
wp custom lists Security & Risk Analysis
wordpress.org/plugins/wp-custom-listsCreate lists content by adding shortcode into pages, posts, custom types
Is wp custom lists Safe to Use in 2026?
Generally Safe
Score 85/100wp custom lists has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-custom-lists v1.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries, avoiding dangerous functions, and having no known vulnerabilities in its history. The plugin also has a limited attack surface with only one shortcode as an entry point and no unprotected AJAX or REST API endpoints. However, the static analysis reveals significant concerns regarding output escaping and taint analysis. The low percentage of properly escaped outputs suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data might be directly rendered in the frontend without proper sanitization. Furthermore, the presence of a high-severity taint flow with unsanitized paths indicates a potential pathway for malicious data to be processed in an insecure manner, which could lead to various security issues depending on the context of that flow. While there are no known CVEs, the identified code signals warrant caution.
Key Concerns
- Low percentage of properly escaped output
- High severity taint flow with unsanitized path
- No capability checks on entry points
wp custom lists Security Vulnerabilities
wp custom lists Release Timeline
wp custom lists Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
wp custom lists Attack Surface
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
wp custom lists Maintenance & Trust
Maintenance Signals
Community Trust
wp custom lists Alternatives
MailChimp Forms by MailMunch
mailchimp-forms-by-mailmunch
MailChimp Forms to get more email subscribers. Subscribe your WordPress visitors to your MailChimp lists easily.
YourChannel: Everything you want in a YouTube plugin.
yourchannel
Setup beautiful YouTube feed streams with 1 copy paste & 2 clicks. Displays banner, uploads, playlists and more (All optional).
User Avatar
user-avatar
Provides a thumbnail area in Your Profile, for users to upload & crop new images in an overlay to be saved and stored to their profile.
Simple Link List Widget
simple-link-list-widget
This plugin makes a widget available which allows you to add a simple link list (bulleted or numbered) to a sidebar.
WPJM Extra Fields
wpjm-extra-fields
Adds Salary and Important Information extra fields to WP Job Manager plugin. Both in the front-end for Job Submissions as well as in the back end for …
wp custom lists Developer Profile
2 plugins · 20 total installs
How We Detect wp custom lists
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-custom-lists/css/admin.css/wp-content/plugins/wp-custom-lists/js/admin.js/wp-content/plugins/wp-custom-lists/js/wp_list.js/wp-content/plugins/wp-custom-lists/js/admin.js/wp-content/plugins/wp-custom-lists/js/wp_list.jswp-custom-lists/css/admin.css?ver=wp-custom-lists/js/admin.js?ver=HTML / DOM Fingerprints
list-blocklist-titlelist-contentdata-wp_list_tc_buttonwplist_tinymce_custom_getValues$list_error_msg<div class="list-block">
<a class="list-title" href="#"><div class="list-content"><div class="clearfix"></div>
</div>
</div>