Publishers Security & Risk Analysis

wordpress.org/plugins/publishers

Companion plugin for the Publishers theme: https://wordpress.org/themes/publishers/.

10 active installs v1.0.1 PHP + WP 5.0+ Updated Jan 21, 2026
blogscompanion-pluginmagazinespublishers
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Publishers Safe to Use in 2026?

Generally Safe

Score 100/100

Publishers has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "publishers" v1.0.1 plugin exhibits a generally strong security posture based on the static analysis. The absence of any known CVEs and a lack of identified dangerous functions, raw SQL queries, or external HTTP requests are positive indicators. Furthermore, the presence of nonce and capability checks, along with the use of prepared statements for all SQL queries, demonstrates good development practices for securing entry points. However, a notable weakness lies in the output escaping, where only 42% of outputs are properly escaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is reflected without sufficient sanitization. With no taint analysis findings or historical vulnerabilities, the plugin currently appears to be relatively secure, but the low percentage of properly escaped output remains a significant concern that warrants attention. Continued vigilance and addressing the output escaping issue are recommended for maintaining a robust security profile.

Key Concerns

  • Low output escaping percentage
Vulnerabilities
None known

Publishers Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Publishers Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
21
15 escaped
Nonce Checks
2
Capability Checks
8
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

42% escaped36 total outputs
Attack Surface

Publishers Attack Surface

Entry Points4
Unprotected0

Shortcodes 4

[non-member] publishers.php:91
[member] publishers.php:99
[access] publishers.php:107
[share] publishers.php:116
WordPress Hooks 53
actionwp_enqueue_scriptspublishers.php:21
actionwp_headpublishers.php:28
actionwp_footerpublishers.php:66
filterwidget_textpublishers.php:87
filterterm_descriptionpublishers.php:88
filteruser_contactmethodspublishers.php:141
actioninitpublishers.php:158
filterbody_classpublishers.php:160
filteradmin_body_classpublishers.php:161
actionmedia_buttonspublishers.php:176
actionmedia_buttonspublishers.php:180
actionadmin_print_footer_scriptspublishers.php:184
filterquicktags_settingspublishers.php:199
actionedit_form_after_titlepublishers.php:207
actionadd_meta_boxespublishers.php:213
actionsave_postpublishers.php:234
actioninitpublishers.php:247
actionadd_meta_boxespublishers.php:249
actionsave_postpublishers.php:259
actionadd_meta_boxespublishers.php:277
actionadd_attachmentpublishers.php:308
actioninitpublishers.php:333
actionadmin_initpublishers.php:335
actiondelete_attachmentpublishers.php:342
actionfuture_to_pendingpublishers.php:350
actionnew_to_pendingpublishers.php:351
actiondraft_to_pendingpublishers.php:352
actionauto-draft_to_pendingpublishers.php:353
actioninitpublishers.php:361
actionpending_to_publishpublishers.php:363
actionpending_to_trashpublishers.php:372
actionpending_to_draftpublishers.php:373
actionadmin_headpublishers.php:385
actionadmin_initpublishers.php:402
actioninitpublishers.php:416
filterwp_lazy_loading_enabledpublishers.php:424
filterbig_image_size_thresholdpublishers.php:425
filtermax_srcset_image_widthpublishers.php:426
filterintermediate_image_sizes_advancedpublishers.php:430
actionrss2_itempublishers.php:439
actioninitpublishers.php:459
actionuser_registerpublishers.php:462
actionmanage_users_custom_columnpublishers.php:463
filterpre_get_userspublishers.php:464
filtermanage_users_sortable_columnspublishers.php:465
filterwpmu_users_columnspublishers.php:467
filtermanage_users_columnspublishers.php:469
actionuser_registerpublishers.php:512
actioninitpublishers.php:526
filtermanage_users_columnspublishers.php:529
actionmanage_users_custom_columnpublishers.php:530
filtermanage_users_sortable_columnspublishers.php:531
filterrequestpublishers.php:532
Maintenance & Trust

Publishers Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJan 21, 2026
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Publishers Developer Profile

Web Guy

30 plugins · 52K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
629 days
View full developer profile
Detection Fingerprints

How We Detect Publishers

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/publishers/js/jquery-cookie.js
Script Paths
/wp-content/plugins/publishers/js/jquery-cookie.js

HTML / DOM Fingerprints

CSS Classes
dark-modesharefacebooktwitteremailprint
Data Attributes
data-dark-mode
JS Globals
jQuery$
Shortcode Output
[non-member][/non-member][member][/member]
FAQ

Frequently Asked Questions about Publishers