Related Post Inside Plugin Security & Risk Analysis

wordpress.org/plugins/related-post-inside-plugin

Related Post Inside plugin allows you to insert related posts inside of Posts. Related Post Inside plugin will make your website more SEO friendly, in …

10 active installs v1.0.4 PHP 5.6+ WP 4.0+ Updated Aug 20, 2023
inside-related-postsrelated-posts-insidewordpresswordpress-postswordpress-related-posts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Related Post Inside Plugin Safe to Use in 2026?

Generally Safe

Score 85/100

Related Post Inside Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "related-post-inside-plugin" v1.0.4 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of critical or high-severity vulnerabilities in its history, coupled with a notable absence of dangerous functions and 100% of SQL queries using prepared statements, are positive indicators. The plugin also implements a good number of nonce and capability checks across its identified entry points, and all entry points appear to have some form of authentication or permission checks, leaving zero unprotected entry points. However, there are minor concerns regarding output sanitization and external HTTP requests. While 81% of outputs are properly escaped, the remaining 19% could potentially lead to cross-site scripting (XSS) vulnerabilities if they process user-supplied data without adequate sanitization. The plugin also makes 4 external HTTP requests, which, if not handled securely, could be a vector for man-in-the-middle attacks or data leakage. The taint analysis revealing two flows with unsanitized paths, though not critical or high severity, warrants attention as it indicates potential areas where malicious input might not be fully validated. Overall, the plugin is reasonably secure but could benefit from more robust output escaping and careful handling of external requests.

Key Concerns

  • Outputs not properly escaped
  • Flows with unsanitized paths
  • External HTTP requests
Vulnerabilities
None known

Related Post Inside Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Related Post Inside Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
56
232 escaped
Nonce Checks
11
Capability Checks
16
File Operations
0
External Requests
4
Bundled Libraries
0

Output Escaping

81% escaped288 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
notification_action (Inc\Classes\Notifications\Notifications.php:48)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Related Post Inside Plugin Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 6

authwp_ajax_jlt_rpsi_deactivation_surveyInc\Classes\Feedback.php:29
authwp_ajax_jlt_rpsi_notification_actionInc\Classes\Notifications\Notifications.php:40
authwp_ajax_jlt_rpsi_subscribeInc\Classes\Notifications\Subscribe.php:26
authwp_ajax_jlt_rpsi_allow_collectInc\Classes\Notifications\What_We_Collect.php:27
authwp_ajax_jlt_rpsi_recommended_upgrade_pluginLibs\Recommended.php:43
authwp_ajax_jlt_rpsi_recommended_activate_pluginLibs\Recommended.php:44

Shortcodes 2

[rpi] class-related-post-inside-plugin.php:58
[rpi] trunk\index.php:292
WordPress Hooks 41
actionplugins_loadedclass-related-post-inside-plugin.php:47
filteradmin_body_classclass-related-post-inside-plugin.php:49
actionadmin_menuclass-related-post-inside-plugin.php:53
actionadmin_initclass-related-post-inside-plugin.php:56
actionadmin_enqueue_scriptsInc\Classes\Feedback.php:27
actionadmin_footerInc\Classes\Feedback.php:28
actionadmin_noticesInc\Classes\Notifications\Notifications.php:35
actionjlt_rpsi_display_noticeInc\Classes\Notifications\Notifications.php:37
actionjlt_rpsi_display_popupInc\Classes\Notifications\Notifications.php:38
actionjlt_rpsi_sheet_promo_data_resetInc\Classes\Notifications\Upgrade_Notice.php:26
actionadmin_footerInc\Classes\Pro_Upgrade.php:47
actionwp_dashboard_setupInc\Classes\Pro_Upgrade.php:49
actionwp_enqueue_scriptsLibs\Assets.php:25
actionadmin_enqueue_scriptsLibs\Assets.php:26
filterinstall_plugins_table_api_args_featuredLibs\Featured.php:23
filterplugins_api_resultLibs\Featured.php:33
actionadmin_menuLibs\Recommended.php:42
actioninittrunk\inc\class-tgm-plugin-activation.php:265
actionadmin_menutrunk\inc\class-tgm-plugin-activation.php:414
actionadmin_headtrunk\inc\class-tgm-plugin-activation.php:415
filterinstall_plugin_complete_actionstrunk\inc\class-tgm-plugin-activation.php:418
filterupdate_plugin_complete_actionstrunk\inc\class-tgm-plugin-activation.php:419
actionadmin_noticestrunk\inc\class-tgm-plugin-activation.php:422
actionadmin_inittrunk\inc\class-tgm-plugin-activation.php:423
actionadmin_enqueue_scriptstrunk\inc\class-tgm-plugin-activation.php:424
actionload-plugins.phptrunk\inc\class-tgm-plugin-activation.php:429
actionswitch_themetrunk\inc\class-tgm-plugin-activation.php:432
actionswitch_themetrunk\inc\class-tgm-plugin-activation.php:435
actionadmin_inittrunk\inc\class-tgm-plugin-activation.php:440
actionswitch_themetrunk\inc\class-tgm-plugin-activation.php:445
filterupgrader_source_selectiontrunk\inc\class-tgm-plugin-activation.php:796
actionplugins_loadedtrunk\inc\class-tgm-plugin-activation.php:2019
filtertgmpa_table_data_itemstrunk\inc\class-tgm-plugin-activation.php:2143
filterupgrader_source_selectiontrunk\inc\class-tgm-plugin-activation.php:2884
actionadmin_inittrunk\inc\class-tgm-plugin-activation.php:3054
actionupgrader_process_completetrunk\inc\class-tgm-plugin-activation.php:3149
filterupgrader_post_installtrunk\inc\class-tgm-plugin-activation.php:3208
filterupgrader_post_installtrunk\inc\class-tgm-plugin-activation.php:3353
actiontgmpa_registertrunk\inc\easy-blocks.php:17
actionadmin_menutrunk\index.php:34
actionadmin_inittrunk\index.php:69
Maintenance & Trust

Related Post Inside Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedAug 20, 2023
PHP min version5.6
Downloads9K

Community Trust

Rating100/100
Number of ratings3
Active installs10
Developer Profile

Related Post Inside Plugin Developer Profile

Liton Arefin

45 plugins · 43K total installs

83
trust score
Avg Security Score
93/100
Avg Patch Time
65 days
View full developer profile
Detection Fingerprints

How We Detect Related Post Inside Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/related-post-inside-plugin/assets/css/style.css/wp-content/plugins/related-post-inside-plugin/assets/js/main.js
Script Paths
/wp-content/plugins/related-post-inside-plugin/assets/js/main.js
Version Parameters
related-post-inside-plugin/assets/css/style.css?ver=related-post-inside-plugin/assets/js/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
jlt-rpsi-related-posts
HTML Comments
<!-- Related Post Inside Plugin Start --><!-- Related Post Inside Plugin End -->
Data Attributes
data-plugin-name="Related Post Inside Plugin"
JS Globals
window.jlt_rpsi_settings
Shortcode Output
[related_post_inside]
FAQ

Frequently Asked Questions about Related Post Inside Plugin