Insert Featured Image Shortcode Security & Risk Analysis
wordpress.org/plugins/add-post-thumbnail-shortcodeAdds a shortcode to insert the post's featured image into the post's content.
Is Insert Featured Image Shortcode Safe to Use in 2026?
Generally Safe
Score 85/100Insert Featured Image Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "add-post-thumbnail-shortcode" v1.2.2 plugin exhibits a generally positive security posture based on the static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests is commendable. Furthermore, the lack of known CVEs and past vulnerabilities suggests a mature and well-maintained codebase. However, a significant concern arises from the complete lack of output escaping. With one output identified and 0% properly escaped, there is a high potential for Cross-Site Scripting (XSS) vulnerabilities if the shortcode's functionality involves user-supplied data being rendered directly into the page. While the attack surface is small and appears to have no direct authentication bypasses, the unescaped output presents a clear and present risk that needs immediate attention. This single flaw significantly undermines the otherwise strong security indications.
Key Concerns
- Unescaped output
Insert Featured Image Shortcode Security Vulnerabilities
Insert Featured Image Shortcode Code Analysis
Output Escaping
Insert Featured Image Shortcode Attack Surface
Shortcodes 1
Maintenance & Trust
Insert Featured Image Shortcode Maintenance & Trust
Maintenance Signals
Community Trust
Insert Featured Image Shortcode Alternatives
Require Featured Image
require-featured-image
Requires content you specify to have a featured image set before they can be published.
Featured Image on Top
featured-image-on-top
Tired of having to move your "Featured Images" metabox to the top? I've got a fix for that!
SEO Friendly Images
seo-image
SEO Friendly Images automatically adds alt and title attributes to all your images improving traffic from search engines.
FSM Custom Featured Image Caption
fsm-custom-featured-image-caption
Allows adding custom captions to the featured images of the posts.
Multiple Featured Images
multiple-featured-images
Enables multiple featured images for all post types (including custom post types and WooCommerce products). Comes with a widget and a handy shortcode …
Insert Featured Image Shortcode Developer Profile
6 plugins · 1K total installs
How We Detect Insert Featured Image Shortcode
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
add-post-thumbnail-shortcode/post_thumbnail_shortcode.php?ver=HTML / DOM Fingerprints
post_thumbnail<span class="post_thumbnail