
WP Discord Post Plus – Supports Unlimited Channels Security & Risk Analysis
wordpress.org/plugins/wp-discord-post-plusWP Discord Post Plus integrates with WordPress and WooCommerce (if installed) to send your new post and orders to discord channels.
Is WP Discord Post Plus – Supports Unlimited Channels Safe to Use in 2026?
Use With Caution
Score 63/100WP Discord Post Plus – Supports Unlimited Channels has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "wp-discord-post-plus" plugin version 1.0.2 exhibits a mixed security posture. On the positive side, static analysis reveals a very small attack surface with zero identified entry points and no dangerous functions utilized. All SQL queries are properly prepared, and there are no file operations or external HTTP requests that appear to be a direct security concern within the analyzed code. However, a significant weakness lies in the output escaping, with less than half of the outputs being properly sanitized, presenting a potential risk of Cross-Site Scripting (XSS) vulnerabilities.
Taint analysis shows no critical or high-severity flows, which is a positive indicator. Yet, the absence of nonce checks on any entry points, coupled with only one capability check, suggests that authentication and authorization might not be consistently enforced across all plugin functionalities. The vulnerability history is a major red flag, with one unpatched medium-severity CVE, historically related to Cross-Site Request Forgery (CSRF). The presence of an unpatched vulnerability, even if medium severity, significantly elevates the risk profile.
In conclusion, while the plugin has some good security practices like prepared SQL statements and a minimal attack surface, the poor output escaping and the unpatched CSRF vulnerability are significant concerns. The lack of robust nonce and capability checks further exacerbates these issues, making the plugin a potential target for attackers. Addressing the output escaping and the unpatched CVE is paramount to improving its security.
Key Concerns
- Unpatched CVE
- Low output escaping percentage
- No nonce checks on entry points
WP Discord Post Plus – Supports Unlimited Channels Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WP Discord Post Plus - Supports Unlimited Channels <= 1.0.2 - Cross-Site Request Forgery
WP Discord Post Plus – Supports Unlimited Channels Code Analysis
Output Escaping
WP Discord Post Plus – Supports Unlimited Channels Attack Surface
WordPress Hooks 11
Maintenance & Trust
WP Discord Post Plus – Supports Unlimited Channels Maintenance & Trust
Maintenance Signals
Community Trust
WP Discord Post Plus – Supports Unlimited Channels Alternatives
wp2d Auto Post
wp2d-auto-post
Auto-posting the announces of publishing posts to the Discord channel.
Schedule Post Changes With PublishPress Future: Unpublish, Delete, Change Status, Trash, Change Categories
post-expirator
PublishPress Future can make scheduled changes to your content. You can unpublish posts, move posts to a new status, update the categories, and more.
Social Media Auto Poster – Schedule & Publish to Buffer
wp-to-buffer
Automatically post and schedule your WordPress content to Facebook, X/Twitter, LinkedIn, Threads, Bluesky, and more social networks using Buffer.
Social Media Auto Publish
social-media-auto-publish
Publish posts automatically to social media networks like Facebook, Twitter, Instagram, Tumblr, LinkedIn, Threads and Telegram.
RevivePress – Keep your Old Content Evergreen
wp-auto-republish
RevivePress, the all-in-one tool for republishing & cloning old posts and pages which push old posts to your front page, the top of archive pages, …
WP Discord Post Plus – Supports Unlimited Channels Developer Profile
3 plugins · 1K total installs
How We Detect WP Discord Post Plus – Supports Unlimited Channels
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-discord-post-plus/assets/main.css/wp-content/plugins/wp-discord-post-plus/assets/main.js/wp-content/plugins/wp-discord-post-plus/assets/main.jswp-discord-post-plus/assets/main.js?ver=HTML / DOM Fingerprints
id='wp_discord_metabox_send_flag'name='wp_discord_metabox_send_flag'id='wp_discord_metabox_mention_flag'name='wp_discord_metabox_mention_flag'name='wp_discord_metabox_override_channel'