
LJ Multi Column Archive Security & Risk Analysis
wordpress.org/plugins/lj-multi-column-archiveLJ Multi Column Archive is a Wordpress plugin/widget that allows you to display your archive list with multiple columns.
Is LJ Multi Column Archive Safe to Use in 2026?
Generally Safe
Score 85/100LJ Multi Column Archive has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The lj-multi-column-archive plugin version 1.4 exhibits a generally strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events with protection checks significantly limits the attack surface. Furthermore, the use of prepared statements for its single SQL query is a good practice, and there are no indications of dangerous functions, file operations, external HTTP requests, or bundled libraries that could introduce vulnerabilities. The plugin also has a clean history with no recorded CVEs, suggesting a history of secure development or diligent patching by its maintainers.
However, a significant concern arises from the complete lack of output escaping. This means that any dynamic content generated by the plugin is not being sanitized before being displayed to users. If user-provided data were to be incorporated into this output, it could lead to cross-site scripting (XSS) vulnerabilities. The absence of nonce checks and capability checks on any potential, albeit currently non-existent, entry points also means that if new entry points were added in the future without proper security measures, they would be immediately unprotected. Despite the clean slate regarding known vulnerabilities and taint analysis, the unescaped output represents a clear and actionable security risk that needs immediate attention.
Key Concerns
- 0% of outputs properly escaped
- No nonce checks implemented
- No capability checks implemented
LJ Multi Column Archive Security Vulnerabilities
LJ Multi Column Archive Code Analysis
SQL Query Safety
Output Escaping
LJ Multi Column Archive Attack Surface
WordPress Hooks 1
Maintenance & Trust
LJ Multi Column Archive Maintenance & Trust
Maintenance Signals
Community Trust
LJ Multi Column Archive Alternatives
Collapsing Archives
collapsing-archives
This plugin uses Javascript to dynamically expand or collapse the set of months for each year and posts for each month in the archive listing of your …
Expanding Archives
expanding-archives
This plugin adds a new widget where you can view your old posts by expanding certain years and months.
Featured Category Widget
category-feature
The Featured Category Widget is basically a Featured Post Widget for a category.
Categories Recent Posts Widget
category-recent-posts-widget
This widget displays the recent posts on a category page for that category
ARCW Popover Addon
arcw-popover-addon
Popover Addon for Archives Calendar Widget
LJ Multi Column Archive Developer Profile
4 plugins · 1K total installs
How We Detect LJ Multi Column Archive
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lj-multi-column-archive/style.csslj-multi-column-archive/style.css?ver=HTML / DOM Fingerprints
ljmulticolumnarchive-boxljmulticolumnarchive-sectionljmulticolumnarchive-section-nextljmulticolumnarchive-clearLJMultiColumnArchive Version 1.4 StartLJMultiColumnArchive Endwidget-LJMultiColumnArchive-titlewidget-LJMultiColumnArchive-showpostcountwidget-LJMultiColumnArchive-numcolumnswidget-LJMultiColumnArchive-type