
Mo RSS Feed Security & Risk Analysis
wordpress.org/plugins/mo-rss-feedDisplay an RSS Feed with images in WordPress using a shortcode.
Is Mo RSS Feed Safe to Use in 2026?
Generally Safe
Score 85/100Mo RSS Feed has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'mo-rss-feed' v1.1 plugin exhibits a generally good security posture based on the static analysis and vulnerability history provided. The absence of critical or high-severity taint flows, dangerous functions, and SQL injection vulnerabilities (all queries use prepared statements) is a significant strength. The plugin also has no file operations or external HTTP requests, further reducing its attack surface. However, there are areas for improvement. The fact that there are no nonce checks or capability checks on any entry points, combined with a moderate rate of unescaped output (22%), presents a potential risk. While the attack surface is small and consists of only two shortcodes (and no AJAX or REST API endpoints to worry about), the lack of robust authentication and authorization mechanisms on these entry points is concerning. The lack of any recorded vulnerabilities in its history is positive, suggesting responsible development, but it doesn't excuse the current security shortcomings.
Key Concerns
- Missing nonce checks on entry points
- Missing capability checks on entry points
- Significant percentage of unescaped output
Mo RSS Feed Security Vulnerabilities
Mo RSS Feed Code Analysis
Output Escaping
Mo RSS Feed Attack Surface
Shortcodes 2
WordPress Hooks 5
Maintenance & Trust
Mo RSS Feed Maintenance & Trust
Maintenance Signals
Community Trust
Mo RSS Feed Alternatives
WP RSS Fetcher ShortCode
wp-rss-fetcher-shortcode
Easily fetches RSS feeds from external sources and embed them into posts or pages with a shortcode.
PowerPress Podcasting plugin by Blubrry
powerpress
No. 1 Podcasting plugin for WordPress.
Podcast Player – Your Podcasting Companion
podcast-player
Showcase your podcast only using podcasting feed url. Use widget, shortcode or editor block to display podcast player anywhere on your site.
Super RSS Reader – Add attractive RSS Feed Widget
super-rss-reader
Display any RSS feed(s) in widget with news ticker effect in multiple tabs, thumbnails, customizable color themes and more.
RSS Feed Retriever
wp-rss-retriever
The fastest RSS feeds plugin for WordPress. Includes excerpt & thumbnail image. Use as a news aggregator, autoblog, or RSS parsing.
Mo RSS Feed Developer Profile
2 plugins · 20 total installs
How We Detect Mo RSS Feed
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mo-rss-feed/css/mo-rss-feed.css/wp-content/plugins/mo-rss-feed/css/column.css/wp-content/plugins/mo-rss-feed/vendor/bxslider/jquery.bxslider.css/wp-content/plugins/mo-rss-feed/css/slider.css/wp-content/plugins/mo-rss-feed/js/jquery.rss.js/wp-content/plugins/mo-rss-feed/vendor/bxslider/jquery.bxslider.min.jsmo-rss-feed/css/mo-rss-feed.css?ver=mo-rss-feed/css/column.css?ver=mo-rss-feed/vendor/bxslider/jquery.bxslider.css?ver=mo-rss-feed/css/slider.css?ver=mo-rss-feed/js/jquery.rss.js?ver=mo-rss-feed/vendor/bxslider/jquery.bxslider.min.js?ver=HTML / DOM Fingerprints
mo_rss_columnmo_rss_slidermo-rss-feed-containermo_rss_column_mo_slider_data-rss-urljQuery<section class="mo-rss-feed-container"<div class="twelve columns<a href="class="rss-more"