
OSM Categories Security & Risk Analysis
wordpress.org/plugins/osm-categoriesOpenStreetMap plugin to embed a map with markers to articles from different categories in different map layers.
Is OSM Categories Safe to Use in 2026?
Generally Safe
Score 85/100OSM Categories has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "osm-categories" plugin version 0.1 demonstrates a generally good security posture with no known vulnerabilities in its history and a small attack surface. The plugin utilizes prepared statements for its SQL queries, which is a significant strength. Furthermore, the absence of file operations, external HTTP requests, and dangerous functions are positive indicators. However, a critical weakness is identified in its output escaping, with 0% of its 24 outputs being properly escaped. This presents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into pages where this plugin's output is displayed. The lack of nonce checks and capability checks on its single shortcode, although it has a capability check for the shortcode itself, could also be a point of concern if the shortcode's functionality is sensitive or can be abused without proper user authorization. Taint analysis did not reveal any critical or high severity flows, which is reassuring, but the unescaped output remains the most pressing concern.
Key Concerns
- 0% output escaping
- 0 nonce checks on shortcode
OSM Categories Security Vulnerabilities
OSM Categories Code Analysis
Output Escaping
Data Flow Analysis
OSM Categories Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
OSM Categories Maintenance & Trust
Maintenance Signals
Community Trust
OSM Categories Alternatives
Geocache Stat Bar
geocache-stat-bar
GCSTB StatBar Geocaching
WP Geoloc
wp-geoloc
Search for posts around a location with a specific distance.
SlimStat Analytics
wp-slimstat
The leading web analytics plugin for WordPress
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters
wp-google-map-plugin
WordPress map plugin for Google Maps, OpenStreetMap & Mapbox with store locator, filterable listings & custom markers.
Leaflet Map
leaflet-map
Interactive maps and markers on your posts and pages with simple shortcodes.
OSM Categories Developer Profile
1 plugin · 20 total installs
How We Detect OSM Categories
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.