
Load More Anything Security & Risk Analysis
wordpress.org/plugins/ajax-load-more-anythingAdd Load More button for your blog post, custom type, Comments, page, Category, Recent Posts, Woocommerce Product, custom Div or whatever you want.
Is Load More Anything Safe to Use in 2026?
Generally Safe
Score 100/100Load More Anything has a strong security track record. Known vulnerabilities have been patched promptly.
The "ajax-load-more-anything" plugin v3.3.9 demonstrates a generally good security posture with several positive indicators. The absence of critical or high severity taint flows, a complete lack of raw SQL queries, and a high percentage of properly escaped output are commendable practices. The presence of multiple nonce and capability checks on its entry points, coupled with no detected unprotected AJAX handlers or REST API routes, suggests an effort to secure its attack surface. The plugin also does not bundle any external libraries, which avoids the risks associated with outdated or vulnerable third-party code.
However, the plugin's vulnerability history presents a notable concern. A medium severity vulnerability was recorded relatively recently in January 2024, and it was noted as a 'Missing Authorization' type. While currently patched, this history indicates a recurring pattern that warrants attention. The fact that this was the only known CVE, and it's now patched, does temper the concern slightly, but it highlights an area where diligent review and testing are crucial.
In conclusion, while the current version exhibits strong defensive coding practices and a secure attack surface, the past medium severity authorization vulnerability requires ongoing vigilance. Users should ensure they are always on the latest version and be aware of the plugin's history. The plugin's strengths lie in its secure coding practices for the current version, but its past vulnerability suggests a potential for authorization flaws to be introduced or overlooked.
Key Concerns
- Medium severity vulnerability history
- Recent medium severity vulnerability (2024-01-31)
Load More Anything Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Load More Anything <= 3.3.3 - Missing Authorization to Plugin Settings Modification
Load More Anything Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Load More Anything Attack Surface
AJAX Handlers 3
WordPress Hooks 23
Maintenance & Trust
Load More Anything Maintenance & Trust
Maintenance Signals
Community Trust
Load More Anything Alternatives
Load More Products for WooCommerce
load-more-products-for-woocommerce
Load products from next page via AJAX with infinite scrolling or load more products button
Ajax Load More – WordPress infinite scroll
ajax-load-more-post
Ajax Load More is an amazing wordpress infinite scroll plugin to view list/grid of posts, blog and woocommerce products with infinite scroll.
Instant Infinite Loader
instant-infinite-loader
Instant Infinite Loader adds a 'Load More' button and smooth infinite scroll to your WordPress site, enhancing user experience and content browsing.
Ajax Load More – Infinite Scroll, Load More, & Lazy Load
ajax-load-more
Add infinite scroll, lazy loading, and load more buttons to posts, pages, and WooCommerce products — fast and fully customizable for WordPress.
YITH Infinite Scrolling
yith-infinite-scrolling
Add infinite scrolling to archive post or shop page.
Load More Anything Developer Profile
10 plugins · 7K total installs
How We Detect Load More Anything
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ajax-load-more-anything/assets/styles.min.css/wp-content/plugins/ajax-load-more-anything/assets/scripts.js/wp-content/plugins/ajax-load-more-anything/assets/admin.min.css/wp-content/plugins/ajax-load-more-anything/assets/admin.min.js/wp-content/plugins/ajax-load-more-anything/assets/scripts.js/wp-content/plugins/ajax-load-more-anything/assets/admin.min.js/wp-content/plugins/ajax-load-more-anything/assets/styles.min.css?ver=3.3.9/wp-content/plugins/ajax-load-more-anything/assets/scripts.js?ver=3.3.9/wp-content/plugins/ajax-load-more-anything/assets/admin.min.css?ver=3.3.9/wp-content/plugins/ajax-load-more-anything/assets/admin.min.js?ver=3.3.9HTML / DOM Fingerprints
ald-load-moredata-ald-noncedata-ald-ajaxurldata-ald-proald_paramsalda_paramsALD_PLUGIN_VERSIONALD_PLUGIN_URLALD_PLUGIN_ASSETS