
Lana Sitemap Security & Risk Analysis
wordpress.org/plugins/lana-sitemapXML and Google News Sitemaps
Is Lana Sitemap Safe to Use in 2026?
Generally Safe
Score 85/100Lana Sitemap has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "lana-sitemap" plugin v1.0.3 presents a generally good security posture, with no known vulnerabilities or CVEs recorded. The static analysis shows a very small attack surface, with zero entry points identified in AJAX handlers, REST API routes, shortcodes, or cron events. This lack of direct interaction points significantly reduces the likelihood of external exploitation. However, there are a few areas that warrant attention. The presence of the "create_function" dangerous function is a notable concern, as it can be a vector for code injection if not handled with extreme care, although the lack of taint flows suggests this is not currently being exploited. Furthermore, the output escaping is only 66% proper, indicating a potential risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is directly outputted without adequate sanitization. While the plugin demonstrates good practices like nonce and capability checks, these areas could be strengthened to further mitigate risks.
Key Concerns
- Uses "create_function", a dangerous PHP function
- Only 66% of output is properly escaped
- 40% of SQL queries do not use prepared statements
Lana Sitemap Security Vulnerabilities
Lana Sitemap Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Lana Sitemap Attack Surface
WordPress Hooks 27
Maintenance & Trust
Lana Sitemap Maintenance & Trust
Maintenance Signals
Community Trust
Lana Sitemap Alternatives
XML News Sitemap
xml-news-sitemap
This plugin provides a highly-configurable Google News XML Sitemap for WordPress.
Dynamic XML Sitemaps Generator for Google
xml-sitemap-generator-for-google
Boost SEO 🚀 with powerful XML, HTML, Image, Video & Google News sitemaps for better search engine indexing.
XML Sitemaps Manager
xml-sitemaps-manager
Options to manage the WordPress core XML Sitemaps, optimize and fix some bugs.
Google News Sitemap Feed With Multisite Support
google-news-sitemap-feed-with-multisite-support
Dynamically generates a Google News Sitemap. Multisite compatible.
Lightweight Newscast XML Sitemap For Google News
lightweight-newscast-xml-sitemap-for-google-news
Generates a Google News compatible XML sitemap for WordPress sites to be submitted to Google Search Console for better news content indexing.
Lana Sitemap Developer Profile
13 plugins · 4K total installs
How We Detect Lana Sitemap
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lana-sitemap/assets/js/lana-sitemap-admin.js/wp-content/plugins/lana-sitemap/assets/js/lana-sitemap-admin.jslana-sitemap/assets/js/lana-sitemap-admin.js?ver=