
Auto Featured Image from Title Security & Risk Analysis
wordpress.org/plugins/auto-featured-image-from-titleAutomatically generates an image from the post title of a new or updated post and sets it as the featured image.
Is Auto Featured Image from Title Safe to Use in 2026?
Generally Safe
Score 91/100Auto Featured Image from Title has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The plugin 'auto-featured-image-from-title' v2.4 demonstrates a generally good security posture based on the provided static analysis. The absence of any identified dangerous functions, SQL queries without prepared statements, unescaped output, file operations, or external HTTP requests is highly commendable. Furthermore, the presence of nonce and capability checks indicates an awareness of basic WordPress security principles. However, the historical vulnerability data reveals a past medium-severity Cross-Site Scripting (XSS) vulnerability, last patched on September 30, 2024. While currently unpatched, this indicates a potential recurring weakness if not thoroughly addressed and monitored.
The static analysis shows a clean bill of health with zero identified critical or high severity taint flows, and a zero attack surface from common entry points like AJAX handlers, REST API routes, shortcodes, and cron events. This suggests that in its current state, the plugin has minimal direct exposure to common web attack vectors. The plugin's strengths lie in its careful coding practices regarding SQL and output escaping, and its minimal attack surface. The primary concern stems from its vulnerability history, which, despite being addressed, highlights a past susceptibility that warrants vigilance.
Key Concerns
- Past medium severity XSS vulnerability
Auto Featured Image from Title Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Auto Featured Image from Title <= 2.3 - Reflected Cross-Site Scripting
Auto Featured Image from Title Release Timeline
Auto Featured Image from Title Code Analysis
Output Escaping
Auto Featured Image from Title Attack Surface
WordPress Hooks 11
Maintenance & Trust
Auto Featured Image from Title Maintenance & Trust
Maintenance Signals
Community Trust
Auto Featured Image from Title Alternatives
Acme Fix Images – Regenerate Thumbnails
acme-fix-images
Fix image sizes after you have changed image sizes from Media Settings. Ensure your images display consistently across your website.
Automatic Featured Images from Videos
automatic-featured-images-from-videos
If a YouTube or Vimeo video embed exists near the start of a post, we'll automatically set the post's featured image to a thumbnail of the video.
AI Thumbnails Maker – auto featured image & force regenerate thumbnails
ai-thumbnails-maker
Revolutionary auto featured image generator with AI. Effortlessly create thumbnails, force regenerate thumbnails, and automate image workflows.
Thumbnail Image Generator – Automatically Generate Featured Images
thumbnail-image-generator
Automatically generate featured images and post thumbnails for your WordPress posts, and pages.
Force Regenerate Thumbnails
force-regenerate-thumbnails
Delete and REALLY force thumbnail regeneration.
Auto Featured Image from Title Developer Profile
1 plugin · 1K total installs
How We Detect Auto Featured Image from Title
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/auto-featured-image-from-title/images/wp-content/plugins/auto-featured-image-from-title/fonts