Laiser Tag Plus Security & Risk Analysis

wordpress.org/plugins/laiser-tag-plus

Use Laiser Tag Plus to get semantic data to use as tags and photo for your posts.

10 active installs v1.0.3 PHP + WP 4.0+ Updated Jan 10, 2019
content-optimizationopen-calaissemantic-datataggingtaxonomy
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Laiser Tag Plus Safe to Use in 2026?

Generally Safe

Score 85/100

Laiser Tag Plus has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "laiser-tag-plus" v1.0.3 plugin exhibits a mixed security posture. On the positive side, the plugin has a remarkably small attack surface with no identified AJAX handlers, REST API routes, shortcodes, or cron events. The absence of known CVEs and a clean vulnerability history suggests a relatively stable and well-maintained codebase in terms of past security incidents. The presence of capability checks, albeit limited, is a positive sign of considering access control.

Key Concerns

  • SQL queries lack prepared statements
  • Significant portion of output not properly escaped
  • Unsanitized paths in taint analysis
  • Lack of nonce checks
Vulnerabilities
None known

Laiser Tag Plus Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Laiser Tag Plus Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
16
9 escaped
Nonce Checks
0
Capability Checks
3
File Operations
0
External Requests
3
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

36% escaped25 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

3 flows1 with unsanitized paths
ltpoc_options_form (laisertagplus.php:802)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Laiser Tag Plus Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionadmin_noticeslaisertagplus.php:51
actionafter_plugin_rowlaisertagplus.php:52
actioninitlaisertagplus.php:493
actionedit_form_advancedlaisertagplus.php:623
actionedit_form_advancedlaisertagplus.php:627
actionedit_form_advancedlaisertagplus.php:628
actionedit_form_advancedlaisertagplus.php:635
actionadmin_menulaisertagplus.php:800
actionadmin_headlaisertagplus.php:950
filtermce_external_pluginslaisertagplus.php:962
filtermce_pluginslaisertagplus.php:976
filtermce_csslaisertagplus.php:983
actionsave_postlaisertagplus.php:1019
filterthe_contentlaisertagplus.php:1075
actionwp_enqueue_scriptslaisertagplus.php:1152
actionwp_headlaisertagplus.php:1172
Maintenance & Trust

Laiser Tag Plus Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedJan 10, 2019
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Laiser Tag Plus Developer Profile

Pacific Coast Information Systems

5 plugins · 40 total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Laiser Tag Plus

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/laiser-tag-plus/js/laiser-tag-plus.js/wp-content/plugins/laiser-tag-plus/css/laiser-tag-plus.css
Script Paths
/wp-content/plugins/laiser-tag-plus/js/laiser-tag-plus.js
Version Parameters
laiser-tag-plus/js/laiser-tag-plus.js?ver=laiser-tag-plus/css/laiser-tag-plus.css?ver=

HTML / DOM Fingerprints

JS Globals
ltpoc_agent_is_safariltpoc_key_enteredltpoc_api_keyltpoc_relevance_minimumltpoc_auto_fetchltpoc_warn_no_key_plugin_page+9 more
FAQ

Frequently Asked Questions about Laiser Tag Plus