
Pre-Publish Post Checklist Security & Risk Analysis
wordpress.org/plugins/pre-publish-post-checklistWith Pre-Publish Post Checklist, you’ll never have to worry about accidentally publishing a post.
Is Pre-Publish Post Checklist Safe to Use in 2026?
Use With Caution
Score 63/100Pre-Publish Post Checklist has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The pre-publish-post-checklist v3.1 plugin exhibits a concerning security posture, primarily due to a significant number of unprotected AJAX handlers and a history of missing authorization vulnerabilities. While the plugin demonstrates good practices by using prepared statements for all SQL queries and avoiding file operations or external HTTP requests, these strengths are overshadowed by the critical weaknesses in its entry point security. The static analysis reveals a substantial attack surface with 8 AJAX handlers, all of which lack authentication checks. Furthermore, the taint analysis indicates multiple flows with unsanitized paths, three of which are rated as high severity. This, combined with the plugin's vulnerability history, which includes a recent medium severity issue related to missing authorization, suggests a pattern of insecure handling of user input and access control. The lack of nonce and capability checks on the AJAX handlers is a critical oversight that could allow unauthenticated users to trigger potentially harmful actions within the plugin.
Key Concerns
- 8 unprotected AJAX handlers
- 3 high severity taint flows
- 0 nonce checks
- 0 capability checks
- 9% output escaping
- 1 unpatched CVE
Pre-Publish Post Checklist Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Pre-Publish Post Checklist <= 3.1 - Missing Authorization
Pre-Publish Post Checklist Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Pre-Publish Post Checklist Attack Surface
AJAX Handlers 8
WordPress Hooks 3
Maintenance & Trust
Pre-Publish Post Checklist Maintenance & Trust
Maintenance Signals
Community Trust
Pre-Publish Post Checklist Alternatives
Pre-Publish Checklist
pre-publish-checklist
Easiest way to make sure your page or post is ready to go live
Outreachboard
outreachboard
A plugin that helps automate and manage guest author submissions with checklists, syncing, and secure publishing workflows.
PublishPress Checklists: Pre-Publishing Approval Checklist – Validate Post Requirements
publishpress-checklists
Define checklist tasks to complete before publishing posts. Make sure your content meets your requirements.
Checklist
checklist
Turn any list in your blog to a beautiful interactive checklist. Print, Use, Share, Download to Mobile and more. 100% Free.
Checklist in Post
checklist-in-post
Allow creating checklists in posts based on bulleted list.
Pre-Publish Post Checklist Developer Profile
1 plugin · 100 total installs
How We Detect Pre-Publish Post Checklist
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pre-publish-post-checklist/build/js/vendor.min.js/wp-content/plugins/pre-publish-post-checklist/build/js/templates.js/wp-content/plugins/pre-publish-post-checklist/build/js/app.min.js/wp-content/plugins/pre-publish-post-checklist/build/css/styles.css/wp-content/plugins/pre-publish-post-checklist/build/js/vendor.min.js/wp-content/plugins/pre-publish-post-checklist/build/js/templates.js/wp-content/plugins/pre-publish-post-checklist/build/js/app.min.jsHTML / DOM Fingerprints
pcPostIdpcPageLink