
Add Custom Post Type into Post Query Security & Risk Analysis
wordpress.org/plugins/post-type-modifier-simpleDeprecated. Use https://wordpress.org/plugins/additional-wp-tweaks-options/
Is Add Custom Post Type into Post Query Safe to Use in 2026?
Generally Safe
Score 100/100Add Custom Post Type into Post Query has a strong security track record. Known vulnerabilities have been patched promptly.
The static analysis of 'post-type-modifier-simple' v1.1o reveals a strong adherence to secure coding practices, with no identified dangerous functions, SQL injection vulnerabilities, or unescaped output. The plugin also has a zero attack surface in terms of AJAX handlers, REST API routes, shortcodes, and cron events, and all identified SQL queries utilize prepared statements. This indicates a generally robust and secure code foundation.
However, the vulnerability history presents a significant concern. The plugin has a known CVE, specifically a medium severity Cross-Site Scripting (XSS) vulnerability that was last patched on August 1, 2022. While this specific vulnerability is reported as currently unpatched, its presence suggests a potential for insecure input handling or output rendering, even if not immediately apparent in the current static analysis. The absence of explicit capability checks and nonce checks across its (albeit zero) entry points, combined with the past XSS vulnerability, warrants careful consideration.
Key Concerns
- Past medium XSS vulnerability remains unpatched
- Missing capability checks on entry points
- Missing nonce checks on entry points
Add Custom Post Type into Post Query Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Add Custom Post Type into Post Query <= 1.03 - Reflected Cross-Site Scripting
Add Custom Post Type into Post Query Code Analysis
Add Custom Post Type into Post Query Attack Surface
Maintenance & Trust
Add Custom Post Type into Post Query Maintenance & Trust
Maintenance Signals
Community Trust
Add Custom Post Type into Post Query Alternatives
Advanced Views – Display Custom Fields (ACF, Pods, MetaBox), Posts, CPT and Woo Products anywhere in Gutenberg, Elementor, Divi, Beaver…
acf-views
Display content with full control over selection and layout. Lightweight and compatible with any theme or page builder.
OS HTML5 Shortcodes
os-html5-shortcodes
Using shortcodes you can easily add HTML codes such as ad codes, javascript, video embedding, etc in your pages, posts or custom posts.
Query Editor
query-editor
Adds a simple set of options to modify the default query by changing what post types are used, the ordering and more.
Custom Post Type UI
custom-post-type-ui
Admin UI for creating custom content types like post types and taxonomies
Meta Box
meta-box
Meta Box plugin is a powerful, professional developer toolkit to create custom meta boxes and custom fields for your custom post types in WordPress.
Add Custom Post Type into Post Query Developer Profile
16 plugins · 51K total installs
How We Detect Add Custom Post Type into Post Query
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
post-type-modifier-simple/style.css?ver=post-type-modifier-simple/script.js?ver=