
Post Meta Box Order Security & Risk Analysis
wordpress.org/plugins/post-meta-box-orderEasily change the order of the meta boxes on the posts screen.
Is Post Meta Box Order Safe to Use in 2026?
Generally Safe
Score 85/100Post Meta Box Order has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the "post-meta-box-order" plugin v2.0 indicates a generally strong security posture based on the provided data. The absence of any identified dangerous functions, raw SQL queries, unescaped output, file operations, or external HTTP requests is commendable. Furthermore, the plugin appears to have no traceable taint flows, suggesting that data sanitation and handling are robust.
The vulnerability history also reflects positively, with no known CVEs, past or present. This lack of past vulnerabilities, combined with the clean static analysis, suggests a mature and well-maintained codebase. The plugin's minimal attack surface, with no exposed AJAX handlers, REST API routes, shortcodes, or cron events, further contributes to its security.
However, a notable absence of any nonce checks or capability checks across its entry points is a significant concern. While the current analysis shows no direct vulnerabilities, this lack of authorization checks could potentially expose the plugin to CSRF or privilege escalation if new entry points were introduced or if existing behavior could be manipulated by unauthenticated users. The overall conclusion is that the plugin is currently secure based on the provided data, but the lack of authentication mechanisms for any potential interactions is a potential area for future risk.
Key Concerns
- Missing nonce checks
- Missing capability checks
Post Meta Box Order Security Vulnerabilities
Post Meta Box Order Code Analysis
Post Meta Box Order Attack Surface
WordPress Hooks 1
Maintenance & Trust
Post Meta Box Order Maintenance & Trust
Maintenance Signals
Community Trust
Post Meta Box Order Alternatives
Ocean Extra
ocean-extra
Ocean Extra adds extra features and flexibility to the OceanWP theme for a turbocharged experience.
Attesa Extra
attesa-extra
Add extra features to Attesa WordPress theme
WebPage Custom Schema (Schema.org JSON-LD)
webpage-custom-schema-schema-org-json-ld
WebPage Schema Plugin allows you to use your custom full-featured schema. Schema (JSON-LD) is the most important factor in search engine optimization.
Metabox Glue
cubecolour-metabox-glue
Glues the editor metaboxes in place so they cannot be repositioned or minimised.
Custom Order Meta Box
custom-order-meta-box
This plugin adds a custom meta box on WooCommerce order pages in the WordPress admin dashboard. With this plugin, store administrators can view all me …
Post Meta Box Order Developer Profile
9 plugins · 20K total installs
How We Detect Post Meta Box Order
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-meta-box-order/