
Loading Screen by Imoptimal Security & Risk Analysis
wordpress.org/plugins/loading-screen-by-imoptimalComplement your branding efforts by enabling a loading screen progress bar (with percentage text) on your website, that features the logo/image of you …
Is Loading Screen by Imoptimal Safe to Use in 2026?
Generally Safe
Score 85/100Loading Screen by Imoptimal has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "loading-screen-by-imoptimal" plugin v1.2.6 presents a mixed security posture. On the positive side, it shows good practices regarding SQL queries, exclusively using prepared statements, and a high percentage of properly escaped output. There are no recorded historical vulnerabilities (CVEs), which suggests a generally stable and secure development history for this plugin. The absence of dangerous functions, file operations, and external HTTP requests further contribute to a reduced attack surface in those areas.
However, significant concerns arise from the static analysis of its attack surface. The plugin exposes two AJAX handlers, and critically, both of these lack authentication checks. This means any unauthenticated user could potentially interact with these handlers, leading to unintended consequences or exploitable logic. The lack of nonce checks on these AJAX endpoints compounds this risk, as it provides no mechanism to verify the legitimacy of the request.
While taint analysis shows no critical or high-severity flows, the combination of unprotected AJAX endpoints and the absence of nonce checks creates a notable risk of unauthorized access or manipulation of plugin functionality. The vulnerability history being clear is a positive indicator, but the identified weaknesses in the current code require attention.
Key Concerns
- AJAX handlers without auth checks
- AJAX handlers without nonce checks
- Capability checks are minimal
Loading Screen by Imoptimal Security Vulnerabilities
Loading Screen by Imoptimal Release Timeline
Loading Screen by Imoptimal Code Analysis
Output Escaping
Loading Screen by Imoptimal Attack Surface
AJAX Handlers 2
WordPress Hooks 6
Maintenance & Trust
Loading Screen by Imoptimal Maintenance & Trust
Maintenance Signals
Community Trust
Loading Screen by Imoptimal Alternatives
Preloader Awesome – Page Loading Animation with Spinner & Gif
preloader-awesome
Preloader Awesome help You to create page loading animation WordPress with spinner or You can upload Your own GIF.
PageLoader Lite – Loading Screen
pageloader-lite
Add a simple to use, lightweight loading screen to your WordPress site. Great for branding!
DWL Preloader
dwl-preloader
A beautiful animated preloader plugin for WordPress. Choose from 10 stunning SVG preloader styles with a live preview admin panel.
AboveWP Page Loader
abovewp-page-loader
A sleek and elegant page loader for WordPress websites by AboveWP.
Codechime Loader
codechime-loader
A great plugin to create a beautifully animated preloader for your WordPress website without any hassle of complex settings.
Loading Screen by Imoptimal Developer Profile
4 plugins · 70 total installs
How We Detect Loading Screen by Imoptimal
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/loading-screen-by-imoptimal/js/imoload-public.js/wp-content/plugins/loading-screen-by-imoptimal/js/imoload-public-min.js/wp-content/plugins/loading-screen-by-imoptimal/css/imoload-public-min.css/wp-content/plugins/loading-screen-by-imoptimal/css/imoload-public.css/wp-content/plugins/loading-screen-by-imoptimal/js/imoload-admin.js/wp-content/plugins/loading-screen-by-imoptimal/js/jscolor.js/wp-content/plugins/loading-screen-by-imoptimal/js/imoload-admin-min.js/wp-content/plugins/loading-screen-by-imoptimal/js/jscolor-min.js/wp-content/plugins/loading-screen-by-imoptimal/js/imoload-public.js/wp-content/plugins/loading-screen-by-imoptimal/js/imoload-public-min.js/wp-content/plugins/loading-screen-by-imoptimal/js/imoload-admin.js/wp-content/plugins/loading-screen-by-imoptimal/js/jscolor.js/wp-content/plugins/loading-screen-by-imoptimal/js/imoload-admin-min.js/wp-content/plugins/loading-screen-by-imoptimal/js/jscolor-min.jsloading-screen-by-imoptimal/js/imoload-public.js?ver=loading-screen-by-imoptimal/js/imoload-public-min.js?ver=loading-screen-by-imoptimal/css/imoload-public-min.css?ver=loading-screen-by-imoptimal/css/imoload-public.css?ver=loading-screen-by-imoptimal/js/imoload-admin.js?ver=loading-screen-by-imoptimal/js/jscolor.js?ver=loading-screen-by-imoptimal/js/imoload-admin-min.js?ver=loading-screen-by-imoptimal/js/jscolor-min.js?ver=HTML / DOM Fingerprints
imoload-preview-imageimoloadPhpthe_ajax_scriptimoloadLogo/wp-json/imoptimal/loading/v1/options