
LandingCube – Landing Pages for Amazon FBA Sellers Security & Risk Analysis
wordpress.org/plugins/landingcube-for-wordpressLandingCube helps Amazon FBA sellers create beautiful landing pages to promote their products. View a demo here.
Is LandingCube – Landing Pages for Amazon FBA Sellers Safe to Use in 2026?
Generally Safe
Score 85/100LandingCube – Landing Pages for Amazon FBA Sellers has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The landingcube-for-wordpress plugin version 1.0.9 exhibits a generally good security posture based on the provided static analysis. The absence of known vulnerabilities and CVEs is a strong positive indicator. Furthermore, the plugin demonstrates strong practices in preventing direct SQL injection by exclusively using prepared statements and has no critical or high-severity taint flows, indicating a well-sanitized code base for the analyzed flows. The limited attack surface, with only one AJAX handler and no unprotected entry points, also contributes positively to its security.
However, there are areas for improvement. A significant concern is the low percentage of properly escaped output (44%), which suggests a risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not consistently handled with appropriate sanitization before being displayed. While there are nonce checks for the AJAX handler, the lack of capability checks on this entry point is a weakness, potentially allowing unauthenticated users to interact with sensitive functionalities if the AJAX handler performs privileged actions. The presence of bundled libraries, while not inherently problematic, could pose a risk if they are outdated and have known vulnerabilities, though no specific issues are indicated here.
Overall, the plugin is in a relatively secure state, particularly regarding direct code execution and data manipulation vulnerabilities. The primary risk lies in potential XSS due to insufficient output escaping and the lack of capability checks on the AJAX handler. Addressing these specific weaknesses would significantly enhance the plugin's security.
Key Concerns
- Low percentage of properly escaped output
- AJAX handler without capability checks
LandingCube – Landing Pages for Amazon FBA Sellers Security Vulnerabilities
LandingCube – Landing Pages for Amazon FBA Sellers Release Timeline
LandingCube – Landing Pages for Amazon FBA Sellers Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
LandingCube – Landing Pages for Amazon FBA Sellers Attack Surface
AJAX Handlers 1
WordPress Hooks 15
Maintenance & Trust
LandingCube – Landing Pages for Amazon FBA Sellers Maintenance & Trust
Maintenance Signals
Community Trust
LandingCube – Landing Pages for Amazon FBA Sellers Alternatives
ThirstyAffiliates – Affiliate Links, Link Branding, Link Tracking & Marketing Plugin
thirstyaffiliates
🔗 Affiliate link management & cloaker tool. Easily manage, shrink and track your affiliate links in WordPress. 🔥
AffiliateX – Amazon Affiliate Plugin
affiliatex
AffiliateX is the best WordPress Amazon Affiliate Plugin. Create professional affiliate websites with customizable WordPress Amazon Affiliate Blocks.
Simple URLs – Link Cloaking, Product Displays, and Affiliate Link Management
simple-urls
Simple URLs helps you to manage links, create product displays, and grow your affiliate marketing business.
Shop Page WP
shop-page-wp
Create an affiliate shop page on your website. Simple to setup and add products to start making money from affiliate links on your blog.
Tableberg – Simple Gutenberg Table Block
tableberg
Table Block For the Block Editor. Craft Beautiful Tables With Ease.
LandingCube – Landing Pages for Amazon FBA Sellers Developer Profile
2 plugins · 20 total installs
How We Detect LandingCube – Landing Pages for Amazon FBA Sellers
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/landingcube-for-wordpress/includes/vendor/tooltipster/tooltipster.bundle.min.css/wp-content/plugins/landingcube-for-wordpress/includes/vendor/tooltipster/tooltipster-borderless.min.css/wp-content/plugins/landingcube-for-wordpress/includes/vendor/tooltipster/tooltipster-fca-theme.min.css/wp-content/plugins/landingcube-for-wordpress/includes/vendor/select2/select2.min.css/wp-content/plugins/landingcube-for-wordpress/includes/editor/editor.js/wp-content/plugins/landingcube-for-wordpress/includes/editor/editor.css/wp-content/plugins/landingcube-for-wordpress/includes/vendor/tooltipster/tooltipster.bundle.min.js/wp-content/plugins/landingcube-for-wordpress/includes/vendor/select2/select2.min.jslandingcube-for-wordpress/includes/vendor/tooltipster/tooltipster.bundle.min.css?ver=landingcube-for-wordpress/includes/vendor/tooltipster/tooltipster-borderless.min.css?ver=landingcube-for-wordpress/includes/vendor/tooltipster/tooltipster-fca-theme.min.css?ver=landingcube-for-wordpress/includes/vendor/select2/select2.min.css?ver=landingcube-for-wordpress/includes/vendor/tooltipster/tooltipster.bundle.min.js?ver=landingcube-for-wordpress/includes/vendor/select2/select2.min.js?ver=landingcube-for-wordpress/includes/editor/editor.js?ver=landingcube-for-wordpress/includes/editor/editor.css?ver=HTML / DOM Fingerprints
fca-lcwp-setting-tablefca-lcwp-deploy_url_urlfca-lcwp-site-urlname='fca_lcwp[campaign_type]'id='fca_lcwp_campaign_name'fcaLcwpData