
LH Media Mime Types Security & Risk Analysis
wordpress.org/plugins/lh-media-mime-typesEnables you to filter the media listing by the media mime type
Is LH Media Mime Types Safe to Use in 2026?
Generally Safe
Score 85/100LH Media Mime Types has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'lh-media-mime-types' plugin v1.01 exhibits a generally positive security posture with a notably clean vulnerability history, indicating a history of secure development. The static analysis reveals no immediately exploitable attack vectors such as unprotected AJAX handlers, REST API routes, or shortcodes. Furthermore, the absence of dangerous functions and file operations is a strength. However, two critical concerns emerge from the taint analysis: two flows with unsanitized paths and a significant lack of output escaping. The taint analysis indicates that data processing within the plugin might be vulnerable to injection attacks if these unsanitized paths are utilized by user-supplied input. The 100% unescaped output across all identified outputs is a major concern, suggesting a high likelihood of Cross-Site Scripting (XSS) vulnerabilities. Despite the lack of historical CVEs, these code-level risks require immediate attention. The plugin's strength lies in its minimal attack surface and reliance on prepared statements for SQL, but the identified taint flows and output escaping issues present significant security weaknesses that could be exploited.
Key Concerns
- High severity taint flows (unsanitized paths)
- 0% output escaping
LH Media Mime Types Security Vulnerabilities
LH Media Mime Types Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
LH Media Mime Types Attack Surface
WordPress Hooks 6
Maintenance & Trust
LH Media Mime Types Maintenance & Trust
Maintenance Signals
Community Trust
LH Media Mime Types Alternatives
WP Attachments
wp-attachments
A powerful solution to manage and display your WordPress media attachments in posts and pages.
F4 Media Taxonomies
f4-media-taxonomies
Add filters and bulk actions for attachment categories, tags and custom taxonomies.
Medialist
media-list
Organised lists. Items are displayed elegantly styled on a page. Ideal for displaying policies, documents, newsletters, media, posts and more.
Default Media Uploader View
default-media-uploader-view
Sets "Uploaded to this post" instead of "All media items" as the default view in the media uploader.
Personal Library
personal-library
Restricts users to managing/using their own attachments only.
LH Media Mime Types Developer Profile
77 plugins · 15K total installs
How We Detect LH Media Mime Types
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
<a href=""></a>