Emanda – Featured Image in RSS Security & Risk Analysis

wordpress.org/plugins/emanda-featured-image-rss

Adds the post’s featured image to the default WordPress RSS feed. Optional Media RSS/enclosure, fallbacks, and emoji cleanup.

10 active installs v1.1.3 PHP 7.2+ WP 5.0+ Updated Aug 21, 2025
enclosurefeatured-imagefeedmedia-rssrss
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Emanda – Featured Image in RSS Safe to Use in 2026?

Generally Safe

Score 100/100

Emanda – Featured Image in RSS has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The emanda-featured-image-rss plugin v1.1.3 exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points significantly limits the potential attack surface. Furthermore, the code signals indicate a clean codebase with no dangerous functions, no file operations, and no external HTTP requests. All SQL queries are properly prepared, and the vast majority of output is correctly escaped, mitigating common injection and XSS vulnerabilities. The presence of at least one capability check further reinforces secure access controls.

The vulnerability history is also a significant strength, with zero known CVEs, including no currently unpatched vulnerabilities. This pattern suggests a well-maintained and secure plugin over time. The lack of recorded common vulnerability types further bolsters this confidence.

While the plugin demonstrates excellent security practices in its current state and history, it's important to note the lack of taint analysis results, which could provide deeper insights into potential data flow vulnerabilities, though the static analysis appears to have found none. Overall, this plugin appears to be very secure, with no immediate red flags or significant risks identified in the provided data.

Vulnerabilities
None known

Emanda – Featured Image in RSS Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Emanda – Featured Image in RSS Release Timeline

v1.1.3Current
Code Analysis
Analyzed Mar 17, 2026

Emanda – Featured Image in RSS Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
22 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

92% escaped24 total outputs
Attack Surface

Emanda – Featured Image in RSS Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_initemanda-featured-image-rss.php:58
actionadmin_menuemanda-featured-image-rss.php:59
filterthe_content_feedemanda-featured-image-rss.php:62
actionrss2_nsemanda-featured-image-rss.php:63
actionrss2_itememanda-featured-image-rss.php:64
actioninitemanda-featured-image-rss.php:65
filteremoji_svg_urlemanda-featured-image-rss.php:277
Maintenance & Trust

Emanda – Featured Image in RSS Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 21, 2025
PHP min version7.2
Downloads257

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Emanda – Featured Image in RSS Developer Profile

Iuri Moura

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Emanda – Featured Image in RSS

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
wp-smiley
FAQ

Frequently Asked Questions about Emanda – Featured Image in RSS