
Featured Post Widget – Link to Category Security & Risk Analysis
wordpress.org/plugins/featured-post-widget-link-to-categoryModification of StudioPress Featured Post Widget that enables an override link to the category.
Is Featured Post Widget – Link to Category Safe to Use in 2026?
Generally Safe
Score 85/100Featured Post Widget – Link to Category has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "featured-post-widget-link-to-category" plugin v1.0 exhibits a generally good security posture based on the provided static analysis. The absence of any known CVEs and the complete lack of critical or high-severity issues in its vulnerability history are positive indicators. The code analysis reveals no dangerous functions, file operations, or external HTTP requests, and all SQL queries are secured with prepared statements. However, a significant concern arises from the output escaping, where only 30% of outputs are properly escaped. This indicates a risk of Cross-Site Scripting (XSS) vulnerabilities, especially as there are no explicit nonce or capability checks, suggesting potential for unauthorized actions if an attacker can manipulate the input that leads to these unescaped outputs.
Despite the limited attack surface and clean vulnerability history, the insufficient output escaping presents a tangible risk. While the plugin does not appear to have been a historical target for significant vulnerabilities, this does not negate the potential for new issues to emerge. The strengths lie in its adherence to secure coding practices for SQL and avoiding common risky functions. The primary weakness is the lack of comprehensive output sanitization, which could lead to XSS attacks if user-supplied data is not handled correctly before being displayed.
Key Concerns
- Low percentage of properly escaped output
- No nonce checks
- No capability checks
Featured Post Widget – Link to Category Security Vulnerabilities
Featured Post Widget – Link to Category Code Analysis
Output Escaping
Featured Post Widget – Link to Category Attack Surface
WordPress Hooks 1
Maintenance & Trust
Featured Post Widget – Link to Category Maintenance & Trust
Maintenance Signals
Community Trust
Featured Post Widget – Link to Category Alternatives
Featured Post Exclude Category for Genesis
featured-post-exclude-category-for-genesis
A new featured posts widget for Genesis themes that allows you to exclude a category when selecting All Categories in the featured post widget.
Featured Post Creative
featured-post-creative
Display Featured post on your website with 2 shortcode and 1 widget. Also work with Gutenberg shortcode block.
Genesis Club Lite
genesis-club-lite
Mobile Responsive Logos, Hamburger Menus, Animated Top Bars, FAQ Accordions, User Signatures, Google Calendars and much more for Genesis sites
AK Featured Post Widget
akfeatured-post-widget
A widget that you can use to display your blog posts, custom post types, or woocommerce products!
Nelio Featured Posts
nelio-featured-posts
Select the featured posts you want to show at any time and include them in your theme using a widget.
Featured Post Widget – Link to Category Developer Profile
1 plugin · 10 total installs
How We Detect Featured Post Widget – Link to Category
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
featuredpostcategory