
expiring-datepickersetexpiringdateedit-expiringdateexpiringdatedivset-expiringdatecancel-expiringdatedata-exdatejQuery