
Multiple Featured Images: Reloaded Security & Risk Analysis
wordpress.org/plugins/mfi-reloadedThis plugin allows developers to easily register additional image pickers for any post type.
Is Multiple Featured Images: Reloaded Safe to Use in 2026?
Generally Safe
Score 85/100Multiple Featured Images: Reloaded has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The mfi-reloaded v1.0.0 plugin exhibits a generally positive security posture based on the static analysis, with no detected dangerous functions, raw SQL queries, or file operations. The presence of a capability check on its single AJAX handler and the absence of REST API routes or shortcodes contribute to a limited attack surface. However, a significant concern arises from the fact that 100% of its single output is not properly escaped. This leaves the plugin vulnerable to Cross-Site Scripting (XSS) attacks, as user-supplied data, if processed through this unescaped output, could be injected and executed in the victim's browser. The plugin's vulnerability history is clean, with no recorded CVEs, which is a strong indicator of good development practices or at least a lack of past exploits. Despite this clean history, the unescaped output remains a critical weakness that requires immediate attention to mitigate potential XSS vulnerabilities.
Key Concerns
- Unescaped output found
Multiple Featured Images: Reloaded Security Vulnerabilities
Multiple Featured Images: Reloaded Code Analysis
Output Escaping
Multiple Featured Images: Reloaded Attack Surface
AJAX Handlers 1
WordPress Hooks 2
Maintenance & Trust
Multiple Featured Images: Reloaded Maintenance & Trust
Maintenance Signals
Community Trust
Multiple Featured Images: Reloaded Alternatives
SEO Friendly Images
seo-image
SEO Friendly Images automatically adds alt and title attributes to all your images improving traffic from search engines.
Require Featured Image
require-featured-image
Requires content you specify to have a featured image set before they can be published.
Featured Galleries
featured-galleries
Do you like giving posts a Featured Image? Try out a Featured Gallery. It's like a Featured Images ... except as many images as you want.
Custom Header Extended
custom-header-extended
Allows users to create a custom header on a per-post basis.
WP Sanitize File Name Plus
wp-sanitize-file-name-plus
Sanitize file names and enhance security.
Multiple Featured Images: Reloaded Developer Profile
12 plugins · 760 total installs
How We Detect Multiple Featured Images: Reloaded
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mfi-reloaded/resources/backend/mfi-reloaded.js/wp-content/plugins/mfi-reloaded/resources/backend/mfi-reloaded.css/wp-content/plugins/mfi-reloaded/resources/backend/mfi-reloaded.jsmfi-reloaded/resources/backend/mfi-reloaded.js?ver=mfi-reloaded/resources/backend/mfi-reloaded.css?ver=HTML / DOM Fingerprints
mfi-reloaded-image-pickerdata-mfi-reloaded-image-iddata-mfi-reloaded-image-namemfi_reloaded_admin/wp-json/mfi-reloaded/v1/image