
Users Custom Posts Counts Security & Risk Analysis
wordpress.org/plugins/users-custom-posts-countsSimple plugin that adds a new column showing custom type posts counts on the users list.
Is Users Custom Posts Counts Safe to Use in 2026?
Generally Safe
Score 85/100Users Custom Posts Counts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "users-custom-posts-counts" plugin v1.1 presents a generally positive security posture based on the provided static analysis. The absence of any detected attack surface points like AJAX handlers, REST API routes, or shortcodes without proper authentication checks is a significant strength. Furthermore, the lack of any recorded vulnerabilities or CVEs in its history suggests a history of responsible development and maintenance.
However, there are areas for improvement that introduce minor risks. The code signals indicate a moderate concern regarding output escaping, with only 28% of outputs being properly escaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not handled carefully before being displayed. The presence of SQL queries that are not using prepared statements (only 29% are) also poses a risk of SQL injection, although the total number of SQL queries is relatively low.
While the plugin has a clean vulnerability history, the identified code signals warrant attention. The primary weaknesses lie in the less than ideal output escaping and the use of raw SQL queries. Addressing these areas would significantly enhance the plugin's security, moving it closer to an ideal state. Overall, the plugin is in a relatively good security state, but it is not entirely free of potential risks.
Key Concerns
- Raw SQL queries present
- Low percentage of properly escaped output
Users Custom Posts Counts Security Vulnerabilities
Users Custom Posts Counts Code Analysis
SQL Query Safety
Output Escaping
Users Custom Posts Counts Attack Surface
WordPress Hooks 12
Maintenance & Trust
Users Custom Posts Counts Maintenance & Trust
Maintenance Signals
Community Trust
Users Custom Posts Counts Alternatives
Counter Widget
counter-widget
Widget for displaying post, category, comment and user count.
Custom Post Type Filters For Users Insights
custom-post-type-filters-for-users-insights
Extends the Users Insights plugin by adding an option to list and filter the users by the number of posts they have created from each custom post type
Custom Post Type UI
custom-post-type-ui
Admin UI for creating custom content types like post types and taxonomies
Meta Box
meta-box
Meta Box plugin is a powerful, professional developer toolkit to create custom meta boxes and custom fields for your custom post types in WordPress.
Pods – Custom Content Types and Fields
pods
Pods is a framework for creating, managing, and deploying customized content types and fields for any project.
Users Custom Posts Counts Developer Profile
2 plugins · 810 total installs
How We Detect Users Custom Posts Counts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/users-custom-posts-counts/admin/about/css/bc-about.css/wp-content/plugins/users-custom-posts-counts/admin/about/js/bc-about.js/wp-content/plugins/users-custom-posts-counts/admin/about/js/bc-about.jsusers-custom-posts-counts/admin/about/css/bc-about.css?ver=users-custom-posts-counts/admin/about/js/bc-about.js?ver=HTML / DOM Fingerprints
bc-about-product-version