LSX Blog Customizer Security & Risk Analysis

wordpress.org/plugins/lsx-blog-customizer

The LSX Blog Customiser will let you create the type of blog you want, showcasing your content in the layout and with the right metadata that you deci …

60 active installs v1.4.7 PHP 7.4+ WP 5.0+ Updated Aug 18, 2023
blog-customizerblog-postscustomizerlsxrelated-posts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is LSX Blog Customizer Safe to Use in 2026?

Generally Safe

Score 85/100

LSX Blog Customizer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The lsx-blog-customizer v1.4.7 plugin exhibits a generally strong security posture based on the provided static analysis. There are no identified dangerous functions, SQL queries use prepared statements exclusively, and output escaping is nearly perfect, indicating good development practices to prevent common vulnerabilities. The absence of external HTTP requests and file operations further reduces the attack surface. The plugin also has a clean vulnerability history with no known CVEs, which suggests a mature and well-maintained codebase. However, the lack of nonce checks and capability checks on any entry points, including the single shortcode, presents a notable concern. While the attack surface is minimal, these missing security measures could be exploited if the shortcode's functionality were to become vulnerable to unwanted execution.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

LSX Blog Customizer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

LSX Blog Customizer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
378 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped380 total outputs
Attack Surface

LSX Blog Customizer Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[lsx_posts] includes\functions.php:42
WordPress Hooks 33
actioncustomize_preview_initclasses\class-lsx-blog-customizer-admin.php:21
filtertype_url_form_mediaclasses\class-lsx-blog-customizer-admin.php:22
actioncmb2_admin_initclasses\class-lsx-blog-customizer-admin.php:23
actioncustomize_registerclasses\class-lsx-blog-customizer-blog.php:21
actionwp_enqueue_scriptsclasses\class-lsx-blog-customizer-frontend.php:21
actionwpclasses\class-lsx-blog-customizer-frontend.php:22
actionwp_headclasses\class-lsx-blog-customizer-frontend.php:23
filterlsx_customizer_colour_selectors_bodyclasses\class-lsx-blog-customizer-frontend.php:26
filterlsx_customizer_colour_selectors_bannerclasses\class-lsx-blog-customizer-frontend.php:27
actionlsx_content_wrap_beforeclasses\class-lsx-blog-customizer-frontend.php:30
filterget_the_excerptclasses\class-lsx-blog-customizer-frontend.php:33
filterhas_post_thumbnailclasses\class-lsx-blog-customizer-frontend.php:35
filterlsx_get_thumbnail_post_placeholder_idclasses\class-lsx-blog-customizer-frontend.php:36
filterbody_classclasses\class-lsx-blog-customizer-frontend.php:77
filterpost_classclasses\class-lsx-blog-customizer-frontend.php:78
actionlsx_banner_inner_bottomclasses\class-lsx-blog-customizer-frontend.php:80
actionlsx_blog_customizer_banner_topclasses\class-lsx-blog-customizer-frontend.php:81
actionlsx_global_header_inner_bottomclasses\class-lsx-blog-customizer-frontend.php:82
actionlsx_content_afterclasses\class-lsx-blog-customizer-frontend.php:100
filterlsx_blog_display_text_on_listclasses\class-lsx-blog-customizer-frontend.php:146
filterlsx_blog_force_content_on_listclasses\class-lsx-blog-customizer-frontend.php:150
filterlsx_blog_layoutclasses\class-lsx-blog-customizer-frontend.php:155
filterlsx_blog_layoutclasses\class-lsx-blog-customizer-frontend.php:161
filterlsx_blog_layoutclasses\class-lsx-blog-customizer-frontend.php:167
filterlsx_blog_layoutclasses\class-lsx-blog-customizer-frontend.php:173
filterexcerpt_lengthclasses\class-lsx-blog-customizer-frontend.php:536
filterwp_kses_allowed_htmlclasses\class-lsx-blog-customizer-posts.php:44
filterexcerpt_lengthclasses\class-lsx-blog-customizer-posts.php:45
filterexcerpt_strip_tagsclasses\class-lsx-blog-customizer-posts.php:46
filterwp_kses_allowed_htmlclasses\class-lsx-blog-customizer-terms.php:44
actionwidgets_initclasses\class-lsx-blog-customizer-widget-posts.php:315
actionwidgets_initclasses\class-lsx-blog-customizer-widget-terms.php:284
actioninitincludes\functions.php:18
Maintenance & Trust

LSX Blog Customizer Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedAug 18, 2023
PHP min version7.4
Downloads6K

Community Trust

Rating0/100
Number of ratings0
Active installs60
Developer Profile

LSX Blog Customizer Developer Profile

Ash Shaw

14 plugins · 700 total installs

81
trust score
Avg Security Score
90/100
Avg Patch Time
51 days
View full developer profile
Detection Fingerprints

How We Detect LSX Blog Customizer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/lsx-blog-customizer/assets/css/vendor/slick.css/wp-content/plugins/lsx-blog-customizer/assets/js/vendor/slick.min.js/wp-content/plugins/lsx-blog-customizer/assets/js/lsx-blog-customizer-admin.min.js/wp-content/plugins/lsx-blog-customizer/assets/css/lsx-blog-customizer-admin.css
Script Paths
/wp-content/plugins/lsx-blog-customizer/assets/js/lsx-blog-customizer-admin.min.js/wp-content/plugins/lsx-blog-customizer/assets/js/slick.min.js/wp-content/plugins/lsx-blog-customizer/assets/js/lsx-blog-customizer.js/wp-content/plugins/lsx-blog-customizer/assets/js/src/lsx-blog-customizer.js
Version Parameters
lsx-blog-customizer/assets/css/lsx-blog-customizer-admin.css?ver=lsx-blog-customizer/assets/js/lsx-blog-customizer-admin.min.js?ver=lsx-blog-customizer/assets/css/vendor/slick.css?ver=lsx-blog-customizer/assets/js/vendor/slick.min.js?ver=lsx-blog-customizer/assets/js/lsx-blog-customizer.js?ver=lsx-blog-customizer/assets/js/src/lsx-blog-customizer.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-lsx-customizer-post-term-banner_titledata-lsx-customizer-post-term-banner_taglinedata-lsx-customizer-post-term-featured_imagedata-lsx-customizer-post-term-icon_imagedata-lsx-customizer-post-term-banner_image
JS Globals
lsx_blog_customizer_paramslsx_blog_customizer
FAQ

Frequently Asked Questions about LSX Blog Customizer