LandingRabbit Security & Risk Analysis

wordpress.org/plugins/landingrabbit

Bring your LandingRabbit pages into WordPress and publish them with Elementor and Gutenberg.

0 active installs v1.1.0 PHP 7.4+ WP 5.8+ Updated Oct 17, 2025
elementorgutenberglanding-page-builderlanding-pagesmarketing-pages
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is LandingRabbit Safe to Use in 2026?

Generally Safe

Score 100/100

LandingRabbit has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The plugin 'landingrabbit' v1.1.0 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified vulnerabilities in its history, coupled with a clean code analysis devoid of dangerous functions, raw SQL queries, unescaped output, or unsanitized taint flows, indicates a diligent development approach to security. The plugin effectively utilizes prepared statements for its SQL queries and properly escapes all output, demonstrating good coding practices.

However, the static analysis does reveal a few areas that warrant attention, although they do not currently present as critical vulnerabilities. The presence of file operations and external HTTP requests, while not inherently insecure, represents potential attack vectors that should be carefully monitored and secured. The single nonce check and capability check suggest that while some security measures are in place, a broader application of these checks across all entry points would further strengthen the plugin's resilience. The lack of a significant attack surface is a positive sign, but the overall security could be further enhanced with more comprehensive authentication and authorization checks on all functional components.

In conclusion, 'landingrabbit' v1.1.0 is currently in a very secure state, with no known historical vulnerabilities and excellent internal code hygiene. The strengths lie in its robust output escaping, prepared SQL statements, and lack of historically problematic code patterns. The minor concerns relate to potential risks associated with file operations and external requests, and the opportunity to expand the use of nonces and capability checks. Overall, the plugin appears to be well-maintained and secure.

Key Concerns

  • File operations detected
  • External HTTP requests detected
  • Single nonce check
  • Single capability check
Vulnerabilities
None known

LandingRabbit Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

LandingRabbit Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
594 escaped
Nonce Checks
1
Capability Checks
1
File Operations
2
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped594 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
form_action (inc\Admin_Settings.php:88)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

LandingRabbit Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 19
actionadmin_menuinc\Admin_Settings.php:11
actionadmin_enqueue_scriptsinc\Admin_Settings.php:23
actioninitinc\Block_Class.php:14
filterblock_categories_allinc\Block_Class.php:15
actioninitinc\Block_Class.php:24
actionenqueue_block_editor_assetsinc\Block_Class.php:27
filtertemplate_includeinc\Block_Class.php:28
actionwp_enqueue_scriptsinc\Block_Class.php:32
actionwp_headinc\Block_Class.php:35
filterbody_classinc\Block_Class.php:38
actionwp_enqueue_scriptsinc\Performance.php:10
filterscript_loader_taginc\Performance.php:11
actionwp_enqueue_scriptsinc\Performance.php:14
actionelementor/widgets/widgets_registeredinc\Widget.php:17
actionelementor/frontend/after_enqueue_scriptsinc\Widget.php:20
actionwp_enqueue_scriptsinc\Widget.php:21
actionelementor/editor/after_enqueue_stylesinc\Widget.php:24
filterbody_classinc\Widget.php:28
actionwp_headinc\Widget.php:146
Maintenance & Trust

LandingRabbit Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 17, 2025
PHP min version7.4
Downloads250

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

LandingRabbit Developer Profile

landingrabbit

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect LandingRabbit

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/landingrabbit/assets/css/backend.css/wp-content/plugins/landingrabbit/assets/css/frontend.css/wp-content/plugins/landingrabbit/assets/js/backend.js/wp-content/plugins/landingrabbit/assets/js/frontend.js
Script Paths
/wp-content/plugins/landingrabbit/assets/js/backend.js/wp-content/plugins/landingrabbit/assets/js/frontend.js
Version Parameters
landingrabbit/assets/css/backend.css?ver=landingrabbit/assets/css/frontend.css?ver=landingrabbit/assets/js/backend.js?ver=landingrabbit/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
lrwpp-logo-containerlrwpp-logolrwpp-noticelrwpp-notice-errorlrwpp-notice-successlrwpp-custom-button
Data Attributes
data-lrwpp-dialog-iddata-lrwpp-dialog-data
JS Globals
landingrabbitLRWPP_AjaxLRWPP_Nonce
REST Endpoints
/wp-json/landingrabbit/v1/save/wp-json/landingrabbit/v1/get-content
Shortcode Output
[landingrabbit_form]
FAQ

Frequently Asked Questions about LandingRabbit