Excerpt Image Link Security & Risk Analysis

wordpress.org/plugins/image-link

A plugin which looks for <IMG> tags in the excerpt and, if found, wraps them with a link to the post permalink.

90 active installs v0.2 PHP + WP 2.2+ Updated Jun 15, 2009
indexlinkthumbnail
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Excerpt Image Link Safe to Use in 2026?

Generally Safe

Score 85/100

Excerpt Image Link has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 16yr ago
Risk Assessment

The "image-link" plugin version 0.2 exhibits a strong security posture based on the provided static analysis. The absence of any detected dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or vulnerable taint flows is highly positive. Furthermore, the complete lack of any recorded vulnerabilities, CVEs, or even past security issues in its history suggests a development process that prioritizes security. The plugin's attack surface is also effectively zero, with no AJAX handlers, REST API routes, shortcodes, or cron events exposed, indicating a minimal exposure to potential threats.

While the plugin currently appears to be exceptionally secure with no identifiable weaknesses in the analyzed code, it's important to acknowledge that static analysis has its limitations. The zero-count for capability checks and nonce checks, while indicative of a small attack surface, could also mean that such checks are not implemented where they might eventually become necessary if the plugin's functionality expands. However, based solely on the provided data, "image-link" v0.2 stands out as a well-secured plugin with a negligible risk profile.

Vulnerabilities
None known

Excerpt Image Link Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Excerpt Image Link Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Excerpt Image Link Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filterthe_excerptimagelink.php:11
Maintenance & Trust

Excerpt Image Link Maintenance & Trust

Maintenance Signals

WordPress version tested2.8
Last updatedJun 15, 2009
PHP min version
Downloads10K

Community Trust

Rating0/100
Number of ratings0
Active installs90
Developer Profile

Excerpt Image Link Developer Profile

peterwsterling

4 plugins · 180 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Excerpt Image Link

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
imagelink
FAQ

Frequently Asked Questions about Excerpt Image Link