
Read More About Security & Risk Analysis
wordpress.org/plugins/read-more-aboutAllows users to add links in a story using a shortcode to provide addition reading material about a subject.
Is Read More About Safe to Use in 2026?
Generally Safe
Score 100/100Read More About has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "read-more-about" v2.1.0 plugin exhibits a generally positive security posture, adhering to several good practices. The absence of known CVEs and critical taint flows is a significant strength, suggesting a history of secure development or minimal exposure. The plugin effectively utilizes prepared statements for all SQL queries, has no file operations or external HTTP requests, and includes both nonce and capability checks for its single entry point (a shortcode).
However, there are notable areas for improvement. The most significant concern is the low percentage of properly escaped output (11%). This indicates that user-supplied or dynamic data is likely being rendered directly into the HTML without sufficient sanitization, creating a high risk of Cross-Site Scripting (XSS) vulnerabilities. While the attack surface is small and protected, this output escaping deficiency could allow an attacker to inject malicious scripts through the shortcode's parameters if they are not adequately validated before output.
In conclusion, the plugin benefits from a clean vulnerability history and a focus on secure data handling for database interactions. Nevertheless, the prevalent lack of output escaping is a serious security weakness that needs immediate attention to mitigate the risk of XSS attacks. Addressing this will significantly improve the plugin's overall security.
Key Concerns
- Low percentage of properly escaped output
Read More About Security Vulnerabilities
Read More About Code Analysis
Output Escaping
Read More About Attack Surface
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
Read More About Maintenance & Trust
Maintenance Signals
Community Trust
Read More About Alternatives
Story Lines
story-lines
Add a list of story highlights at the top of your posts to let your readers really know what your story is all about.
Column Shortcodes
column-shortcodes
Adds shortcodes to easily create columns in your posts or pages.
Apollo13 Framework Extensions
apollo13-framework-extensions
Adds custom post types, shortcodes and some features that are used in themes built on Apollo13 Framework.
Futurio Extra
futurio-extra
Futurio Extra add extra features to Futurio theme like widgets, WooCommerce options, Elementor widgets, one click demo import and much more.
ND Shortcodes
nd-shortcodes
The plugin adds some useful components to your page builder ( Elementor or WP Bakery Page Builder ). All components are full responsive and retina rea …
Read More About Developer Profile
9 plugins · 230 total installs
How We Detect Read More About
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/read-more-about/admin/css/read-more-about-admin.css/wp-content/plugins/read-more-about/admin/js/read-more-about-admin.js/wp-content/plugins/read-more-about/public/css/read-more-about-public.css/wp-content/plugins/read-more-about/public/js/read-more-about-public.js/wp-content/plugins/read-more-about/blocks/build/index.js/wp-content/plugins/read-more-about/blocks/build/style-index.css/wp-content/plugins/read-more-about/admin/js/read-more-about-admin.js/wp-content/plugins/read-more-about/public/js/read-more-about-public.js/wp-content/plugins/read-more-about/blocks/build/index.jsread-more-about/admin/css/read-more-about-admin.css?ver=read-more-about/admin/js/read-more-about-admin.js?ver=read-more-about/public/css/read-more-about-public.css?ver=read-more-about/public/js/read-more-about-public.js?ver=read-more-about/blocks/build/index.js?ver=read-more-about/blocks/build/style-index.css?ver=HTML / DOM Fingerprints
read-more-about-wrapperdata-read-more-about-idreadMoreAbout/wp-json/read-more-about/v1/posts[read_more_about]