
RP Post Nav Security & Risk Analysis
wordpress.org/plugins/rp-post-navShow Next and Previous Post Links, Thumbnails or Excerpt at Posts, Pages, Media or Custom Post Types.
Is RP Post Nav Safe to Use in 2026?
Generally Safe
Score 85/100RP Post Nav has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "rp-post-nav" plugin v1.1 exhibits a mixed security posture. On the positive side, it has no known vulnerabilities, uses prepared statements for all SQL queries, and has a single nonce check. This suggests a degree of diligence in its development. However, several concerning signals emerge from the static analysis. The presence of the `unserialize` function is a significant risk, as it can lead to remote code execution if an attacker can control the serialized data. Furthermore, none of the plugin's output is properly escaped, leaving it vulnerable to Cross-Site Scripting (XSS) attacks. The absence of capability checks on its single entry point (a shortcode) means that any authenticated user, regardless of their role, can trigger its functionality, potentially exposing them to XSS if the output is not sanitized.
Key Concerns
- Dangerous function unserialize found
- Output escaping is missing
- Missing capability checks on entry points
RP Post Nav Security Vulnerabilities
RP Post Nav Code Analysis
Dangerous Functions Found
Output Escaping
RP Post Nav Attack Surface
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
RP Post Nav Maintenance & Trust
Maintenance Signals
Community Trust
RP Post Nav Alternatives
WP Post Navigation
wp-post-navigation
Show Next and Previous Post Links at Posts.
Post Paging
post-paging
Show next and previous post links at posts
Cresta Posts Box
cresta-posts-box
Show the next or previous post in a box that appears when the user scrolls to the bottom of a current post.
Keep Pagination in Same Taxonomy
keep-pagination-in-same-taxonomy
Makes any previous/next post links use the same taxonomy as the current post.
Fixed Adjacent Post
fixed-adjacent-post
Fix the not-excluding terms bug of get_adjacent_post().
RP Post Nav Developer Profile
1 plugin · 40 total installs
How We Detect RP Post Nav
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rp-post-nav/css/rp-post-nav.css/wp-content/plugins/rp-post-nav/js/rp-post-nav.js/wp-content/plugins/rp-post-nav/js/rp-post-nav.jsrp-post-nav/css/rp-post-nav.css?ver=rp-post-nav/js/rp-post-nav.js?ver=HTML / DOM Fingerprints
rp-post-navrp-post-nav-prerp-post-nav-nextrp-glassrp-post-nav-wraprp-post-nav-contentrp-post-nav-labelrp-post-nav-thumbnail+2 morestyle