
Featured Item Metabox Security & Risk Analysis
wordpress.org/plugins/featured-item-metaboxQuickly add a metabox to any post type for marking a post as featured. Toggle featured status even more quickly from the posts lists/ quick edit scre …
Is Featured Item Metabox Safe to Use in 2026?
Generally Safe
Score 85/100Featured Item Metabox has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "featured-item-metabox" plugin version 1.3.2 presents a generally good security posture based on the static analysis. The plugin demonstrates strong adherence to secure coding practices by having no SQL queries that are not prepared, and it implements a healthy number of nonce and capability checks. Furthermore, the absence of known vulnerabilities in its history is a significant positive indicator of its security.
However, a notable concern arises from the output escaping. With 100% of its observed outputs unescaped, this plugin is susceptible to Cross-Site Scripting (XSS) vulnerabilities. Any data displayed to users, if not properly sanitized, could be manipulated by an attacker to inject malicious scripts. While there are no critical taint flows or dangerous functions identified, the lack of output escaping represents a significant and immediate risk that needs to be addressed.
In conclusion, the "featured-item-metabox" plugin benefits from robust input validation and a clean vulnerability history. Nevertheless, the complete absence of output escaping is a critical weakness that significantly elevates its risk profile. Addressing this specific issue should be the highest priority to improve its overall security.
Key Concerns
- 0% of outputs properly escaped
Featured Item Metabox Security Vulnerabilities
Featured Item Metabox Code Analysis
Output Escaping
Data Flow Analysis
Featured Item Metabox Attack Surface
AJAX Handlers 1
WordPress Hooks 15
Maintenance & Trust
Featured Item Metabox Maintenance & Trust
Maintenance Signals
Community Trust
Featured Item Metabox Alternatives
Custom Featured Image Metabox
custom-featured-image-metabox
Custom the title, content and set / remove link text in the Featured Image metabox.
Drag & Drop Featured Image Improved
drag-drop-featured-image-improved
Drag and Drop Featured Image Improved replaces the default featured image box with a drag and drop zone for faster and more convenient uploads.
Ocean Extra
ocean-extra
Ocean Extra adds extra features and flexibility to the OceanWP theme for a turbocharged experience.
CMB2
cmb2
CMB2 is a metabox, custom fields, and forms library for WordPress that will blow your mind.
Featured Image from URL (FIFU)
featured-image-from-url
Use remote media as the featured image and beyond.
Featured Item Metabox Developer Profile
6 plugins · 99K total installs
How We Detect Featured Item Metabox
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/featured-item-metabox/css/admin.css/wp-content/plugins/featured-item-metabox/js/admin.js/wp-content/plugins/featured-item-metabox/js/admin.jsfeatured-item-metabox/css/admin.css?ver=featured-item-metabox/js/admin.js?ver=HTML / DOM Fingerprints
featured-item-metabox-wrapdata-featured-item-metabox-nonceFeaturedItemMetabox