Disable RSS, RDF, and Atom Feeds Security & Risk Analysis

wordpress.org/plugins/disable-rss-rdf-atom-feeds

Disable all RSS, RDF, and Atom feeds on your WordPress site with the option to control behavior such as redirection or issuing a 404 error.

10 active installs v1.1 PHP + WP 5.0+ Updated Dec 22, 2024
atomdisable-feedfeedsrdfrss
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Disable RSS, RDF, and Atom Feeds Safe to Use in 2026?

Generally Safe

Score 92/100

Disable RSS, RDF, and Atom Feeds has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "disable-rss-rdf-atom-feeds" plugin v1.1 exhibits a generally good security posture, with no identified vulnerabilities in its history and a limited attack surface. The static analysis reveals a commendable absence of dangerous functions, file operations, and external HTTP requests. All SQL queries, though few, are properly prepared. However, a notable concern arises from the taint analysis, which identified two flows with unsanitized paths. While these did not reach critical or high severity, they indicate a potential for subtle vulnerabilities if the plugin's functionality were to expand or interact with external data in the future. Furthermore, the output escaping is only 55% properly handled, which could lead to cross-site scripting (XSS) vulnerabilities if user-controlled data is rendered without proper sanitization.

Despite the absence of known CVEs and a clean vulnerability history, the presence of unsanitized paths in the taint analysis and the moderate output escaping efficiency are areas that warrant attention. The plugin's core functionality is straightforward, which contributes to its current low-risk profile. However, a proactive approach to addressing the identified taint flows and improving output sanitization would significantly strengthen its security posture and mitigate potential future risks.

Key Concerns

  • Flows with unsanitized paths detected
  • Output escaping is only 55% proper
Vulnerabilities
None known

Disable RSS, RDF, and Atom Feeds Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Disable RSS, RDF, and Atom Feeds Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

55% escaped11 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
redirect_feed (disable-rss-rdf-atom-feeds.php:157)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Disable RSS, RDF, and Atom Feeds Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actionadmin_menudisable-rss-rdf-atom-feeds.php:24
actionadmin_initdisable-rss-rdf-atom-feeds.php:25
actionplugins_loadeddisable-rss-rdf-atom-feeds.php:26
actiondo_feeddisable-rss-rdf-atom-feeds.php:29
actiondo_feed_rdfdisable-rss-rdf-atom-feeds.php:30
actiondo_feed_rssdisable-rss-rdf-atom-feeds.php:31
actiondo_feed_rss2disable-rss-rdf-atom-feeds.php:32
actiondo_feed_atomdisable-rss-rdf-atom-feeds.php:33
actiondo_feed_rss2_commentsdisable-rss-rdf-atom-feeds.php:34
actiondo_feed_atom_commentsdisable-rss-rdf-atom-feeds.php:35
filterbbp_requestdisable-rss-rdf-atom-feeds.php:36
Maintenance & Trust

Disable RSS, RDF, and Atom Feeds Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 22, 2024
PHP min version
Downloads972

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Disable RSS, RDF, and Atom Feeds Developer Profile

Roxnor

15 plugins · 3.0M total installs

73
trust score
Avg Security Score
91/100
Avg Patch Time
118 days
View full developer profile
Detection Fingerprints

How We Detect Disable RSS, RDF, and Atom Feeds

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Disable RSS, RDF, and Atom Feeds