
Genesis Featured Page Extended Security & Risk Analysis
wordpress.org/plugins/genesis-featured-page-extendedExtends the Genesis Featured Page plugin. Show as thumbnail any image in your media library and show your page excerpt. Requires Genesis Framework.
Is Genesis Featured Page Extended Safe to Use in 2026?
Generally Safe
Score 85/100Genesis Featured Page Extended has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'genesis-featured-page-extended' v2.2.1 plugin exhibits a mixed security posture. On the positive side, it has a seemingly small attack surface with no identified AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, all SQL queries utilize prepared statements, and there are no file operations or external HTTP requests, which are good security practices. The plugin also has no recorded vulnerability history, suggesting it has been relatively stable in the past.
However, there are significant concerns. The presence of the `create_function` is a major red flag. This function is deprecated and considered a security risk due to its ability to execute arbitrary code, especially if any user-supplied input could influence its behavior. Additionally, a substantial percentage of output (77%) is not properly escaped, creating a high risk of Cross-Site Scripting (XSS) vulnerabilities. The lack of nonce and capability checks across all entry points, combined with the unescaped output, means that any vulnerabilities introduced, particularly through the use of `create_function`, could be easily exploited.
Key Concerns
- Use of deprecated and dangerous create_function()
- High percentage of unescaped output (23% proper)
- No nonce checks on any entry points
- No capability checks on any entry points
Genesis Featured Page Extended Security Vulnerabilities
Genesis Featured Page Extended Code Analysis
Dangerous Functions Found
Output Escaping
Genesis Featured Page Extended Attack Surface
WordPress Hooks 1
Maintenance & Trust
Genesis Featured Page Extended Maintenance & Trust
Maintenance Signals
Community Trust
Genesis Featured Page Extended Alternatives
Genesis eNews Extended
genesis-enews-extended
Creates a new widget to easily add mailing lists integration to a Genesis website. Works with FeedBurner, MailChimp, AWeber, FeedBlitz, ConvertKit and …
Genesis Simple Hooks
genesis-simple-hooks
This plugin creates a new Genesis settings page that allows you to insert code (HTML, Shortcodes, and PHP), and attach it to any of the 50+ action hoo …
Genesis Columns Advanced
genesis-columns-advanced
Adds shortcodes to easily create up to 42 different columned layouts.
Genesis Connect for WooCommerce
genesis-connect-woocommerce
This plugin allows you to seamlessly integrate WooCommerce with the Genesis Framework and Genesis child themes.
Genesis Simple Share
genesis-simple-share
Genesis Simple Share allows you to easily add beautiful share buttons to your site using a Genesis child theme
Genesis Featured Page Extended Developer Profile
4 plugins · 340 total installs
How We Detect Genesis Featured Page Extended
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/genesis-featured-page-extended/css/style.css/wp-content/plugins/genesis-featured-page-extended/js/jquery.fittext.js/wp-content/plugins/genesis-featured-page-extended/js/jquery.fittext.jsgenesis-featured-page-extended/css/style.css?ver=genesis-featured-page-extended/js/jquery.fittext.js?ver=HTML / DOM Fingerprints
featuredpagedata-fittextjQuery[post_date][post_author_posts_link][post_comments]