
WP More Feeds Security & Risk Analysis
wordpress.org/plugins/wp-more-feedsGenerate RSS feeds for category and tag archive pages.
Is WP More Feeds Safe to Use in 2026?
Generally Safe
Score 85/100WP More Feeds has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-more-feeds plugin v0.17 exhibits a mixed security posture. The absence of known CVEs and the use of prepared statements for all SQL queries are strong positive indicators. The plugin also has a very small attack surface, with no discoverable AJAX handlers, REST API routes, shortcodes, or cron events that are exposed. However, the static analysis reveals significant concerns regarding output escaping, with only 27% of outputs being properly escaped. Furthermore, the taint analysis shows two flows with unsanitized paths, although thankfully these did not reach a critical or high severity level. The lack of any recorded vulnerabilities in its history could suggest either a well-developed plugin or a lack of thorough security auditing, which is not ideal. Overall, while the plugin avoids common pitfalls like raw SQL and large attack surfaces, the unescaped output and potential for unsanitized path flows present a notable risk that requires attention.
Key Concerns
- Unsanitized path taint flows detected
- Low percentage of properly escaped output
- No capability checks found
- No nonce checks found
WP More Feeds Security Vulnerabilities
WP More Feeds Code Analysis
Output Escaping
Data Flow Analysis
WP More Feeds Attack Surface
WordPress Hooks 2
Maintenance & Trust
WP More Feeds Maintenance & Trust
Maintenance Signals
Community Trust
WP More Feeds Alternatives
Disable Feeds
disable-feeds
Disables all RSS/Atom/RDF feeds on your WordPress site.
Disable Feeds WP
disable-feeds-wp
Disables all RSS/Atom/RDF feeds on your WordPress site.
FeedWordPress
feedwordpress
FeedWordPress syndicates content from feeds you choose into your WordPress weblog.
Advanced Category Excluder
advanced-category-excluder
The No.1 content separator, content manager, content excluder, sidebar widget manager plugin to enable CMS like functionality.
RSS Just Better
rss-just-better
Displays a list of RSS/Atom feed items given the feed URL and other parameters (optionals). Highly customizable.
WP More Feeds Developer Profile
2 plugins · 20 total installs
How We Detect WP More Feeds
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
<!--WP More Feeds 0.17 (http://www.mashget.com) Begin -->