Custom Messages In RSS Feed Security & Risk Analysis

wordpress.org/plugins/custom-messages-in-rss-feed

This plugin allows you to insert/append custom messages into your RSS feed.

10 active installs v1.1 PHP 7.0+ WP 3.0+ Updated Jan 17, 2024
attribution-linkscustom-messagesfeedrss
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Custom Messages In RSS Feed Safe to Use in 2026?

Generally Safe

Score 85/100

Custom Messages In RSS Feed has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'custom-messages-in-rss-feed' plugin version 1.1 exhibits an excellent security posture. The static analysis reveals a remarkably clean codebase with no identified dangerous functions, no raw SQL queries, and all output properly escaped. The absence of AJAX handlers, REST API routes, shortcodes, cron events, and file operations, or at least their complete lack of public exposure without proper authorization, significantly limits the plugin's attack surface to zero entry points. Furthermore, the plugin demonstrates a mature approach by not relying on bundled libraries, further reducing potential third-party vulnerabilities.

The vulnerability history further reinforces this positive assessment, showing zero known CVEs for this plugin. This indicates a history of responsible development and a lack of previously discovered security flaws. The complete absence of any recorded vulnerabilities across all severity levels, including no common vulnerability types, suggests a robust and well-maintained code base over time. While the lack of any public-facing entry points is a strength, it also means there's no specific functionality exposed that could be tested for common WordPress vulnerabilities like cross-site scripting or SQL injection. Overall, this plugin appears to be exceptionally secure based on the data provided, demonstrating a strong commitment to security best practices.

Vulnerabilities
None known

Custom Messages In RSS Feed Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Custom Messages In RSS Feed Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Custom Messages In RSS Feed Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
filterthe_excerpt_rssrssappend.php:27
filterthe_content_feedrssappend.php:28
actionadmin_menurssplugin.php:13
actionadmin_initrssplugin.php:17
Maintenance & Trust

Custom Messages In RSS Feed Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedJan 17, 2024
PHP min version7.0
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Custom Messages In RSS Feed Developer Profile

Keral Patel

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Custom Messages In RSS Feed

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/custom-messages-in-rss-feed/rssplugin.php

HTML / DOM Fingerprints

CSS Classes
wrapform-table
FAQ

Frequently Asked Questions about Custom Messages In RSS Feed