
Listdomer Core – Core of Listdomer Theme Security & Risk Analysis
wordpress.org/plugins/listdomer-coreListdomer Core plugin adds some awesome functionality to Webilia Listdomer Theme.
Is Listdomer Core – Core of Listdomer Theme Safe to Use in 2026?
Generally Safe
Score 100/100Listdomer Core – Core of Listdomer Theme has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'listdomer-core' plugin v4.1.0 presents a concerning security posture primarily due to its unprotected entry points. With two AJAX handlers identified and neither possessing authentication checks, there's a significant risk of unauthorized actions being performed. The absence of any capability checks further exacerbates this, meaning any authenticated user, regardless of their role, could potentially trigger these handlers. While the static analysis shows a reasonable rate of output escaping and no critical or high-severity taint flows, the lack of input validation on the unprotected AJAX endpoints is a major red flag. The plugin's vulnerability history is clean, with no recorded CVEs. This could indicate either a well-developed plugin or simply a lack of past security scrutiny. However, the current code analysis reveals clear weaknesses that could be exploited, making the clean history less reassuring. The plugin's strengths lie in its minimal use of dangerous functions and lack of bundled libraries. Nevertheless, the two unprotected AJAX handlers without any form of authorization or capability checks represent a critical security vulnerability that needs immediate attention.
Key Concerns
- AJAX handlers without auth checks
- No capability checks on entry points
- SQL queries without prepared statements
- Moderate rate of unescaped output
Listdomer Core – Core of Listdomer Theme Security Vulnerabilities
Listdomer Core – Core of Listdomer Theme Code Analysis
SQL Query Safety
Output Escaping
Listdomer Core – Core of Listdomer Theme Attack Surface
AJAX Handlers 2
WordPress Hooks 31
Maintenance & Trust
Listdomer Core – Core of Listdomer Theme Maintenance & Trust
Maintenance Signals
Community Trust
Listdomer Core – Core of Listdomer Theme Alternatives
Directorist: AI-Powered Business Directory, Listings & Classified Ads
directorist
Build any type of directory website such as a business directory, job directory, classifieds directory, and more with this WordPress directory plugin.
Classified Listing – AI-Powered Classified ads & Business Directory Plugin
classified-listing
A Classified ads and Business Directory plugin for WordPress, to create classified listing, real estate directory, local business directory, and more.
GeoDirectory – WP Business Directory Plugin and Classified Listings Directory
geodirectory
A superb WordPress Business Directory plugin to create a local business directory, classified ads directory, or job listings board.
Advanced Classifieds & Directory Pro
advanced-classifieds-and-directory-pro
Build any kind of directory site: classifieds, cars, bikes & other vehicles dealers site, pets, real estate portal, yellow pages, etc...
Listdom: AI-powered Business Directory with Classifieds Ads Listings
listdom
Build any WordPress directory or classifieds site with AI. 80+ skins, search builder, user profile, frontend dashboard, Google Maps & reCAPTCHA.
Listdomer Core – Core of Listdomer Theme Developer Profile
7 plugins · 2K total installs
How We Detect Listdomer Core – Core of Listdomer Theme
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/listdomer-core/assets/css/wp-backend.css/wp-content/plugins/listdomer-core/assets/js/logister.min.jslistdomer-core/assets/css/wp-backend.css?ver=logister.min.js?ver=HTML / DOM Fingerprints
lsd-metaboxlsdrp-metaboxlsd-mb-3post-attributes-label-wrappername="lsdr[header]"id="lsdr_header"name="lsdr[footer]"id="lsdr_footer"lsdrcLogister