Murphsy.com Product Feed Silver Security & Risk Analysis

wordpress.org/plugins/product-feed-silver

Want a FREE Product Feed containing your Woocommerce products? Want to use it for Google Shopping? Look no further! Woocommerce Product Feed Silver is …

10 active installs v1.0.2 PHP + WP 4.4.0+ Updated Mar 22, 2016
feedgoogle-shoppingproduct-feedwoocommercexml
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Murphsy.com Product Feed Silver Safe to Use in 2026?

Generally Safe

Score 85/100

Murphsy.com Product Feed Silver has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The product-feed-silver plugin v1.0.2 exhibits a generally strong security posture, with no known vulnerabilities or critical code signals indicating immediate threats. The absence of dangerous functions, raw SQL queries, and external HTTP requests are positive indicators. However, the static analysis reveals a concerning weakness in output escaping, with only 10% of outputs properly escaped. This presents a significant risk for Cross-Site Scripting (XSS) vulnerabilities, as unsanitized output can lead to malicious code injection. While the plugin has a clean vulnerability history, the identified output escaping issue suggests potential for overlooked vulnerabilities in this area. Further investigation into the single unsanitized path identified in the taint analysis is also warranted, as it could represent a less obvious attack vector. Overall, while the plugin lacks known critical flaws and has a good track record, the poor output escaping practices are a substantial concern that requires immediate attention.

Key Concerns

  • Low percentage of properly escaped output
  • Flow with unsanitized path identified
Vulnerabilities
None known

Murphsy.com Product Feed Silver Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Murphsy.com Product Feed Silver Release Timeline

v1.0.2Current
v1.0.1
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Murphsy.com Product Feed Silver Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
1 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

10% escaped10 total outputs
Data Flows · Security
1 unsanitized

Data Flow Analysis

2 flows1 with unsanitized paths
pf_silver_admin_action (settings_pages.php:7)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Murphsy.com Product Feed Silver Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuproduct-feed-silver.php:13
actionadmin_enqueue_scriptsproduct-feed-silver.php:31
actionpf_silver_hooksettings.php:6
actionadmin_action_pf_silversettings_pages.php:3

Scheduled Events 1

pf_silver_hook
Maintenance & Trust

Murphsy.com Product Feed Silver Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedMar 22, 2016
PHP min version
Downloads2K

Community Trust

Rating90/100
Number of ratings4
Active installs10
Developer Profile

Murphsy.com Product Feed Silver Developer Profile

murphsy

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Murphsy.com Product Feed Silver

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-feed-silver/js/admin_jquery.js
Script Paths
/wp-content/plugins/product-feed-silver/js/admin_jquery.js
Version Parameters
product-feed-silver/js/admin_jquery.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Murphsy.com Product Feed Silver