VA Excerpt From Content Security & Risk Analysis

wordpress.org/plugins/va-excerpt-from-content

Automatically create the excerpt from content.

10 active installs v1.0.1 PHP + WP 4.5.2+ Updated Jun 9, 2016
contentexcerptpostposts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is VA Excerpt From Content Safe to Use in 2026?

Generally Safe

Score 85/100

VA Excerpt From Content has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

Based on the provided static analysis, the 'va-excerpt-from-content' plugin v1.0.1 exhibits a strong security posture. The absence of identified entry points such as AJAX handlers, REST API routes, shortcodes, and cron events significantly reduces the potential attack surface. Furthermore, the code analysis indicates excellent adherence to secure coding practices, with no dangerous functions, all SQL queries using prepared statements, and all output being properly escaped. The lack of file operations and external HTTP requests further contributes to a contained and secure implementation. The plugin's vulnerability history is also clean, with no recorded CVEs, which suggests a well-maintained and secure codebase over time. This combination of a minimal attack surface and robust secure coding practices positions this plugin as having a very low inherent risk. However, the complete absence of nonce checks and capability checks across all code signals is notable. While there are no exposed entry points to trigger these checks, in any future expansion or modification of the plugin that introduces such entry points, these security measures would become critical. For the current version, the risk is minimal due to the lack of exploitable avenues.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

VA Excerpt From Content Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

VA Excerpt From Content Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

VA Excerpt From Content Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
filterthe_contentincs\class-excerpt-from-content.php:45
actionplugins_loadedva-excerpt-from-content.php:41
Maintenance & Trust

VA Excerpt From Content Maintenance & Trust

Maintenance Signals

WordPress version tested4.5.33
Last updatedJun 9, 2016
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

VA Excerpt From Content Developer Profile

kuck1u

7 plugins · 2K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect VA Excerpt From Content

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about VA Excerpt From Content