QuickPost – Add New Posts & Duplicate from the Block Editor Security & Risk Analysis

wordpress.org/plugins/quickpost

Adds an "Add New" button to the Block Editor (Gutenberg) toolbar, so you can easily create new posts/pages/custom post types without leaving …

200 active installs v0.1.5 PHP 7.0+ WP 5.7+ Updated Feb 27, 2023
add-newadd-new-postblock-editorduplicate-postgutenberg
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is QuickPost – Add New Posts & Duplicate from the Block Editor Safe to Use in 2026?

Generally Safe

Score 85/100

QuickPost – Add New Posts & Duplicate from the Block Editor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

Based on the provided static analysis, the 'quickpost' plugin v0.1.5 exhibits a strong security posture. The plugin demonstrates excellent security practices by having no identified dangerous functions, all SQL queries utilizing prepared statements, and all output being properly escaped. Furthermore, the absence of file operations and external HTTP requests reduces potential attack vectors. The lack of any identified vulnerabilities in its history, including critical or high-severity issues, further reinforces this positive assessment. The plugin's minimal attack surface, with zero entry points identified in AJAX handlers, REST API routes, shortcodes, or cron events, is a significant strength. This suggests the plugin is designed with security in mind from the outset.

However, the static analysis also reveals a complete absence of security checks such as nonce checks and capability checks. While the current attack surface is zero, this absence of standard security controls means that if any entry points were to be introduced in future updates, they would be inherently unprotected. The zero taint flows are also a positive sign, indicating no immediate risks from unsanitized data handling. The vulnerability history being entirely clear suggests a well-maintained or less complex plugin. In conclusion, 'quickpost' v0.1.5 appears to be a secure plugin with robust coding practices and no known vulnerabilities. The primary area for potential improvement lies in the consistent implementation of standard WordPress security mechanisms like nonce and capability checks, even in the absence of current entry points, to ensure future-proofing.

Key Concerns

  • Missing Nonce Checks
  • Missing Capability Checks
Vulnerabilities
None known

QuickPost – Add New Posts & Duplicate from the Block Editor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

QuickPost – Add New Posts & Duplicate from the Block Editor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

QuickPost – Add New Posts & Duplicate from the Block Editor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionenqueue_block_editor_assetsquickpost.php:46
Maintenance & Trust

QuickPost – Add New Posts & Duplicate from the Block Editor Maintenance & Trust

Maintenance Signals

WordPress version tested6.1.10
Last updatedFeb 27, 2023
PHP min version7.0
Downloads5K

Community Trust

Rating100/100
Number of ratings5
Active installs200
Developer Profile

QuickPost – Add New Posts & Duplicate from the Block Editor Developer Profile

Aurooba Ahmed

2 plugins · 1K total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect QuickPost – Add New Posts & Duplicate from the Block Editor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quickpost/build/index.js/wp-content/plugins/quickpost/build/index.css
Script Paths
/wp-content/plugins/quickpost/build/index.js
Version Parameters
quickpost/build/index.css?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about QuickPost – Add New Posts & Duplicate from the Block Editor