
Post Switch Security & Risk Analysis
wordpress.org/plugins/post-switchPost Switch allows you to switch your editing post right in your admin post edit panel
Is Post Switch Safe to Use in 2026?
Generally Safe
Score 85/100Post Switch has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'post-switch' v1.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by avoiding dangerous functions, performing no file operations or external HTTP requests, and using prepared statements for all SQL queries. Its vulnerability history is clean, with no recorded CVEs, suggesting a generally well-maintained codebase in the past. However, significant security concerns arise from its static analysis. The plugin exposes one AJAX handler that lacks any authentication checks, creating a direct entry point for unauthenticated users. Furthermore, there are no nonce checks or capability checks implemented, leaving the AJAX handler vulnerable to potential unauthorized actions or information disclosure. The limited output escaping is also a concern, with only 25% of outputs properly escaped, increasing the risk of cross-site scripting (XSS) vulnerabilities. The lack of taint analysis data could also indicate a limited scope of testing or that the analysis tool did not identify any flows, which doesn't necessarily mean a lack of vulnerabilities. In conclusion, while the absence of known vulnerabilities and reliance on prepared statements are strengths, the unprotected AJAX endpoint and insufficient input/output validation are critical weaknesses that require immediate attention.
Key Concerns
- AJAX handler without auth checks
- 0 Nonce checks
- 0 Capability checks
- Only 25% output escaping
Post Switch Security Vulnerabilities
Post Switch Code Analysis
Output Escaping
Post Switch Attack Surface
AJAX Handlers 1
WordPress Hooks 1
Maintenance & Trust
Post Switch Maintenance & Trust
Maintenance Signals
Community Trust
Post Switch Alternatives
PublishPress Capabilities – User Role Editor, Access Permissions, User Capabilities, Admin Menus
capability-manager-enhanced
PublishPress Capabilities is the access control plugin. You can manage user capabilities, permissions, user roles, admin menus and more.
Ultimate Dashboard – Custom WordPress Dashboard
ultimate-dashboard
The #1 Plugin to Customize the WordPress Dashboard!
WP Custom Admin Interface
wp-custom-admin-interface
With WP Custom Admin Interface you can easily customise the WordPress admin and login interfaces.
WP Adminify – White Label WordPress, Admin Menu Editor, Login Customizer
adminify
Transform your WordPress admin into a fully white-labeled, organized client dashboard. Customize, Dark mode, Secure, Boost productivity, and more.
Better Admin Bar
better-admin-bar
The WordPress Admin Bar reimagined. Replace the default WordPress admin bar and provide logged-in users the user experience they deserve.
Post Switch Developer Profile
1 plugin · 10 total installs
How We Detect Post Switch
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-switch/js/postswitch.js/wp-content/plugins/post-switch/js/postswitch.jspost-switch/js/postswitch.js?ver=HTML / DOM Fingerprints
post-switch-categoriesmisc-pub-sectionid="categories-dropdown"id="posts-dropdown"window.get_posts_dropdown_list/wp-json/post-switch/v1/get_posts_dropdown_list