
post2Qzone Security & Risk Analysis
wordpress.org/plugins/post2qzonepost2Qzone
Is post2Qzone Safe to Use in 2026?
Generally Safe
Score 85/100post2Qzone has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "post2qzone" plugin version 1.2.2 exhibits a mixed security posture. On the positive side, it has a remarkably small attack surface, with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed. Furthermore, all SQL queries are commendably performed using prepared statements, and there are no recorded vulnerabilities (CVEs) in its history. This suggests a generally cautious approach to critical areas like database interaction and known exploits. However, a significant concern arises from the complete lack of output escaping. With 28 total outputs and 0% properly escaped, this presents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. Any data rendered to the user without proper sanitization can be exploited by attackers to inject malicious scripts. While the plugin demonstrates good practices in preventing direct code execution vulnerabilities and database injection, the absence of output escaping is a major oversight that significantly elevates the risk profile, particularly for user-facing content.
Key Concerns
- No output escaping
post2Qzone Security Vulnerabilities
post2Qzone Code Analysis
Output Escaping
Data Flow Analysis
post2Qzone Attack Surface
WordPress Hooks 3
Maintenance & Trust
post2Qzone Maintenance & Trust
Maintenance Signals
Community Trust
post2Qzone Alternatives
Online Contact Widget-多合一在线客服插件
online-contact-widget
Online Contact Widget(多合一在线客服插件),旨在为WordPress网站提供一系列可配置在线客服支持,包括QQ、微信(微信号、公众号和小程序QR-code)、电话、Email和工单等。
QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv
5usujian-super-serv
在网站侧边添加优美的电话、QQ、旺旺客服悬浮窗
QQ旺旺客服
qq-kefu
This pulgin can add the Customer Service QQ or TaobaoWangwang.
同步博客
wp-blog
支持同步全文到 QQ空间日志、新浪博客、网易博客、人人网日志、开心网日记、点点网等。
[凹凸曼]一键QQ登录
apoyl-qq
这是一款实现QQ互联一键登录网站,让用户不在繁琐去注册用户,一键实现QQ登录,极大的方便用户登录网站.
post2Qzone Developer Profile
1 plugin · 10 total installs
How We Detect post2Qzone
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
name="post2QZone_qq"name="post2QZone_pw"name="post2QZone_bcc"name="post2QZone_catsRules"name="post2QZone_title_prefix"name="post2QZone_plain"+3 more