
LH Save Down Security & Risk Analysis
wordpress.org/plugins/lh-save-downSave posts and pages in text, html, epub, or pdf attachment format. Only post content is saved all other stuff gets discarded.
Is LH Save Down Safe to Use in 2026?
Generally Safe
Score 85/100LH Save Down has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'lh-save-down' plugin v2.20 exhibits a strong security posture based on the provided static analysis. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface, with zero identified entry points. Furthermore, the code demonstrates good practices by exclusively using prepared statements for SQL queries and including nonce checks. There are no critical or high severity issues indicated by the taint analysis, and the vulnerability history is clean, with no known CVEs or past vulnerabilities, which suggests a well-maintained and secure codebase.
However, there are minor areas for improvement. The code signals indicate that 30% of output operations are not properly escaped, which could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is present in these unescaped outputs. Additionally, the complete absence of capability checks is concerning, as it implies that any user, regardless of their role, could potentially interact with any functionality the plugin might offer, if any were to be discovered in a deeper analysis. While the plugin has a clean history and a small attack surface, the unescaped outputs and lack of capability checks present slight risks that should be addressed for a more robust security profile.
Key Concerns
- Unescaped output detected
- No capability checks implemented
LH Save Down Security Vulnerabilities
LH Save Down Code Analysis
Bundled Libraries
Output Escaping
LH Save Down Attack Surface
WordPress Hooks 7
Maintenance & Trust
LH Save Down Maintenance & Trust
Maintenance Signals
Community Trust
LH Save Down Alternatives
YARPP – Yet Another Related Posts Plugin
yet-another-related-posts-plugin
The best WordPress plugin for displaying related posts. Simple and flexible, with a powerful proven algorithm and inbuilt caching.
Contextual Related Posts
contextual-related-posts
Keep visitors on your site longer with intelligent, fast-loading, contextually related posts. Block, shortcode, custom post type and widget ready.
Related Posts for WordPress
related-posts-for-wp
The best WordPress plugin for related posts. Simple, flexible, powerful algorithm, and built-in caching. Fully setup with only 1 click!
Raw HTML
raw-html
Lets you use raw HTML or any other code in your posts. You can also disable smart quotes and other automatic formatting on a per-post basis.
Hierarchical HTML Sitemap
hierarchical-html-sitemap
A lightweight and simple HTML sitemap for your WordPress blog.
LH Save Down Developer Profile
77 plugins · 15K total installs
How We Detect LH Save Down
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lh-save-down/lib/PHPePub/EPub.php/wp-content/plugins/lh-save-down/lib/mpdf_new/autoload.phpHTML / DOM Fingerprints
lhsdlinksdivlhsd_linksdivtabs-panel-lh_save_down-links-alltabs-panel-viAwesome code stolen from screenfeed.fr (GregLone) Thank you mate.data-nav-menu-item[lhsd_html][lhsd_text][lhsd_pdf][lhsd_epub]