WP Advanced Include Security & Risk Analysis

wordpress.org/plugins/wp-advanced-include

Easily include WordPress Post / Page content with in another WordPress post/page using a simple shortcode. WP Advanced Include can include post conte …

30 active installs v1.0 PHP + WP 3+ Updated Nov 11, 2012
advanced-includeincludeinclude-meta-contentinclude-post-contentinclude-post-excerpt
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is WP Advanced Include Safe to Use in 2026?

Generally Safe

Score 85/100

WP Advanced Include has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 13yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the wp-advanced-include plugin exhibits a strong security posture. The absence of any identified dangerous functions, direct SQL queries, unescaped output, file operations, external HTTP requests, or unsanitized taint flows is highly commendable. Furthermore, the lack of any known CVEs, historical or current, suggests a well-maintained and secure codebase. The plugin also demonstrates good practices by implementing capability checks and nonce checks where applicable, although the analysis indicates these are absent, which is unusual given the otherwise clean results. The significant absence of entry points (AJAX, REST API, shortcodes, cron) further reduces its attack surface. The only potential area of concern is the complete absence of recorded capability and nonce checks, which might indicate an oversight in the analysis or a plugin that doesn't require such checks due to its limited functionality. However, without explicit evidence of exploitable vulnerabilities arising from this, it's difficult to assign a definitive risk. Overall, the plugin appears very secure with no immediate threats identified in the provided data.

Key Concerns

  • No capability checks found
  • No nonce checks found
Vulnerabilities
None known

WP Advanced Include Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Advanced Include Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

WP Advanced Include Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitWpAdvancedInclude.php:121
Maintenance & Trust

WP Advanced Include Maintenance & Trust

Maintenance Signals

WordPress version tested3.4.2
Last updatedNov 11, 2012
PHP min version
Downloads71K

Community Trust

Rating100/100
Number of ratings2
Active installs30
Developer Profile

WP Advanced Include Developer Profile

Jamie

1 plugin · 30 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Advanced Include

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
[include content_id="" /][include content_id="" content_limit="" /][include content_id="" content_limit="" content_limit_type="" /][include content_id="" content_limit="" content_limit_type="" content_limit_append="" /]
FAQ

Frequently Asked Questions about WP Advanced Include