Quick Bulk Post & Page Creator Security & Risk Analysis

wordpress.org/plugins/quick-bulk-post-page-creator

A handy tool for batch creation of posts and pages in your preferred hierarchy.

2K active installs v1.0.4 PHP + WP 3.0.1+ Updated Apr 11, 2016
pagepagespostpostsquick
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Quick Bulk Post & Page Creator Safe to Use in 2026?

Generally Safe

Score 85/100

Quick Bulk Post & Page Creator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The plugin "quick-bulk-post-page-creator" v1.0.4 demonstrates a generally strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events with exposed entry points, as well as zero known CVEs, suggests a minimal attack surface and a history of stability. The code also avoids dangerous functions, file operations, and external HTTP requests, further contributing to its security. However, a significant concern arises from the low rate of properly escaped output (33%). This indicates a substantial risk of cross-site scripting (XSS) vulnerabilities, as user-supplied data might be rendered directly in the browser without proper sanitization. Furthermore, the complete lack of nonce checks and capability checks across any potential entry points, even though none are identified, implies a lack of fundamental security mechanisms that would be crucial if new entry points were added in future versions. While the plugin appears secure from external threats due to its limited exposed functionality and clean vulnerability history, the unescaped output presents a clear and present danger for stored XSS attacks, which could be exploited by authenticated users within the WordPress admin panel. A more robust approach to output sanitization is essential.

Key Concerns

  • Low percentage of properly escaped output (33%)
  • Zero nonce checks on any entry points
  • Zero capability checks on any entry points
Vulnerabilities
None known

Quick Bulk Post & Page Creator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Quick Bulk Post & Page Creator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
12
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

33% escaped18 total outputs
Attack Surface

Quick Bulk Post & Page Creator Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_menuincludes\form.php:16
actionadmin_initincludes\form.php:19
actionadd_option_qbppc_entriesincludes\form.php:22
actionupdate_option_qbppc_entriesincludes\form.php:23
actionadmin_noticesincludes\form.php:26
Maintenance & Trust

Quick Bulk Post & Page Creator Maintenance & Trust

Maintenance Signals

WordPress version tested4.5.33
Last updatedApr 11, 2016
PHP min version
Downloads34K

Community Trust

Rating92/100
Number of ratings15
Active installs2K
Developer Profile

Quick Bulk Post & Page Creator Developer Profile

Marin Atanasov

7 plugins · 4K total installs

90
trust score
Avg Security Score
86/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect Quick Bulk Post & Page Creator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quick-bulk-post-page-creator/assets/css/qbppc-styles.css/wp-content/plugins/quick-bulk-post-page-creator/assets/js/qbppc-scripts.js
Script Paths
/wp-content/plugins/quick-bulk-post-page-creator/assets/js/qbppc-scripts.js
Version Parameters
quick-bulk-post-page-creator/assets/css/qbppc-styles.css?ver=quick-bulk-post-page-creator/assets/js/qbppc-scripts.js?ver=

HTML / DOM Fingerprints

CSS Classes
qbppc-form-container
Data Attributes
data-qbppc-parent
JS Globals
QBPPC_Ajax
Shortcode Output
[quick_bulk_post_page_creator]
FAQ

Frequently Asked Questions about Quick Bulk Post & Page Creator