Force text/xml as MIME-type in the feed Security & Risk Analysis

wordpress.org/plugins/force-textxml-as-mime-type-in-the-feed

Forces 'text/xml' as content-type for your blog's feed

10 active installs v0.1 PHP + WP 3.0.1+ Updated Oct 4, 2015
content-typefeedmimerssxml
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Force text/xml as MIME-type in the feed Safe to Use in 2026?

Generally Safe

Score 85/100

Force text/xml as MIME-type in the feed has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The plugin 'force-textxml-as-mime-type-in-the-feed' v0.1 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, SQL queries executed without prepared statements, and properly escaped output are all positive indicators. Furthermore, the plugin does not perform file operations, external HTTP requests, or utilize bundled libraries, which significantly reduces potential attack vectors. The vulnerability history is clean, with no known CVEs recorded, suggesting a history of secure development or limited exposure. The attack surface is also minimal, with no AJAX handlers, REST API routes, shortcodes, or cron events, and importantly, no unprotected entry points were detected. However, the complete lack of nonce and capability checks, while not directly indicating a vulnerability in this specific version due to the zero attack surface, represents a potential area for concern if the plugin were to be expanded or modified in the future without proper authorization checks. Overall, this plugin appears to be highly secure in its current state, with no immediate exploitable vulnerabilities identified.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Force text/xml as MIME-type in the feed Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Force text/xml as MIME-type in the feed Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Force text/xml as MIME-type in the feed Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Force text/xml as MIME-type in the feed Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filterfeed_content_typeinc\feed_filters.php:5
Maintenance & Trust

Force text/xml as MIME-type in the feed Maintenance & Trust

Maintenance Signals

WordPress version tested4.3.34
Last updatedOct 4, 2015
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Force text/xml as MIME-type in the feed Developer Profile

sergiambel

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Force text/xml as MIME-type in the feed

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/force-textxml-as-mime-type-in-the-feed/inc/feed_filters.php

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Force text/xml as MIME-type in the feed