Front Page Category Security & Risk Analysis

wordpress.org/plugins/front-page-category

A plugin that lets you select the categories that appear on the front page of your WordPress site.

6K active installs v3.3.5 PHP + WP 4.0+ Updated Jan 30, 2024
categorycustomizerfronthomepage
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Front Page Category Safe to Use in 2026?

Generally Safe

Score 85/100

Front Page Category has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The 'front-page-category' v3.3.5 plugin exhibits an excellent security posture based on the provided static analysis. The absence of any identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the code demonstrates strong security practices, with no dangerous functions, 100% of SQL queries utilizing prepared statements, and all identified output properly escaped. The lack of file operations and external HTTP requests also contributes to a reduced risk profile. The plugin's vulnerability history is clean, with no recorded CVEs, indicating a history of secure development. The overall analysis suggests a highly secure plugin with no immediate security concerns identified in this version. The lack of any recorded vulnerabilities in its history is a strong indicator of diligent security practices by the developers. The plugin's strengths lie in its minimal attack surface and adherence to secure coding principles. The primary weakness, if any, would be the complete absence of checks that might be considered standard security features for more complex plugins, such as capability checks or nonce checks, though these are not necessarily required given the lack of exploitable entry points in this specific version. For a plugin with no apparent entry points, this is a very positive assessment.

Vulnerabilities
None known

Front Page Category Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Front Page Category Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
9 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped9 total outputs
Attack Surface

Front Page Category Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actioncustomize_controls_enqueue_scriptsclass.fpc-category-list.php:44
actioncustomize_registerfront-page-category.php:74
actionpre_get_postsfront-page-category.php:75
Maintenance & Trust

Front Page Category Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.0
Last updatedJan 30, 2024
PHP min version
Downloads120K

Community Trust

Rating80/100
Number of ratings26
Active installs6K
Developer Profile

Front Page Category Developer Profile

binarymoon

4 plugins · 10K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Front Page Category

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/front-page-category/assets/css/fpc-admin.css/wp-content/plugins/front-page-category/assets/js/fpc-admin.js
Script Paths
/wp-content/plugins/front-page-category/class.fpc-category-list.php

HTML / DOM Fingerprints

CSS Classes
fpc-category-list
Data Attributes
data-customize-setting-link
FAQ

Frequently Asked Questions about Front Page Category