FeedWordPress Duplicate Post Filter Security & Risk Analysis

wordpress.org/plugins/feedwordpress-duplicate-post-filter

A FeedWordPress syndicated post filter that checks for duplicates before posting items from your feeds.

200 active installs v1.5 PHP + WP 2.8+ Updated Mar 2, 2012
duplicate-postsfeedwordpress
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is FeedWordPress Duplicate Post Filter Safe to Use in 2026?

Generally Safe

Score 85/100

FeedWordPress Duplicate Post Filter has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 14yr ago
Risk Assessment

The plugin "feedwordpress-duplicate-post-filter" v1.5 exhibits a strong security posture based on the provided static analysis. The complete absence of dangerous functions, unsanitized taint flows, and SQL injection vulnerabilities due to prepared statements is commendable. Furthermore, the adherence to output escaping for all identified outputs and the presence of capability checks indicate good development practices aimed at preventing common web vulnerabilities.

However, a notable concern arises from the lack of nonce checks on any identified entry points, even though the attack surface appears to be zero. While there are no directly exploitable vulnerabilities detected in this static analysis, the absence of nonce checks represents a potential weakness that could be exploited if any entry points were to be introduced or become accessible in future updates or through other means. The plugin also performs one file operation without explicit context, which warrants careful consideration. The vulnerability history is clean, which is a positive sign, but the lack of historical data makes it difficult to assess long-term security trends.

In conclusion, the plugin demonstrates a good baseline of security. The code analysis reveals a conscientious approach to preventing common threats. The primary area for improvement would be to implement nonce checks on all potential entry points, as a proactive security measure, even with the current minimal attack surface. The absence of past vulnerabilities is encouraging, but continuous vigilance and adherence to secure coding practices are essential for maintaining this strong security profile.

Key Concerns

  • No nonce checks on any entry points
  • One file operation without explicit context
Vulnerabilities
None known

FeedWordPress Duplicate Post Filter Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

FeedWordPress Duplicate Post Filter Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries
Attack Surface

FeedWordPress Duplicate Post Filter Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionsyndicated_postfeedwordpress-dupfilter.php:92
actionsave_postfeedwordpress-dupfilter.php:93
Maintenance & Trust

FeedWordPress Duplicate Post Filter Maintenance & Trust

Maintenance Signals

WordPress version tested3.3.2
Last updatedMar 2, 2012
PHP min version
Downloads42K

Community Trust

Rating0/100
Number of ratings0
Active installs200
Developer Profile

FeedWordPress Duplicate Post Filter Developer Profile

Mark Allen

2 plugins · 250 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect FeedWordPress Duplicate Post Filter

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about FeedWordPress Duplicate Post Filter