
Page Excerpt Security & Risk Analysis
wordpress.org/plugins/page-excerptThis plugin adds the same functionality of the excerpt feature in posts to pages.
Is Page Excerpt Safe to Use in 2026?
Generally Safe
Score 85/100Page Excerpt has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "page-excerpt" plugin v1.3 exhibits a seemingly strong security posture based on the provided static analysis. The absence of any identified attack surface, dangerous functions, raw SQL queries, file operations, external HTTP requests, or taint flows is a significant positive indicator. Furthermore, the plugin's vulnerability history is clean, with no recorded CVEs, suggesting a low likelihood of pre-existing exploitable flaws.
However, a critical concern arises from the "Output escaping: 1 total outputs, 0% properly escaped" signal. This indicates that any data being output by the plugin is not being properly sanitized, leaving it vulnerable to Cross-Site Scripting (XSS) attacks. While the plugin doesn't have an immediately obvious attack surface via AJAX, REST API, or shortcodes, an unescaped output can still be triggered through other means, potentially leading to severe consequences.
In conclusion, while the plugin demonstrates good practices in areas like SQL handling and avoiding common entry points, the lack of output escaping represents a significant and actionable security risk that needs immediate attention. The clean vulnerability history is reassuring but does not negate the identified XSS vulnerability.
Key Concerns
- No output escaping found
Page Excerpt Security Vulnerabilities
Page Excerpt Code Analysis
Output Escaping
Page Excerpt Attack Surface
WordPress Hooks 2
Maintenance & Trust
Page Excerpt Maintenance & Trust
Maintenance Signals
Community Trust
Page Excerpt Alternatives
Page Excerpt Widget
page-excerpt-widget
This plugin allows the user to place a widget with an excerpt of a page in any sidebar. Dropdown menu for page, amount of characters adjustable.
MZ Post and Page Excerpts Widgets
mz-post-and-page-excerpts-widgets
Creates widgets that display excerpts from posts or pages in the sidebar.
Next Page, Not Next Post
next-page-not-next-post
Easily create navigation to sibling pages. Similar to next_post_link() and previous_post_link() but for pages.
Powerful Posts Per Page (PPPP)
pppp
Posts per page for custom post types and taxonomies.
WP-UTF8-Excerpt
wp-utf8-excerpt
This plugin generates a better excerpt for multi-byte language users (Chinese, for example). Besides, it keeps the html tags in the excerpt.
Page Excerpt Developer Profile
1 plugin · 3K total installs
How We Detect Page Excerpt
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
hidden