
Hetjens MediaRSS Security & Risk Analysis
wordpress.org/plugins/hetjens-mediarssThis plug-in adds the post thumbnail of articles to the RSS and Atom-Feed via Media RSS specification.
Is Hetjens MediaRSS Safe to Use in 2026?
Generally Safe
Score 85/100Hetjens MediaRSS has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The hetjens-mediarss plugin v0.1 presents a mixed security picture. On the positive side, the static analysis reveals no identified attack surface points (AJAX, REST API, shortcodes, cron events) and all SQL queries utilize prepared statements, indicating good practices in these areas. The absence of known vulnerabilities and CVEs in its history is also a strong indicator of a secure development process thus far. However, several critical concerns emerge from the code signals analysis. The presence of `create_function` is a significant risk due to potential for arbitrary code execution. Furthermore, a staggering 100% of outputs are unescaped, which is a major vulnerability for cross-site scripting (XSS) attacks. The complete lack of nonce and capability checks on any potential entry points, even though the attack surface is currently reported as zero, leaves the plugin extremely vulnerable should any new entry points be introduced in the future without proper security measures. The taint analysis showing zero flows is good, but this may be due to the limited scope of the analysis or the plugin's current functionality.
Key Concerns
- Use of dangerous function: create_function
- 100% of outputs unescaped
- No nonce checks
- No capability checks
Hetjens MediaRSS Security Vulnerabilities
Hetjens MediaRSS Code Analysis
Dangerous Functions Found
Output Escaping
Hetjens MediaRSS Attack Surface
WordPress Hooks 5
Maintenance & Trust
Hetjens MediaRSS Maintenance & Trust
Maintenance Signals
Community Trust
Hetjens MediaRSS Alternatives
Add Featured Image to RSS Feed
add-featured-image-to-rss-feed
Adds the featured image attached to posts to the beginning of the post content and excerpt in RSS feeds.
SB RSS feed plus
sb-rss-feed-plus
This plugin will add post thumbnail to RSS feed items. Add signatur or simple ads. Create fulltext RSS (via special url).
JMS Rss Feed
jms-rss-feed
Add the featured image tag in your posts RSS feed. For standard RSS feed XML, there is no image tag definition. This plugin will show the post featur …
Post Thumbnail Widget
post-thumbnail-widget
Allow to publish post thumbnails on sidebar and on RSS.
RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging
wp-rss-aggregator
The #1 WordPress RSS aggregator to quickly import RSS feeds, build a news aggregator, and for easy autoblogging.
Hetjens MediaRSS Developer Profile
4 plugins · 40 total installs
How We Detect Hetjens MediaRSS
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
<enclosure url=" type="" /><media:content url="" type="