
LH Add Headers Security & Risk Analysis
wordpress.org/plugins/lh-add-headersAdds the ETag, Last-Modified, and if appropriate 304 headers to HTTP responses generated by WordPress for more efficient caching.
Is LH Add Headers Safe to Use in 2026?
Generally Safe
Score 85/100LH Add Headers has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'lh-add-headers' plugin version 1.04 exhibits a generally positive security posture based on the provided static analysis. There are no identified dangerous functions, file operations, external HTTP requests, or SQL queries that do not utilize prepared statements. The absence of any known CVEs in its history is also a strong indicator of good security practices. However, a significant concern arises from the output escaping. With 100% of outputs not being properly escaped, this presents a clear risk of Cross-Site Scripting (XSS) vulnerabilities if any dynamic data is reflected directly to the user. Furthermore, the complete lack of nonce and capability checks, coupled with no identified attack surface, might suggest the plugin has limited functionality that doesn't require these checks. This could be a strength if the plugin is genuinely simple, or a weakness if its functionality is underestimated or could evolve to require such protections.
Key Concerns
- Output not properly escaped
- No nonce checks
- No capability checks
LH Add Headers Security Vulnerabilities
LH Add Headers Release Timeline
LH Add Headers Code Analysis
SQL Query Safety
Output Escaping
LH Add Headers Attack Surface
WordPress Hooks 2
Maintenance & Trust
LH Add Headers Maintenance & Trust
Maintenance Signals
Community Trust
LH Add Headers Alternatives
Smart WordPress
smart-wp
Optimize the caching behavior of your Website the easy way and reload pages only if something has been changed.
Cache-Control
cache-control
Configurable HTTP Cache-Control response headers for webpages generated by WordPress.
Cache control by Cacholong
cache-control-by-cacholong
“Cache control by Cacholong” is a cache control plugin for one or more Nginx servers.
Last-Modified and If-Modified-Since Headers
last-modified-and-if-modified-since-headers
Add Last-Modified anв support If-Modified-Since Headers
WP Super Secure and Fast htaccess
wp-super-secure-and-fast-htaccess
This essential .htaccess rules plugin allow you to improve security and speed of your wordpress blog.
LH Add Headers Developer Profile
89 plugins · 15K total installs
How We Detect LH Add Headers
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.