AB Simple Feeds Security & Risk Analysis

wordpress.org/plugins/ab-simple-feeds

A simple plugin help you to embed feeds from other websites on your website.

10 active installs v1.1 PHP + WP 4.0+ Updated May 4, 2023
ab-simple-feedsfeedsthrid-party-feed-display
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AB Simple Feeds Safe to Use in 2026?

Generally Safe

Score 85/100

AB Simple Feeds has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "ab-simple-feeds" plugin version 1.1 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, proper sanitization of SQL queries, and 100% output escaping are excellent indicators of good coding practices. Furthermore, the lack of file operations and external HTTP requests reduces potential attack vectors. The plugin's attack surface is minimal, with only one shortcode identified, and importantly, it appears to have no unprotected entry points.

The vulnerability history is also reassuring, with zero known CVEs and no recorded vulnerabilities of any severity. This suggests a commitment to security by the developers or that the plugin has not been a target for exploitation. However, the complete absence of nonce checks and capability checks, even for the single shortcode, represents a potential concern. While the current version may not have exploitable vulnerabilities, these missing security controls could be exploited in future versions if new entry points are introduced or if existing ones are modified without proper authorization checks.

In conclusion, "ab-simple-feeds" v1.1 appears to be a secure plugin with a clean bill of health regarding known vulnerabilities and robust code practices in key areas. The primary weakness lies in the missing authorization checks, specifically nonce and capability checks, which could be a point of future concern. Addressing these missing checks would further solidify its security posture.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

AB Simple Feeds Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AB Simple Feeds Release Timeline

v1.0
Code Analysis
Analyzed Apr 16, 2026

AB Simple Feeds Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped3 total outputs
Attack Surface

AB Simple Feeds Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[feed] ab-simple-feeds.php:43
Maintenance & Trust

AB Simple Feeds Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedMay 4, 2023
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

AB Simple Feeds Developer Profile

Aboobacker.

5 plugins · 160 total installs

65
trust score
Avg Security Score
80/100
Avg Patch Time
3228 days
View full developer profile
Detection Fingerprints

How We Detect AB Simple Feeds

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ab-simple-feeds/js/jquery.vticker.min.js
Script Paths
/wp-content/plugins/ab-simple-feeds/js/jquery.vticker.min.js
Version Parameters
jquery.vticker.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
ab_custom_feeds
Data Attributes
id="ab_feeds_num"id="ab_feeds_scroll"id="ab_feeds_speed"id="ab_feeds_pause"
Shortcode Output
<div id="ab_feed_container"><input type="hidden" id="ab_feeds_num"<input type="hidden" id="ab_feeds_scroll"<input type="hidden" id="ab_feeds_speed"<input type="hidden" id="ab_feeds_pause"
FAQ

Frequently Asked Questions about AB Simple Feeds