Outbrain Feed Security & Risk Analysis

wordpress.org/plugins/outbrain-feed

Install Outbrain Plugin to monetize and engage with dynamic content feeds. (Outbrain account needed).

0 active installs v1.2.5 PHP 7.1+ WP 6.1+ Updated Jan 19, 2025
ad-networksadscontent-recommendationsfeedoutbrain
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Outbrain Feed Safe to Use in 2026?

Generally Safe

Score 92/100

Outbrain Feed has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The Outbrain Feed plugin version 1.2.5 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any registered CVEs, combined with the fact that all identified SQL queries utilize prepared statements, is a significant positive indicator. Furthermore, the plugin demonstrates a lack of dangerous functions, file operations, and external HTTP requests, all of which contribute to a reduced attack surface.

However, there are areas for improvement. The code analysis reveals that only 50% of output escaping is properly handled, indicating a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not sufficiently sanitized before being displayed. The lack of nonce checks and capability checks on any potential entry points, although currently showing zero entry points, means that if any are introduced in future versions, they would be unprotected. The zero taint analysis flows and zero attack surface points suggest that the plugin, in its current state, does not appear to be exposing critical vulnerabilities through common attack vectors like unsanitized paths or insecure direct object references.

In conclusion, Outbrain Feed v1.2.5 is currently in a good security state, largely due to the absence of known vulnerabilities and the use of secure coding practices for database interactions. The primary concern lies with the incomplete output escaping, which could be exploited if new functionalities are added without adequate sanitization. The vulnerability history being completely clean is a strong positive, suggesting diligent development and maintenance.

Key Concerns

  • Partial output escaping
Vulnerabilities
None known

Outbrain Feed Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Outbrain Feed Release Timeline

v1.2.5Current
v1.2.4
v1.2.3
v1.2.2
v1.2.0
v1.1.6
Code Analysis
Analyzed Apr 16, 2026

Outbrain Feed Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
3 prepared
Unescaped Output
3
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared3 total queries

Output Escaping

50% escaped6 total outputs
Attack Surface

Outbrain Feed Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuincludes/Admin.php:6
filterthe_contentincludes/Frontend.php:9
actionplugins_loadedoutbrain-feed.php:31
actionadmin_enqueue_scriptsoutbrain-feed.php:36
Maintenance & Trust

Outbrain Feed Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJan 19, 2025
PHP min version7.1
Downloads992

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Outbrain Feed Developer Profile

Marketing Tech

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Outbrain Feed

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/outbrain-feed/assets/css/admin-styles.css
Version Parameters
outbrain-feed/assets/css/admin-styles.css?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Outbrain Feed