
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft Security & Risk Analysis
wordpress.org/plugins/relevantAdd related, featured, latest, and popular posts to your WordPress website. Connect your blog readers with a relevant content.
Is Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft Safe to Use in 2026?
Generally Safe
Score 99/100Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft has a strong security track record. Known vulnerabilities have been patched promptly.
The "relevant" plugin v1.4.5 exhibits a generally strong security posture, with a high percentage of properly escaped outputs and robust use of prepared statements for SQL queries. The static analysis indicates a solid implementation of security best practices, such as nonce and capability checks, and a lack of identified dangerous functions or critical/high severity taint flows. The total number of entry points is manageable and appear to be protected.
However, the vulnerability history reveals past security issues, specifically two medium-severity Cross-Site Scripting (XSS) vulnerabilities. While none are currently unpatched, the presence of these historical issues, even in older versions, suggests a potential for similar vulnerabilities to arise if input sanitization or output escaping is not meticulously maintained across updates. The taint analysis did identify two flows with unsanitized paths, which, while not resulting in critical or high severity issues in this scan, warrants attention as a potential precursor to vulnerabilities if not addressed.
In conclusion, the plugin demonstrates good foundational security practices. The primary concern stems from its historical XSS vulnerabilities, indicating a need for continued vigilance in input handling and output sanitization. The presence of unsanitized paths in the taint analysis also suggests areas where further review and hardening may be beneficial.
Key Concerns
- Taint flows with unsanitized paths detected
- Past medium severity XSS vulnerabilities
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft < 1.2.0 - Reflected Cross-Site Scripting
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft <= 1.0.7 - Authenticated (Admin+) Stored Cross-Site Scripting
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft Attack Surface
AJAX Handlers 2
Shortcodes 8
WordPress Hooks 41
Maintenance & Trust
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft Maintenance & Trust
Maintenance Signals
Community Trust
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft Alternatives
4bzCore
4bzcore
A collection of shortcodes, widgets, a shortcode builder, multiple featured images, a related posts module, and much more.
Launchpad Popular Posts
launchpad-popular-posts
This is a very simple, easy to use plugin which creates a widget that can be used to display Popular Posts, Related Posts, Featured Posts, Recent Post …
Smart Post Show – Post Grid, Post Carousel & Slider, and List Category Posts
post-carousel
Display posts, pages, and taxonomies in beautiful carousel, slider, and grid layouts with advanced filtering. Customizable, Developer-friendly.
Random Posts and Pages Widget
ays-random-posts-and-pages
The main advantage of this widget is random movement of random links and every time they are changing.
Advanced Related Posts
advanced-related-posts
This plugin allows you to display related posts with widget or under the post with advanced options.
Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft Developer Profile
32 plugins · 17K total installs
How We Detect Relevant – Related, Featured, Latest, and Popular Posts by BestWebSoft
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/relevant/css/rltdpstsplgn-widget.css/wp-content/plugins/relevant/js/rltdpstsplgn-general.js/wp-content/plugins/relevant/js/rltdpstsplgn-widget.js/wp-content/plugins/relevant/css/rltdpstsplgn-public.css/wp-content/plugins/relevant/js/rltdpstsplgn-general.js/wp-content/plugins/relevant/js/rltdpstsplgn-widget.jsver=1.4.5HTML / DOM Fingerprints
rltdpstsplgn-widgetrltdpstsplgn-containerrltdpstsplgn-countrltdpstsplgn-list<!-- START: related posts --><!-- END: related posts -->data-rltdpstsplgn-iddata-rltdpstsplgn-typerltdpstsplgn_general[rltdpstsplgn_display_related_posts][rltdpstsplgn_display_popular_posts][rltdpstsplgn_display_latest_posts][rltdpstsplgn_display_featured_posts]