
JP's Get RSS Feed Security & Risk Analysis
wordpress.org/plugins/jps-get-rss-feedGet last X number of posts from a selected RSS feed. Default is last 5 items. Includes shortcode for listing feed items on posts or pages.
Is JP's Get RSS Feed Safe to Use in 2026?
Generally Safe
Score 85/100JP's Get RSS Feed has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "jps-get-rss-feed" v1.6.3 exhibits a generally good security posture, with no known vulnerabilities recorded and a strong adherence to secure coding practices regarding SQL queries. The absence of external HTTP requests, file operations, and a lack of reported CVEs are positive indicators. However, the presence of the `create_function` function is a significant concern, as it can lead to code injection vulnerabilities if not handled with extreme care. Furthermore, a low percentage of properly escaped output suggests a potential for cross-site scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the website through user-supplied data that is not properly sanitized before being displayed. While the attack surface is limited, the lack of nonce checks and the low output escaping rate are areas that require attention to fully secure the plugin.
Key Concerns
- Use of dangerous function create_function
- Low percentage of properly escaped output
- Missing nonce checks
JP's Get RSS Feed Security Vulnerabilities
JP's Get RSS Feed Code Analysis
Dangerous Functions Found
Output Escaping
JP's Get RSS Feed Attack Surface
Shortcodes 3
WordPress Hooks 8
Maintenance & Trust
JP's Get RSS Feed Maintenance & Trust
Maintenance Signals
Community Trust
JP's Get RSS Feed Alternatives
WPeMatico RSS Feed Fetcher
wpematico
WPeMatico is autoblogging in the blink of an eye! On complete autopilot, WPeMatico delivers fresh content to your site regularly!
Import XML and RSS Feeds
import-xml-feed
Import content from any XML or RSS file or URL. Very useful for importing content from Wix websites.
Whitespace Fixer for XML Sitemap
whitespace-fixer-for-xml-sitemap
Fixes XML declaration errors in sitemaps and RSS by removing leading whitespace. Just activate, no setup required.
LH RSS Shortcode
lh-rss-shortcode
A simple plugin to display RSS feeds in posts and pages using a shortcode.
WP RSS Fetcher ShortCode
wp-rss-fetcher-shortcode
Easily fetches RSS feeds from external sources and embed them into posts or pages with a shortcode.
JP's Get RSS Feed Developer Profile
14 plugins · 1K total installs
How We Detect JP's Get RSS Feed
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/jps-get-rss-feed/js/jp_get_rss_feed.js/wp-content/plugins/jps-get-rss-feed/css/jp_get_rss_feed.css/wp-content/plugins/jps-get-rss-feed/js/jp_get_rss_feed.jsjps-get-rss-feed/js/jp_get_rss_feed.js?ver=jps-get-rss-feed/css/jp_get_rss_feed.css?ver=HTML / DOM Fingerprints
jpgetrssfeed<!-- Start JP's Get RSS Feed --><!-- End JP's Get RSS Feed -->data-jpgrf-targetdata-jpgrf-optionsjpgrf_ajax_object<ul class="jpgetrssfeed"><li class="jpgetrssfeed-item">