
SuperLight CPT Manager Security & Risk Analysis
wordpress.org/plugins/superlight-cpt-managerCreate and manage custom post types instantly. Each CPT gets its own shortcode.
Is SuperLight CPT Manager Safe to Use in 2026?
Generally Safe
Score 100/100SuperLight CPT Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "superlight-cpt-manager" v1.2.1 exhibits a generally strong security posture based on the provided static analysis. The absence of known CVEs, critical or high severity taint flows, and the use of prepared statements for all SQL queries are significant strengths. Furthermore, the analysis indicates good practices like nonce and capability checks for some entry points, and no dangerous functions or file operations are present. However, there are areas for improvement. A significant portion of output (45%) is not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data reaches these outputs. While the attack surface is small, the potential for exploitation of unescaped output remains a concern, especially if any of the output points can be influenced by external input.
The vulnerability history is clean, which is a positive indicator of the developer's attention to security. However, this does not negate the risks identified in the static analysis. The lack of proper output escaping is the primary weakness identified. While the plugin has a limited number of entry points and no known vulnerabilities, the potential for an XSS flaw due to unescaped output means the plugin is not entirely risk-free. Users should be aware of this potential weakness, and developers should prioritize addressing the unescaped output to further strengthen the plugin's security.
Key Concerns
- Unescaped output detected (45%)
SuperLight CPT Manager Security Vulnerabilities
SuperLight CPT Manager Code Analysis
Output Escaping
Data Flow Analysis
SuperLight CPT Manager Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
SuperLight CPT Manager Maintenance & Trust
Maintenance Signals
Community Trust
SuperLight CPT Manager Alternatives
Custom Post Type List Shortcode
custom-post-type-list-shortcode
A shortcode with which you can easily list all of the posts within a post-type and sort by regular or custom fields.
News CPT
news-cpt
A quick, easy way to add an extensible News custom post type to Wordpress.
Apollo13 Framework Extensions
apollo13-framework-extensions
Adds custom post types, shortcodes and some features that are used in themes built on Apollo13 Framework.
Post Types Unlimited
post-types-unlimited
Create unlimited custom post types and custom taxonomies.
Posts in Page
posts-in-page
Easily add one or more posts to any page using simple shortcodes.
SuperLight CPT Manager Developer Profile
1 plugin · 10 total installs
How We Detect SuperLight CPT Manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
[superlight_cpt slug="%s"]