Custom Sitemap Shortcode Security & Risk Analysis

wordpress.org/plugins/custom-sitemap-template

Plugin provides a sitemap shortcode. You can use shortcode on any page to display sitemap. You can fully customize your sitemap using plugin settings.

70 active installs v2.7.1 PHP 7.4+ WP 4.0+ Updated Jan 25, 2025
custom-sitemapdynamic-sitemappage-listingsite-structuresitemap
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Custom Sitemap Shortcode Safe to Use in 2026?

Generally Safe

Score 92/100

Custom Sitemap Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "custom-sitemap-template" plugin version 2.7.1 exhibits an exceptionally strong security posture. The absence of any identified attack surface points, dangerous functions, or taint flows suggests a well-written and secure codebase. The plugin also demonstrates excellent security practices by exclusively using prepared statements for SQL queries and ensuring all output is properly escaped. Furthermore, the lack of any historical vulnerabilities or CVEs, and specifically no unpatched vulnerabilities, indicates a track record of security diligence and maintenance.

While the plugin appears highly secure, the data reveals a complete absence of security checks like nonce checks and capability checks across its entry points. Although there are currently no identified entry points, this absence of built-in checks means that if any were to be introduced in future versions without proper authorization mechanisms, it could create a significant security risk. The plugin's strength lies in its current lack of exploitable features and its adherence to secure coding principles for its existing components. Its main weakness, albeit theoretical at this point, is the lack of inherent authorization mechanisms in its structure, which could become a concern if the plugin's functionality expands.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Custom Sitemap Shortcode Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Custom Sitemap Shortcode Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Custom Sitemap Shortcode Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionwp_enqueue_scriptsmy-custom-sitemap.php:79
actionwp_enqueue_scriptsmy-custom-sitemap.php:85
actionadmin_enqueue_scriptsmy-custom-sitemap.php:90
actionadmin_enqueue_scriptsmy-custom-sitemap.php:99
Maintenance & Trust

Custom Sitemap Shortcode Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJan 25, 2025
PHP min version7.4
Downloads5K

Community Trust

Rating100/100
Number of ratings4
Active installs70
Developer Profile

Custom Sitemap Shortcode Developer Profile

Anil Meena

3 plugins · 160 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Custom Sitemap Shortcode

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/custom-sitemap-template/css/sitemap.css/wp-content/plugins/custom-sitemap-template/js/custom.js/wp-content/plugins/custom-sitemap-template/lib/css/admin.css/wp-content/plugins/custom-sitemap-template/css/cs-wp-color-picker.min.css/wp-content/plugins/custom-sitemap-template/js/cs-wp-color-picker.min.js
Script Paths
/wp-content/plugins/custom-sitemap-template/js/custom.js/wp-content/plugins/custom-sitemap-template/js/cs-wp-color-picker.min.js
Version Parameters
custom-sitemap-template/css/sitemap.css?ver=custom-sitemap-template/js/custom.js?ver=custom-sitemap-template/css/cs-wp-color-picker.min.css?ver=1.0.0custom-sitemap-template/js/cs-wp-color-picker.min.js?ver=1.0.0

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Custom Sitemap Shortcode