Most Installed Post WordPress Plugins

143 indexed plugins

Plugins

143

Active Installs

1m+

Average Score

59

Audited

142

RankPluginScoreErrorsWarningsInstallsAddedUpdatedTop Issue
#1Header and Footer Scripts9921200k+Non-prefixed class
#2Post Duplicator603324200k+Missing direct file access protection
#3Post Type Switcher75318200k+Direct Query
#4Advanced Excerpt41694370k+Unsafe printing function
#5Add From Server37522060k+Output is not escaped
#6Reveal IDs35231340k+Output is not escaped
#7Revision Control41602840k+Output is not escaped
#8Themify Portfolio Post3021410230k+Text Domain Mismatch
#9WP Admin UI Customize3062939030k+Non-prefixed global variable
#10Radio Buttons for Taxonomies39402420k+Output is not escaped
#11SEO Friendly Images392922020k+Output is not escaped
#12Custom Post Template37483010k+Output is not escaped
#13Duplicate PP90810k+Non-prefixed constant
#14Featured Video Plus349910510k+Non-prefixed global variable
#15Hide Featured Image42261210k+Unsafe printing function
#16Public Post Preview Configurator8414610k+Non Singular String Literal Domain
#17Search and Replace707910k+Input is not sanitized
#18Unlist Posts & Pages835910k+Nonce verification recommended
#19VK Post Author Display358711110k+Non-prefixed function
#20WP Author, Date and Meta Remover974310k+trademarked term
#21XPoster – Share to Bluesky and Mastodon62263610k+Missing nonce verification
#22Bulk Move4085449k+Unsafe printing function
#23Attachments38238668k+Unsafe printing function
#24ShowID for Post/Page/Category/Tag/Comment97518k+Missing direct file access protection
#25Auto Image Alt Attribute552676k+Unsafe printing function
#26Custom Post Type Maker35240866k+Unsafe printing function
#27Disable Author Pages482356k+Unsafe printing function
#28Posts Like Dislike42157396k+Non Singular String Literal Domain
#29Sticky Posts – Switch418456k+Output is not escaped
#30Ambrosite Next/Previous Post Link Plus6912245k+Interpolated SQL is not prepared
#31Custom Shortcodes96525k+Missing direct file access protection
#32I Recommend This – Love/Like Button for WordPress Posts873495k+Direct Query
#33Press This701445k+Non-prefixed hook name
#34Remove noreferrer7917145k+Missing Arg Domain
#35Admin Collapse Subpages824124k+Nonce verification recommended
#36Companion Revision Manager – Revision Control4218284k+Unsafe printing function
#37DX Delete Attached Media463284k+Output is not escaped
#38Korea SNS3988304k+Unsafe printing function
#39NS Featured Posts862154k+Nonce verification recommended
#40Preserve Editor Scroll Position83264k+Missing nonce verification
#41WP Hide Show Featured Image503654k+Unsafe printing function
#42WP Post Branches6716124k+Nonce verification recommended
#43Translation with DeepL API99114k+outdated tested upto header
#44AI WP Writer – SEO content generator, chatGPT, Gemini345815093k+Text Domain Mismatch
#45Autoremove Attachments98253k+Non-prefixed function
#46Category Sticky Post634243k+Missing nonce verification
#47Display Featured Image In Post List99203k+Missing direct file access protection
#48HeadSpace2 SEO229403603k+Text Domain Mismatch
#49Peter’s Post Notes362241023k+Output is not escaped
#50Require Featured Image562063k+Output is not escaped