
The Future Posts Security & Risk Analysis
wordpress.org/plugins/the-future-postsDisplay future (scheduled) posts in responsive grids using shortcodes. Works with PODS, Advanced Custom Fields, WooCommerce, and all page builders.
Is The Future Posts Safe to Use in 2026?
Generally Safe
Score 85/100The Future Posts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'the-future-posts' plugin v1.40 exhibits a mixed security posture. On the positive side, there are no recorded vulnerabilities (CVEs) and the static analysis shows no direct SQL injection risks due to prepared statements. The plugin also avoids external HTTP requests and doesn't bundle potentially outdated libraries. However, significant concerns arise from the lack of output escaping and insufficient security checks. With 40 total outputs, none are properly escaped, which presents a high risk for cross-site scripting (XSS) vulnerabilities. Furthermore, the absence of nonce checks and capability checks on its single shortcode entry point means that any authenticated user could potentially trigger unintended actions, depending on the shortcode's functionality. While taint analysis shows no current issues, the unescaped output and lack of authorization controls create a fertile ground for vulnerabilities if malicious data is processed.
Key Concerns
- Unescaped output across all outputs
- Missing nonce check on shortcode
- Missing capability check on shortcode
The Future Posts Security Vulnerabilities
The Future Posts Code Analysis
SQL Query Safety
Output Escaping
The Future Posts Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
The Future Posts Maintenance & Trust
Maintenance Signals
Community Trust
The Future Posts Alternatives
Ultimate Addons for SiteOrigin
addon-so-widgets-bundle
An ultimate collection of addons for SiteOrigin. SiteOrigin Widgets Bundle is required.
Featured Post Creative
featured-post-creative
Display Featured post on your website with 2 shortcode and 1 widget. Also work with Gutenberg shortcode block.
Grid Accordion
grid-accordion
Grid Accordion is a responsive gallery plugin that includes Premium features for FREE, like animated layers, lightbox support, post content and more.
Page Builder by SiteOrigin
siteorigin-panels
Build responsive page layouts using the widgets you know and love using this simple drag and drop page builder.
Max Mega Menu
megamenu
An easy to use mega menu plugin. Written the WordPress way.
The Future Posts Developer Profile
1 plugin · 20 total installs
How We Detect The Future Posts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/the-future-posts/css/gridlex.css/wp-content/plugins/the-future-posts/css/the-future-posts-icons.css/wp-content/plugins/the-future-posts/css/the-future-posts.css/wp-content/plugins/the-future-posts/includes/main.jsthe-future-posts/css/gridlex.css?ver=the-future-posts/css/the-future-posts-icons.css?ver=the-future-posts/css/the-future-posts.css?ver=the-future-posts/includes/main.js?ver=HTML / DOM Fingerprints
the-future-posts-wrappertfp-gridtfp-itemtfp-theme-defaulttfp-theme-customdata-post-statusdata-post-typedata-category-namedata-taxonomydata-taxonomy-termsdata-date-before+13 morethe_future_posts_main[the_future_posts]