
Klass.lk LMS Security & Risk Analysis
wordpress.org/plugins/klasslk-lmsSeamlessly integrate your WordPress site with Klass.lk learning management system. Display courses and teachers with beautiful, interactive modals.
Is Klass.lk LMS Safe to Use in 2026?
Generally Safe
Score 100/100Klass.lk LMS has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided static analysis and vulnerability history, the "klasslk-lms" v1.0.0 plugin exhibits a generally strong security posture. The absence of any known CVEs, critical or high-severity taint flows, and the consistent use of prepared statements for SQL queries are significant strengths. All identified code signals, including output escaping and nonce checks, appear to be implemented correctly, indicating good development practices. The plugin also demonstrates a proactive approach to security by performing capability checks on its entry points.
However, there are a few areas that warrant attention. While the attack surface is relatively small, the presence of external HTTP requests, even if they are not immediately flagged as problematic, always introduces a potential risk. The plugin's limited use of capability checks (only 1 is listed) for its 9 AJAX handlers could be a concern if not all handlers are appropriately secured. Further investigation into the nature of these external requests and a comprehensive review of all AJAX handler permission checks would be beneficial.
In conclusion, "klasslk-lms" v1.0.0 appears to be a well-developed plugin with a solid foundation in secure coding practices. Its clean vulnerability history and adherence to many security best practices are commendable. The main opportunities for improvement lie in thoroughly vetting the security implications of its external HTTP requests and ensuring robust authorization checks across all its AJAX endpoints.
Key Concerns
- External HTTP requests present a potential risk
- Limited capability checks on AJAX handlers
Klass.lk LMS Security Vulnerabilities
Klass.lk LMS Release Timeline
Klass.lk LMS Code Analysis
Output Escaping
Data Flow Analysis
Klass.lk LMS Attack Surface
AJAX Handlers 9
Shortcodes 2
WordPress Hooks 6
Maintenance & Trust
Klass.lk LMS Maintenance & Trust
Maintenance Signals
Community Trust
Klass.lk LMS Alternatives
Tutor LMS Divi Modules
tutor-lms-divi-modules
Get 26+ Tutor LMS Divi Page builder widgets to create an entire eLearning site and design custom course pages, course carousels, listings, and more.
MasterStudy LMS Divi Modules
masterstudy-lms-divi-modules
MasterStudy LMS Divi Modules is a deluxe Divi + MasterStudy integration. The harmonious combination of a quality MasterStudy LMS system and one of the …
Dear LMS
dear-lms
A complete Learning Management System with courses, lessons, and topics using custom post types and drag-and-drop dashboard interface.
Lenxel AI LMS – Course Lesson Generator
lenxel-core
Lenxel AI LMS is a WordPress plugin that provides a comprehensive Learning Management System with AI-assisted course creation.
Mentaro LMS
mentaro-lms
Fast, focused LMS for WordPress: build courses quickly with a clean, reliable workflow.
Klass.lk LMS Developer Profile
4 plugins · 320 total installs
How We Detect Klass.lk LMS
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/klasslk-lms/assets/js/modal.js/wp-content/plugins/klasslk-lms/assets/js/course-details.js/wp-content/plugins/klasslk-lms/assets/js/teacher-details.js/wp-content/plugins/klasslk-lms/assets/js/courses.js/wp-content/plugins/klasslk-lms/assets/js/teachers.js/wp-content/plugins/klasslk-lms/assets/images/defaultteacher.png/wp-content/plugins/klasslk-lms/assets/images/defaultcourse.jpg/wp-content/plugins/klasslk-lms/assets/css/styles.css+4 moreklasslklms-modalklasslklms-course-detailsklasslklms-teacher-detailsklasslklms-coursesklasslklms-teachersklasslklms-admin-settingsklasslklms-modal?ver=klasslklms-course-details?ver=klasslklms-teacher-details?ver=klasslklms-courses?ver=klasslklms-teachers?ver=klasslklms-display-css?ver=klasslklms-modal-css?ver=klasslklms-admin-css?ver=klasslklms-admin-settings?ver=HTML / DOM Fingerprints
klass-admin-wrapklass-admin-headerklass-logo-sectionklass-logoklass-header-textklass-subtitleklass-admin-contentklass-settings-card+2 moredata-klasslklms-modalklasslklmsAjaxklasslklmsAdminSettings