Related Articles by Tag Lite Security & Risk Analysis

wordpress.org/plugins/related-articles-by-tag

With this plugin you can add a list of links to posts having the same tag(s) of the current post.

10 active installs v1.0.1 PHP + WP 3.6+ Updated Aug 12, 2013
pagespostsrelated-articlestaggingtags
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Related Articles by Tag Lite Safe to Use in 2026?

Generally Safe

Score 85/100

Related Articles by Tag Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12yr ago
Risk Assessment

The 'related-articles-by-tag' v1.0.1 plugin exhibits a generally good security posture, with no reported vulnerabilities or critical findings in static and taint analysis. The plugin effectively utilizes prepared statements for its SQL queries, indicating a commitment to preventing SQL injection. The absence of file operations and external HTTP requests further reduces its attack surface. However, a significant concern is the low percentage of properly escaped output (24%). This could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is rendered directly in the browser without adequate sanitization. Additionally, the lack of nonce checks and capability checks across all entry points (1 shortcode) is a notable weakness, potentially allowing unauthorized users to trigger the shortcode's functionality. While the plugin has no recorded vulnerability history, the identified weaknesses in output escaping and authorization could become exploitable in future scenarios.

Key Concerns

  • Low percentage of properly escaped output
  • No nonce checks on entry points
  • No capability checks on entry points
Vulnerabilities
None known

Related Articles by Tag Lite Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Related Articles by Tag Lite Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
25
8 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

24% escaped33 total outputs
Attack Surface

Related Articles by Tag Lite Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[related-articles-by-tag] related-articles-by-tag.php:32
WordPress Hooks 10
actionadmin_noticespage-tagger.php:16
actionadmin_initpage-tagger.php:36
actionpre_get_postspage-tagger.php:51
actionplugins_loadedpage-tagger.php:57
actionadmin_headrelated-articles-by-tag-class.php:28
actionpre_get_postsrelated-articles-by-tag-class.php:31
actioninitrelated-articles-by-tag-class.php:32
actionwidgets_initrelated-articles-by-tag.php:115
actionadmin_menurelated-articles-by-tag.php:123
actionadmin_initrelated-articles-by-tag.php:131
Maintenance & Trust

Related Articles by Tag Lite Maintenance & Trust

Maintenance Signals

WordPress version tested3.6.1
Last updatedAug 12, 2013
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Related Articles by Tag Lite Developer Profile

stesvis

4 plugins · 40 total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Related Articles by Tag Lite

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/related-articles-by-tag/related-articles-by-tag.php

HTML / DOM Fingerprints

Data Attributes
name="related_articles_by_tag_title"name="related_articles_by_tag_title_type"name="related_articles_by_tag_mode"name="related_articles_by_tag_order"name="related_articles_by_tag_apply"value="related_articles_by_tag_title"+14 more
Shortcode Output
<h1<h2<h3<ul>
FAQ

Frequently Asked Questions about Related Articles by Tag Lite