RSS Featured Image Security & Risk Analysis

wordpress.org/plugins/rss-featured-image

Add the featured image into your RSS feed (in the media:content). Works nicely with Mailchimp (|RSSITEM:IMAGE|). Light and simple, no options, no clut …

2K active installs v1.0.6 PHP 7.4+ WP 5.0+ Updated Oct 12, 2023
featuredimagemailchimprssthumbnail
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is RSS Featured Image Safe to Use in 2026?

Generally Safe

Score 85/100

RSS Featured Image has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "rss-featured-image" plugin v1.0.6 exhibits an excellent security posture based on the provided static analysis and vulnerability history. The absence of any identified dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, nonce checks, or capability checks on its entry points suggests a well-hardened codebase. The plugin also benefits from a clean vulnerability history with no recorded CVEs, indicating a history of secure development practices and prompt patching if issues ever arose.

While the static analysis reveals no immediate risks such as taint flows with unsanitized paths, it's important to note that the "attack surface" is reported as zero. This could mean that the plugin has no user-facing or administrative interactive elements that are typically scanned for vulnerabilities. If the plugin does indeed have functionality that is not reflected in the reported attack surface metrics (e.g., admin settings pages, shortcode usage not detected), this could represent an area of potential oversight. However, based solely on the data provided, the plugin appears to be highly secure and has demonstrated a strong commitment to security over its development lifecycle.

Vulnerabilities
None known

RSS Featured Image Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

RSS Featured Image Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

RSS Featured Image Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionrss2_itemcore.php:6
actionrss2_nscore.php:7
Maintenance & Trust

RSS Featured Image Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedOct 12, 2023
PHP min version7.4
Downloads25K

Community Trust

Rating100/100
Number of ratings23
Active installs2K
Developer Profile

RSS Featured Image Developer Profile

Jordy Meow

27 plugins · 371K total installs

73
trust score
Avg Security Score
92/100
Avg Patch Time
372 days
View full developer profile
Detection Fingerprints

How We Detect RSS Featured Image

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rss-featured-image/css/style.css
Version Parameters
rss-featured-image/css/style.css?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about RSS Featured Image