Safan Guest Post Security & Risk Analysis

wordpress.org/plugins/safan-guest-post

This plugin will help you to add Guest Post feature in your wordpress site.

0 active installs v1.0.0 PHP + WP 5.0+ Updated Sep 27, 2021
guest-postpost
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Safan Guest Post Safe to Use in 2026?

Generally Safe

Score 85/100

Safan Guest Post has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The safan-guest-post plugin version 1.0.0 exhibits a generally good security posture based on the provided static analysis. The absence of any known CVEs, including critical or high severity ones, and the lack of recorded vulnerabilities are positive indicators. Furthermore, the code demonstrates good practices by utilizing prepared statements for all SQL queries and having capability checks in place for its entry points. The limited attack surface and the absence of dangerous functions, file operations, and external HTTP requests are also strengths.

However, there are areas for concern. The most significant issue identified is the output escaping, with only 40% of outputs being properly escaped. This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not adequately sanitized before being displayed to users. The complete absence of nonce checks on the identified entry points (shortcodes) is another concern, as it means these shortcodes could potentially be triggered maliciously without user interaction, leading to unintended actions.

In conclusion, while the plugin benefits from a clean vulnerability history and sound database practices, the insufficient output escaping and lack of nonce checks on shortcodes represent exploitable weaknesses. Addressing these issues would significantly improve the plugin's overall security.

Key Concerns

  • Insufficient output escaping (40%)
  • No nonce checks on entry points
Vulnerabilities
None known

Safan Guest Post Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Safan Guest Post Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Safan Guest Post Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
4 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

40% escaped10 total outputs
Attack Surface

Safan Guest Post Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[mlgp-form] parts\forms\form-shortcode.php:20
[mlgp-post] parts\post\post-shortcode.php:23
WordPress Hooks 12
actionplugins_loadedincludes\class-ml-guest-post.php:142
actionadmin_enqueue_scriptsincludes\class-ml-guest-post.php:157
actionadmin_enqueue_scriptsincludes\class-ml-guest-post.php:158
actionwp_enqueue_scriptsincludes\class-ml-guest-post.php:173
actionwp_enqueue_scriptsincludes\class-ml-guest-post.php:174
filterexcerpt_moreml-guest-post.php:111
actioninitml-guest-post.php:116
actiontgmpa_registerml-guest-post.php:147
actioninitparts\forms\form-shortcode.php:22
actioninitparts\post\post-shortcode.php:25
actioninitparts\post\post.php:56
actioninitparts\post\taxonomy.php:79
Maintenance & Trust

Safan Guest Post Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedSep 27, 2021
PHP min version
Downloads814

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Safan Guest Post Developer Profile

Md Rashed Hossain

12 plugins · 140 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Safan Guest Post

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/safan-guest-post/admin/css/style.css/wp-content/plugins/safan-guest-post/admin/css/ml-guest-post-admin.css/wp-content/plugins/safan-guest-post/admin/js/ml-guest-post-admin.js/wp-content/plugins/safan-guest-post/admin/js/bootstrap.bundle.min.js/wp-content/plugins/safan-guest-post/parts/post/post.php/wp-content/plugins/safan-guest-post/parts/post/taxonomy.php/wp-content/plugins/safan-guest-post/parts/post/pagination.php/wp-content/plugins/safan-guest-post/parts/post/post-shortcode.php+2 more
Script Paths
/wp-content/plugins/safan-guest-post/admin/js/ml-guest-post-admin.js/wp-content/plugins/safan-guest-post/admin/js/bootstrap.bundle.min.js
Version Parameters
safan-guest-post/admin/css/style.css?ver=safan-guest-post/admin/css/ml-guest-post-admin.css?ver=safan-guest-post/admin/js/ml-guest-post-admin.js?ver=safan-guest-post/admin/js/bootstrap.bundle.min.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Safan Guest Post