Advanced Excerpt Security & Risk Analysis

wordpress.org/plugins/advanced-excerpt

Control the appearance of WordPress post excerpts

80K active installs v4.4.1 PHP + WP 3.2+ Updated Jan 19, 2024
contentexcerptformattingpostpost-excerpt
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Advanced Excerpt Safe to Use in 2026?

Generally Safe

Score 85/100

Advanced Excerpt has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The advanced-excerpt plugin version 4.4.1 demonstrates a generally good security posture with no recorded vulnerabilities and a clean taint analysis. The presence of a nonce check and the use of prepared statements for SQL queries are positive indicators. However, the low percentage of properly escaped output (12%) is a significant concern. This suggests that user-supplied data, if processed through the plugin's output mechanisms, could be vulnerable to cross-site scripting (XSS) attacks, as raw data might be directly rendered in the browser. While the attack surface is small and currently shows no unprotected entry points, this output escaping issue represents a potential weakness that could be exploited.

Key Concerns

  • Low percentage of properly escaped output
Vulnerabilities
None known

Advanced Excerpt Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Advanced Excerpt Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
15
2 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

12% escaped17 total outputs
Attack Surface

Advanced Excerpt Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[advanced_excerpt_text] functions\functions.php:96
WordPress Hooks 9
actionwp_loadedadvanced-excerpt.php:17
actioninitadvanced-excerpt.php:26
actionloop_startclass\advanced-excerpt.php:85
filterwppsac_excerptclass\advanced-excerpt.php:101
filterget_the_excerptclass\advanced-excerpt.php:127
filterthe_contentclass\advanced-excerpt.php:131
actionadmin_menuclass\advanced-excerpt.php:136
filterthe_contentclass\advanced-excerpt.php:300
filterget_the_excerptfunctions\functions.php:68
Maintenance & Trust

Advanced Excerpt Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedJan 19, 2024
PHP min version
Downloads1.5M

Community Trust

Rating86/100
Number of ratings101
Active installs80K
Developer Profile

Advanced Excerpt Developer Profile

WPKube

9 plugins · 238K total installs

66
trust score
Avg Security Score
81/100
Avg Patch Time
725 days
View full developer profile
Detection Fingerprints

How We Detect Advanced Excerpt

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advanced-excerpt/css/advanced-excerpt.css/wp-content/plugins/advanced-excerpt/js/advanced-excerpt.js
Script Paths
/wp-content/plugins/advanced-excerpt/js/advanced-excerpt.js
Version Parameters
advanced-excerpt/css/advanced-excerpt.css?ver=advanced-excerpt/js/advanced-excerpt.js?ver=

HTML / DOM Fingerprints

CSS Classes
advanced-excerpt-settings
Data Attributes
data-advanced-excerpt-lengthdata-advanced-excerpt-length-typedata-advanced-excerpt-no-customdata-advanced-excerpt-no-custom-from-customdata-advanced-excerpt-link-excerptdata-advanced-excerpt-no-shortcode+14 more
JS Globals
window.advanced_excerpt_params
Shortcode Output
[advanced_excerpt]
FAQ

Frequently Asked Questions about Advanced Excerpt