RSS Reader Animated Security & Risk Analysis

wordpress.org/plugins/mediamaster-reader-rss

RSS Reader for your site Animated !

20 active installs v2.0 PHP + WP 3.3+ Updated Dec 6, 2015
change-feed-urlcustom-style-and-more-other-optionsmax-countrss-reader
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is RSS Reader Animated Safe to Use in 2026?

Generally Safe

Score 85/100

RSS Reader Animated has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The mediamaster-reader-rss plugin version 2.0 presents a mixed security posture. On the positive side, the absence of known vulnerabilities and CVEs is a strong indicator of good past security practices or a lack of active targeting. The static analysis also reveals no dangerous functions, no external HTTP requests, and all SQL queries are properly prepared, which are excellent security habits. However, significant concerns arise from the output escaping analysis, where 100% of the 31 outputs are not properly escaped. This creates a high risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data or data processed by the plugin could be injected into the page without sanitization, potentially leading to malicious script execution. Additionally, the lack of nonce and capability checks across the board is concerning, especially for the shortcode entry point. While the attack surface is small and has no direct unprotected entry points listed in the static analysis, the absence of these fundamental security checks on even a single shortcode leaves it vulnerable to various attacks if user-controlled data is involved in its rendering.

Key Concerns

  • 0% output escaping
  • 0 capability checks
  • 0 nonce checks
Vulnerabilities
None known

RSS Reader Animated Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

RSS Reader Animated Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
31
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped31 total outputs
Attack Surface

RSS Reader Animated Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[rssAnimated] mediamaster_rd_rss.php:44
WordPress Hooks 7
filterthe_contentmediamaster_rd_rss.php:45
filterwidget_textmediamaster_rd_rss.php:46
filterwp_list_pagesmediamaster_rd_rss.php:47
actionadmin_initmediamaster_rd_rss.php:94
actionadmin_menumediamaster_rd_rss.php:213
actionwp_headmediamaster_rd_rss.php:224
actionwp_footermediamaster_rd_rss.php:251
Maintenance & Trust

RSS Reader Animated Maintenance & Trust

Maintenance Signals

WordPress version tested4.3.34
Last updatedDec 6, 2015
PHP min version
Downloads8K

Community Trust

Rating74/100
Number of ratings3
Active installs20
Developer Profile

RSS Reader Animated Developer Profile

ulmdesign

1 plugin · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect RSS Reader Animated

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/mediamaster-reader-rss/js/jscolor.js
Script Paths
/js/jscolor.js

HTML / DOM Fingerprints

CSS Classes
wrapicon32icon-options-general
Data Attributes
name="RSS Reader Animated"title="Get You Favourite Feeds for your Web Site"alt="Get your RSS reader PRO"
Shortcode Output
<div id="container"><div id="newsviewer"></div></div>
FAQ

Frequently Asked Questions about RSS Reader Animated