
Manual Related Posts Security & Risk Analysis
wordpress.org/plugins/relatedA simple 'related posts' plugin that lets you select related posts manually.
Is Manual Related Posts Safe to Use in 2026?
Generally Safe
Score 100/100Manual Related Posts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "related" plugin v3.5.0 demonstrates a generally positive security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events with open attack surfaces is a significant strength. Furthermore, the plugin utilizes prepared statements for all its SQL queries, indicating good practice against SQL injection. The presence of nonce and capability checks, along with a lack of dangerous function calls and file operations, also contributes to a more secure foundation. However, a notable concern arises from the output escaping, where only 58% of outputs are properly escaped. This could potentially expose the plugin to cross-site scripting (XSS) vulnerabilities if user-supplied data is not adequately sanitized before being displayed to the user.
The plugin's vulnerability history is exceptionally clean, with no recorded CVEs of any severity. This suggests a mature development process and a commitment to security over its history. The lack of any recorded vulnerabilities, common or otherwise, further reinforces this positive trend. While the clean history is a strong indicator of security, it is crucial to remember that new vulnerabilities can always emerge. The plugin's strengths lie in its minimal attack surface and secure data handling for database interactions. The primary weakness identified is the incomplete output escaping, which warrants attention to mitigate potential XSS risks. Overall, the plugin appears to be a relatively secure option, with the output escaping being the most prominent area for improvement.
Key Concerns
- 58% output escaping is not properly escaped
Manual Related Posts Security Vulnerabilities
Manual Related Posts Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Manual Related Posts Attack Surface
WordPress Hooks 30
Maintenance & Trust
Manual Related Posts Maintenance & Trust
Maintenance Signals
Community Trust
Manual Related Posts Alternatives
Inline Related Posts
intelly-related-posts
Inline Related Posts AUTOMATICALLY inserts related posts INSIDE your content, capturing immediately the reader's attention.
VK All in One Expansion Unit
vk-all-in-one-expansion-unit
This plug-in is an integrated plug-in with a variety of features that make it powerful your web site.
YARPP – Yet Another Related Posts Plugin
yet-another-related-posts-plugin
The best WordPress plugin for displaying related posts. Simple and flexible, with a powerful proven algorithm and inbuilt caching.
Contextual Related Posts
contextual-related-posts
Keep visitors on your site longer with intelligent, fast-loading, contextually related posts. Block, shortcode, custom post type and widget ready.
Related Posts for WordPress
related-posts-for-wp
The best WordPress plugin for related posts. Simple, flexible, powerful algorithm, and built-in caching. Fully setup with only 1 click!
Manual Related Posts Developer Profile
18 plugins · 82K total installs
How We Detect Manual Related Posts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/related/css/admin-style.css/wp-content/plugins/related/css/frontend-style.css/wp-content/plugins/related/css/chosen/chosen.min.css/wp-content/plugins/related/js/scripts.js/wp-content/plugins/related/chosen/chosen.jquery.js/wp-content/plugins/related/js/scripts.js/wp-content/plugins/related/chosen/chosen.jquery.js?ver=3.5.0HTML / DOM Fingerprints
related-postrelated-post-titlerelated-posts-selectchosen-selectdata-placeholder