
Image lazyloading by Fastseen Security & Risk Analysis
wordpress.org/plugins/fastseen-lazyloadingBoost your website to lightning speed with image lazyloading. Free plan with live chat support available.
Is Image lazyloading by Fastseen Safe to Use in 2026?
Generally Safe
Score 85/100Image lazyloading by Fastseen has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "fastseen-lazyloading" plugin v1.0.2 presents a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, utilizing prepared statements exclusively, and has no recorded vulnerability history or dangerous functions. The absence of file operations and external HTTP requests is also a positive indicator. However, significant concerns arise from the static analysis. The plugin exposes a notable attack surface with 2 REST API routes, both of which lack permission callbacks, meaning they are unprotected and can be accessed by any user. Furthermore, the plugin exhibits a critical weakness in output escaping, with 0% of its 7 outputs being properly escaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not sanitized before being displayed.
The taint analysis shows no identified flows, which is a positive sign, but this is in the context of the limited flows analyzed. The lack of nonce checks and capability checks on the identified entry points further exacerbates the risks associated with the unprotected REST API routes. The plugin's current state indicates a need for immediate attention to address the unprotected API endpoints and the prevalent output escaping issues. While the absence of historical vulnerabilities is encouraging, it does not negate the immediate risks identified in the current version's code.
Key Concerns
- REST API routes without permission callbacks
- Outputs not properly escaped
- REST API routes lack capability checks
Image lazyloading by Fastseen Security Vulnerabilities
Image lazyloading by Fastseen Code Analysis
Output Escaping
Image lazyloading by Fastseen Attack Surface
REST API Routes 2
WordPress Hooks 5
Maintenance & Trust
Image lazyloading by Fastseen Maintenance & Trust
Maintenance Signals
Community Trust
Image lazyloading by Fastseen Alternatives
Optimole – Optimize Images in Real Time
optimole-wp
Automatically optimize images: bulk compression, lazy loading, WebP/AVIF conversion. With CloudFront image CDN to boost Core Web Vitals & conversions!
a3 Lazy Load
a3-lazy-load
Use a3 Lazy Load for images, videos, iframes that are not lazy loaded by WordPress core. Instantly improve your sites load time and dramatically impro …
Disable Lazy Load
disable-lazy-loading
Activate this plugin to disable the Lazy Loading feature that was added in WP v5.5.
ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization
shortpixel-adaptive-images
Start serving properly sized, smart cropped & optimized images, plus CSS, JS and fonts from our CDN with a click; Automatic AVIF & WebP support.
Lazy Load Optimizer
lazy-load-optimizer
Lazy loading images and iframes to speed up sites page load speed.
Image lazyloading by Fastseen Developer Profile
1 plugin · 0 total installs
How We Detect Image lazyloading by Fastseen
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fastseen-lazyloading/scripts/admin_scripts.js/wp-content/plugins/fastseen-lazyloading/styles/admin_styles.csshttps://fastseen.herokuapp.com/cdn/lazyload.jsHTML / DOM Fingerprints
ftsn_scriptsftsn_public_scripts/wp-json/fastseen/account/auth/wp-json/fastseen/account/disconnect