Listdom KML Addon – Display KML Layers Security & Risk Analysis

wordpress.org/plugins/listdom-kml

Easily add KML (and GPX) map layers to your Listdom directory maps, highlighting specific areas, routes, or boundaries.

30 active installs v2.2.0 PHP 7.4+ WP 4.2+ Updated Feb 26, 2026
google-earthgoogle-mapsgpxkmllistdom
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Listdom KML Addon – Display KML Layers Safe to Use in 2026?

Generally Safe

Score 100/100

Listdom KML Addon – Display KML Layers has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The security posture of listdom-kml v2.2.0 appears to be strong based on the provided static analysis and vulnerability history. The plugin exhibits excellent adherence to secure coding practices, with no observed dangerous functions, file operations, or external HTTP requests. Crucially, all observed output is properly escaped, and the absence of any taint flows suggests a low risk of injection vulnerabilities. The attack surface is also minimal, with no identified entry points that are exposed without authentication checks.

However, the analysis does highlight some areas that warrant attention. The presence of a SQL query that does not utilize prepared statements represents a potential risk, albeit mitigated by the fact that it is the only query and the overall attack surface is small. Furthermore, the complete lack of nonce checks and capability checks across all identified entry points (even though there are none reported) is a concerning pattern. While currently not exploitable due to the zero entry points, it indicates a potential gap in defensive programming that could become a vulnerability if new features are added without proper security considerations.

The plugin's vulnerability history is spotless, with no known CVEs ever recorded. This, combined with the clean code signals, suggests a developer who is either very diligent or has built a simple enough plugin that it hasn't attracted significant security scrutiny. Despite the lack of specific vulnerabilities, the absence of fundamental security checks like nonces and capability checks on potential future entry points represents a weakness in its defensive design, even if the attack surface is currently zero.

Key Concerns

  • Raw SQL query without prepared statements
  • Lack of nonce checks on potential entry points
  • Lack of capability checks on potential entry points
Vulnerabilities
None known

Listdom KML Addon – Display KML Layers Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Listdom KML Addon – Display KML Layers Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

100% escaped1 total outputs
Attack Surface

Listdom KML Addon – Display KML Layers Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionlistdom_loadedlistdom-kml.php:38
actioninitplugin\I18n.php:9
Maintenance & Trust

Listdom KML Addon – Display KML Layers Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 26, 2026
PHP min version7.4
Downloads501

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Listdom KML Addon – Display KML Layers Developer Profile

Webilia Inc.

7 plugins · 2K total installs

99
trust score
Avg Security Score
99/100
Avg Patch Time
5 days
View full developer profile
Detection Fingerprints

How We Detect Listdom KML Addon – Display KML Layers

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/listdom-kml/dist/css/lsd-kml.css/wp-content/plugins/listdom-kml/dist/js/lsd-kml.js
Script Paths
/wp-content/plugins/listdom-kml/dist/js/lsd-kml.js
Version Parameters
listdom-kml/dist/css/lsd-kml.css?ver=listdom-kml/dist/js/lsd-kml.js?ver=

HTML / DOM Fingerprints

JS Globals
LSD_ADDKML
FAQ

Frequently Asked Questions about Listdom KML Addon – Display KML Layers