Rexultz Product Feeds Security & Risk Analysis

wordpress.org/plugins/rexultz-product-feeds

Embed Rexultz product feeds using shortcodes or the Gutenberg block editor with server-side rendering.

10 active installs v2.2.2 PHP 8.0+ WP 6.9+ Updated Feb 8, 2026
affiliateembedproduct-cardsproduct-feed
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Rexultz Product Feeds Safe to Use in 2026?

Generally Safe

Score 100/100

Rexultz Product Feeds has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The rexultz-product-feeds plugin v2.2.2 exhibits a strong security posture based on the provided static analysis. A significant strength is the complete absence of dangerous functions, raw SQL queries, and unescaped output. All identified SQL queries utilize prepared statements, and all output is properly escaped, mitigating common injection and cross-site scripting vulnerabilities. Furthermore, the attack surface is well-controlled, with all identified entry points (AJAX handlers, REST API routes, and shortcodes) appearing to have proper authentication or permission checks, indicated by 0 unprotected entry points.

The plugin's vulnerability history is also exceptionally clean, with no known CVEs or past vulnerabilities. This, combined with the current code analysis, suggests a proactive and secure development approach. The single external HTTP request is a minor point of consideration, but without further context on its purpose, it's difficult to assess its risk definitively. The lack of nonce checks on AJAX handlers is a potential area for improvement, although the data indicates zero unprotected AJAX handlers, suggesting that if AJAX is used, it might be protected by other means.

In conclusion, rexultz-product-feeds v2.2.2 appears to be a securely coded plugin. The lack of identified vulnerabilities, coupled with good practices in SQL and output handling, provides a high level of confidence. The primary area for minor concern would be the absence of explicit nonce checks on any potential AJAX endpoints, though the analysis indicates these are not exposed without protection.

Key Concerns

  • No nonce checks on AJAX handlers
Vulnerabilities
None known

Rexultz Product Feeds Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Rexultz Product Feeds Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Rexultz Product Feeds Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
15 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped15 total outputs
Attack Surface

Rexultz Product Feeds Attack Surface

Entry Points3
Unprotected0

REST API Routes 1

GET/wp-json/rexultz/v1/preview/(?P<feed_id>\d+)rexultz-product-feeds.php:636

Shortcodes 2

[rexultz] rexultz-product-feeds.php:79
[REXULTZ] rexultz-product-feeds.php:80
WordPress Hooks 2
actioninitrexultz-product-feeds.php:83
actionrest_api_initrexultz-product-feeds.php:86
Maintenance & Trust

Rexultz Product Feeds Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 8, 2026
PHP min version8.0
Downloads147

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Rexultz Product Feeds Developer Profile

rexultz

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Rexultz Product Feeds

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rexultz-product-feeds/css/rexultz-product-feeds.css/wp-content/plugins/rexultz-product-feeds/js/rexultz-product-feeds.js
Version Parameters
rexultz-product-feeds/css/rexultz-product-feeds.css?ver=rexultz-product-feeds/js/rexultz-product-feeds.js?ver=

HTML / DOM Fingerprints

CSS Classes
rexultz-feed-container
HTML Comments
REXULTZ_SCRIPT_
Data Attributes
data-rexultz-feed-iddata-rexultz-settings
JS Globals
RexultzProductFeeds
REST Endpoints
/wp-json/rexultz-product-feeds/v1/preview
Shortcode Output
[rexultz[REXULTZ
FAQ

Frequently Asked Questions about Rexultz Product Feeds