Search Only Posts Security & Risk Analysis

wordpress.org/plugins/search-only-posts

A simple plugin that forces Wordpress default search feature to search only posts and excludes pages from the search results.

10 active installs v1.0.0 PHP 5.6.20+ WP 5.6+ Updated Apr 14, 2021
searchsearch-only-postssearch-posts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Search Only Posts Safe to Use in 2026?

Generally Safe

Score 85/100

Search Only Posts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The "search-only-posts" v1.0.0 plugin exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code signals are overwhelmingly positive, with no dangerous functions identified, all SQL queries utilizing prepared statements, and all output being properly escaped. The lack of file operations, external HTTP requests, and critical security checks like nonces and capability checks in the analyzed code further contributes to this robust security profile.

The vulnerability history for this plugin is also clean, with zero known CVEs and no recorded common vulnerability types. This suggests a diligent and secure development process. The taint analysis, showing zero flows with unsanitized paths, reinforces the impression of well-sanitized code.

In conclusion, the "search-only-posts" v1.0.0 plugin appears to be highly secure, demonstrating excellent coding practices and a complete lack of historical or detected vulnerabilities. While the attack surface is effectively zero, the complete absence of nonce and capability checks on any potential entry points (even though there are none identified in this analysis) could theoretically be a concern if new features were added without adequate security considerations. However, based on the current data, this plugin presents a minimal security risk.

Vulnerabilities
None known

Search Only Posts Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Search Only Posts Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Search Only Posts Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filterpre_get_postssearch-only-posts.php:23
Maintenance & Trust

Search Only Posts Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedApr 14, 2021
PHP min version5.6.20
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Search Only Posts Developer Profile

Ofer Ziv - face 2 face

2 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Search Only Posts

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Version Parameters
search-only-posts/search-only-posts.php?ver=1.0.0

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Search Only Posts