Post grid and filter ultimate Security & Risk Analysis

wordpress.org/plugins/post-grid-and-filter-ultimate

A quick, easy way to display WordPress post in grid view and post grid with filter. Also work with Gutenberg shortcode block.

5K active installs v1.7.4 PHP + WP 4.0+ Updated Feb 20, 2026
category-filterpostpost-category-filterpost-filterpost-grid
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Post grid and filter ultimate Safe to Use in 2026?

Generally Safe

Score 100/100

Post grid and filter ultimate has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The plugin 'post-grid-and-filter-ultimate' v1.7.4 exhibits a generally good security posture, with no known vulnerabilities or critical taint flows reported. The code analysis reveals strong adherence to security best practices, including 100% use of prepared statements for SQL queries and a high percentage of properly escaped output. The presence of nonce and capability checks across identified entry points further bolsters its security. However, a notable concern is the presence of the `unserialize` function, which can be a significant risk if used with untrusted input, although no specific exploitable flows were identified in the taint analysis. The limited attack surface, consisting of shortcodes and cron events, also contributes positively to its security. While the lack of historical vulnerabilities is a positive sign, the `unserialize` function warrants careful monitoring and potential mitigation to ensure continued security.

Key Concerns

  • Presence of unserialize function
Vulnerabilities
None known

Post grid and filter ultimate Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Post grid and filter ultimate Release Timeline

v1.7.4Current
v1.7.3
v1.7.2
v1.7.1
v1.2
v1.1.5
Code Analysis
Analyzed Mar 16, 2026

Post grid and filter ultimate Code Analysis

Dangerous Functions
1
Raw SQL Queries
0
0 prepared
Unescaped Output
25
220 escaped
Nonce Checks
6
Capability Checks
6
File Operations
3
External Requests
1
Bundled Libraries
0

Dangerous Functions Found

unserialize$info = @unserialize($data);wpos-analytics\includes\class-anylc-admin.php:696

Output Escaping

90% escaped245 total outputs
Attack Surface

Post grid and filter ultimate Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[pgaf_post_grid] includes\shortcode\pgafu-post-grid.php:192
[pgaf_post_filter] includes\shortcode\pgafu-postgrid-filter.php:240
WordPress Hooks 31
actionadmin_menuincludes\admin\class-pgafu-admin.php:20
actionadmin_initincludes\admin\class-pgafu-admin.php:23
filterplugin_row_metaincludes\admin\class-pgafu-admin.php:29
actionadmin_footerincludes\admin\class-pgafu-admin.php:32
actioninitincludes\admin\supports\gutenberg-block.php:226
actionenqueue_block_assetsincludes\admin\supports\gutenberg-block.php:236
actionenqueue_block_editor_assetsincludes\admin\supports\gutenberg-block.php:261
filterblock_categories_allincludes\admin\supports\gutenberg-block.php:283
actionadmin_enqueue_scriptsincludes\class-pgafu-script.php:20
actionwp_enqueue_scriptsincludes\class-pgafu-script.php:23
actionwp_enqueue_scriptsincludes\class-pgafu-script.php:26
actionplugins_loadedpost-grid-and-filter-ultimate.php:107
actionupdate_option_active_pluginspost-grid-and-filter-ultimate.php:145
actionadmin_noticespost-grid-and-filter-ultimate.php:211
actionadmin_menuwpos-analytics\includes\class-anylc-admin.php:45
actionadmin_menuwpos-analytics\includes\class-anylc-admin.php:48
actionadmin_initwpos-analytics\includes\class-anylc-admin.php:51
actionadmin_noticeswpos-analytics\includes\class-anylc-admin.php:54
actionadmin_footerwpos-analytics\includes\class-anylc-admin.php:57
actionwp_loadedwpos-analytics\includes\class-anylc-admin.php:60
actioninitwpos-analytics\includes\class-anylc-admin.php:63
filtercron_scheduleswpos-analytics\includes\class-anylc-admin.php:66
actionwpos_monthly_cron_hookwpos-analytics\includes\class-anylc-admin.php:69
actionrest_api_initwpos-analytics\includes\class-anylc-admin.php:72
filterrest_pre_serve_requestwpos-analytics\includes\class-anylc-admin.php:585
actionadmin_enqueue_scriptswpos-analytics\includes\class-anylc-script.php:20
actionactivated_pluginwpos-analytics\wpos-analytics.php:244
actionplugins_loadedwpos-analytics\wpos-analytics.php:258
actionadmin_menuwpos-plugins\includes\admin\class-espbw-admin.php:19
actionadmin_enqueue_scriptswpos-plugins\includes\class-espbw-script.php:19
actionplugins_loadedwpos-plugins\wpos-recommendation.php:185

Scheduled Events 1

wpos_monthly_cron_hook
Maintenance & Trust

Post grid and filter ultimate Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 20, 2026
PHP min version
Downloads143K

Community Trust

Rating94/100
Number of ratings31
Active installs5K
Developer Profile

Post grid and filter ultimate Developer Profile

Essential Plugin

33 plugins · 204K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
212 days
View full developer profile
Detection Fingerprints

How We Detect Post grid and filter ultimate

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/post-grid-and-filter-ultimate/assets/css/style.css/wp-content/plugins/post-grid-and-filter-ultimate/assets/js/frontend.js/wp-content/plugins/post-grid-and-filter-ultimate/assets/js/admin.js
Script Paths
/wp-content/plugins/post-grid-and-filter-ultimate/assets/js/frontend.js/wp-content/plugins/post-grid-and-filter-ultimate/assets/js/admin.js
Version Parameters
post-grid-and-filter-ultimate/assets/css/style.css?ver=post-grid-and-filter-ultimate/assets/js/frontend.js?ver=post-grid-and-filter-ultimate/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
pgafu-grid-filter-wrappgafu-grid-filter-wrap
HTML Comments
<!-- Admin Notice --><!-- Recommended Plugins Starts --><!-- Recommended Plugins Ends --><!-- Plugin Analytics Data -->+1 more
Shortcode Output
[post_grid_filter [post_grid
FAQ

Frequently Asked Questions about Post grid and filter ultimate