
Leaflet Maps Marker Image Extension Security & Risk Analysis
wordpress.org/plugins/image-markerExtension to Leaflet Maps Marker to make markers from images.
Is Leaflet Maps Marker Image Extension Safe to Use in 2026?
Generally Safe
Score 85/100Leaflet Maps Marker Image Extension has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The image-marker plugin v1.1 presents a mixed security posture. While the absence of SQL injection vulnerabilities, dangerous functions, and file operations are positive indicators, significant concerns arise from its attack surface and handling of AJAX requests. The plugin exposes two AJAX handlers, both of which lack proper authentication checks. This means any unauthenticated user could potentially trigger these handlers, leading to unauthorized actions or information disclosure if vulnerabilities exist within their implementation. Furthermore, only 33% of output is properly escaped, indicating a potential for cross-site scripting (XSS) vulnerabilities, though the taint analysis did not reveal any critical or high severity flows in this version. The plugin also has no recorded vulnerability history, which can be interpreted positively as a sign of maturity or negatively as a lack of thorough historical analysis or reporting. However, the current static analysis reveals clear risks that need addressing, primarily related to the unprotected AJAX endpoints and insufficient output escaping.
Key Concerns
- AJAX handlers without authentication
- Insufficient output escaping
Leaflet Maps Marker Image Extension Security Vulnerabilities
Leaflet Maps Marker Image Extension Code Analysis
Output Escaping
Data Flow Analysis
Leaflet Maps Marker Image Extension Attack Surface
AJAX Handlers 2
WordPress Hooks 8
Maintenance & Trust
Leaflet Maps Marker Image Extension Maintenance & Trust
Maintenance Signals
Community Trust
Leaflet Maps Marker Image Extension Alternatives
NextCellent Media Library Addon
nextcellent-gallery-media-addon
This plugin adds a feature to NextCellent Gallery to add an image from the WP Media Library.
Mixed Media Gallery Blocks
simply-gallery-block
Create mixed media galleries with images, HTML5 video, YouTube, Vimeo, and VideoPress — all in one gallery by Simply Gallery.
CatFolders – WordPress Media Library Folders & Categories
catfolders
Organize and manage your files with WordPress media folders. Fast, flexible, and professional.
MediaPress
mediapress
MediaPress is the most advanced and feature rich media gallery plugin for BuddyPress & WordPress.
NextGEN Download Gallery
nextgen-download-gallery
Add a template to NextGEN Gallery that provides multiple-file downloads for trade/media galleries
Leaflet Maps Marker Image Extension Developer Profile
3 plugins · 30 total installs
How We Detect Leaflet Maps Marker Image Extension
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
wp-content/plugins/image-marker/css/image-marker-admin.csswp-content/plugins/image-marker/js/image-marker-admin.jsimage-marker/css/image-marker-admin.css?ver=image-marker/js/image-marker-admin.js?ver=HTML / DOM Fingerprints
image-marker-createngg-image-marker-createdata-idmy_ajax_obj