
Republish Old Posts Security & Risk Analysis
wordpress.org/plugins/republish-old-postsRepublish old posts automatically by resetting the date to the current date. Promote old posts to users that haven't seen them.
Is Republish Old Posts Safe to Use in 2026?
Generally Safe
Score 100/100Republish Old Posts has a strong security track record. Known vulnerabilities have been patched promptly.
The "republish-old-posts" plugin v1.27 demonstrates a generally good security posture based on the static analysis. The absence of dangerous functions, file operations, and external HTTP requests are positive signs. All SQL queries are properly prepared, and the plugin utilizes nonce checks, which are crucial for preventing CSRF attacks. The taint analysis also indicates no critical or high severity issues with unsanitized paths. However, a concerning aspect is the complete lack of capability checks and the limited output escaping (82%). While the attack surface is currently reported as zero entry points, this could be misleading if new functionality is added without proper security considerations.
The vulnerability history reveals one known medium-severity vulnerability, specifically Cross-Site Request Forgery (CSRF), which was last addressed on December 28, 2023. The fact that it is currently unpatched is a significant concern and suggests that users might still be exposed if they haven't updated to a fixed version. While the current static analysis doesn't reveal an *active* CSRF vulnerability, the history of such an issue warrants caution.
In conclusion, the plugin has several strong security practices in place, particularly regarding SQL and data sanitization. The primary weaknesses lie in the complete absence of capability checks, the percentage of unescaped output, and the historical presence of a CSRF vulnerability that remains unpatched. These factors necessitate careful consideration for users, especially if the plugin is to be updated or expanded.
Key Concerns
- Unpatched CVE found
- Capability checks are missing
- Output escaping is not 100%
Republish Old Posts Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Republish Old Posts <= 1.21 - Cross-Site Request Forgery via rop_options_page
Republish Old Posts Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Republish Old Posts Attack Surface
WordPress Hooks 4
Maintenance & Trust
Republish Old Posts Maintenance & Trust
Maintenance Signals
Community Trust
Republish Old Posts Alternatives
RevivePress – Keep your Old Content Evergreen
wp-auto-republish
RevivePress, the all-in-one tool for republishing & cloning old posts and pages which push old posts to your front page, the top of archive pages, …
Update Posts Date
update-posts-date
Update posts date automatically by setting the date to the current date.
Content Update Scheduler
content-update-scheduler
Schedule content updates for any WordPress page or post type.
Revive.so – Bulk Rewrite and Republish Blog Posts
revive-so
Revive.so is the ultimate WordPress plugin for content rejuvenation. Republish and recirculate evergreen posts with a simple click.
oik batchmove
oik-batchmove
The oik-batchmove plugin enables you to perform mass updates to the categories assigned to posts. It also enables you to republish posts.
Republish Old Posts Developer Profile
7 plugins · 195K total installs
How We Detect Republish Old Posts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
rop