
Landingi Landing Pages Security & Risk Analysis
wordpress.org/plugins/landingi-landing-pagesCreate landing pages without any programming skills and import them to your WordPress site using this plugin.
Is Landingi Landing Pages Safe to Use in 2026?
Generally Safe
Score 100/100Landingi Landing Pages has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "landingi-landing-pages" v4.2.0 plugin exhibits a generally good security posture based on the static analysis. The complete absence of direct AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points is a significant strength, limiting the plugin's attack surface considerably. The code signals also indicate responsible development practices, with 100% of SQL queries using prepared statements and the presence of nonce and capability checks. However, the output escaping is a concern, with only 57% properly escaped. This could leave the plugin vulnerable to cross-site scripting (XSS) attacks if user-supplied data is not handled carefully in the remaining outputs.
The vulnerability history shows one known CVE, which is currently patched. The fact that it was a medium-severity Cross-Site Request Forgery (CSRF) vulnerability, and the plugin has no currently unpatched vulnerabilities, is positive. However, the presence of a past CSRF vulnerability, even if patched, suggests that the plugin author needs to remain vigilant about input validation and state-changing operations. The bundled Guzzle library, while not explicitly flagged as outdated, warrants a check for known vulnerabilities in specific versions.
In conclusion, the "landingi-landing-pages" v4.2.0 plugin is relatively secure due to its minimal attack surface and good practices in database queries and authentication checks. The primary weakness lies in the incomplete output escaping, which presents a moderate XSS risk. The historical CVE, though patched, serves as a reminder to maintain robust security controls.
Key Concerns
- Output escaping only 57% proper
- Bundled library Guzzle
- Past medium severity CVE
Landingi Landing Pages Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Landingi Landing Pages <= 3.1.1 - Cross-Site Request Forgery
Landingi Landing Pages Release Timeline
Landingi Landing Pages Code Analysis
Bundled Libraries
Output Escaping
Landingi Landing Pages Attack Surface
WordPress Hooks 13
Maintenance & Trust
Landingi Landing Pages Maintenance & Trust
Maintenance Signals
Community Trust
Landingi Landing Pages Alternatives
Landing Pages App
landing-pages-app
Landing Pages App is a Web app to speed up and simplify the process of building, publishing, optimizing and managing landing pages on a large scale fo …
Visual Composer Website Builder
visualcomposer
Drag and drop page builder that gives the freedom to design WordPress websites, landing pages, custom themes, maintenance mode & coming soon pages.
Live Composer – Free WordPress Website Builder
live-composer-page-builder
Page builder for WordPress with drag and drop header/footer editing, responsive settings, and animations. Compatible with Gutenberg block editor.
Landing Page Builder – Coming Soon page, Maintenance Mode, Lead Page, WordPress Landing Pages
page-builder-add
Easily create high-converting, responsive landing pages with 120+ templates using the free PluginOps Page Builder for WordPress.
ONTRApages
ontrapages
ONTRApages for WordPress allows Ontraport Premium users to connect to their accounts and easily publish their landing pages on their own WordPress sit …
Landingi Landing Pages Developer Profile
1 plugin · 2K total installs
How We Detect Landingi Landing Pages
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/landingi-landing-pages/resources/css/landingi-landing-pages-admin.css/wp-content/plugins/landingi-landing-pages/resources/css/landingi-landing-pages-public.css/wp-content/plugins/landingi-landing-pages/resources/js/landingi-landing-pages-admin.js/wp-content/plugins/landingi-landing-pages/resources/js/landingi-landing-pages-public.js/wp-content/plugins/landingi-landing-pages/resources/js/landingi-landing-pages-admin.js/wp-content/plugins/landingi-landing-pages/resources/js/landingi-landing-pages-public.jslandingi-landing-pages/resources/css/landingi-landing-pages-admin.css?ver=landingi-landing-pages/resources/css/landingi-landing-pages-public.css?ver=landingi-landing-pages/resources/js/landingi-landing-pages-admin.js?ver=landingi-landing-pages/resources/js/landingi-landing-pages-public.js?ver=HTML / DOM Fingerprints
landingi-editorlandingi-editor__iframeCREDITS:
Original Plugin Name: Page Template Plugin : 'Good To Be Bad'
Original Plugin URI: http://www.wpexplorer.com/wordpress-page-templates-plugin/
Original Author: WPExplorer
Original Author URI: http://www.wpexplorer.com/data-landingi-editor-settingsLandingi_Editor