
Page Loading Effects Security & Risk Analysis
wordpress.org/plugins/page-loading-effectsAre you tired of slow-loading pages on your website? Introducing the ultimate solution - our brand new WP plugin that displays a stunning loading anim …
Is Page Loading Effects Safe to Use in 2026?
Generally Safe
Score 85/100Page Loading Effects has a strong security track record. Known vulnerabilities have been patched promptly.
The 'page-loading-effects' plugin v3.0.0 presents a mixed security picture. On the positive side, the plugin demonstrates good practices in several areas. It has no apparent attack surface through AJAX handlers, REST API, shortcodes, or cron events. Furthermore, all identified SQL queries are properly prepared, and there are no suspicious file operations or external HTTP requests. The presence of a nonce check is also a positive indicator for securing certain actions. However, a significant concern arises from the low percentage of properly escaped output, with only 13% of 23 total outputs being escaped. This suggests a high potential for cross-site scripting (XSS) vulnerabilities, where unescaped user-supplied data could be rendered in the browser, allowing malicious scripts to execute.
The vulnerability history also warrants attention. While there are no currently unpatched vulnerabilities, the plugin has a history of one known CVE, specifically a medium-severity Cross-site Scripting (XSS) vulnerability. The fact that this vulnerability was patched indicates the developers can address security issues. However, the occurrence of an XSS vulnerability in the past, coupled with the current static analysis revealing poor output escaping, suggests a recurring risk in how user input is handled. The taint analysis showing no unsanitized paths is encouraging, but it must be considered alongside the high number of potentially unescaped outputs. Overall, the plugin has strengths in its limited attack surface and database interaction security, but the significant weakness in output escaping and past XSS history indicates a substantial risk of XSS vulnerabilities.
Key Concerns
- Low output escaping percentage (13%)
- Past medium XSS vulnerability
Page Loading Effects Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Page Loading Effects <= 2.0.0 - Authenticated (Admin+) Stored Cross Site Scripting
Page Loading Effects Code Analysis
Output Escaping
Data Flow Analysis
Page Loading Effects Attack Surface
WordPress Hooks 8
Maintenance & Trust
Page Loading Effects Maintenance & Trust
Maintenance Signals
Community Trust
Page Loading Effects Alternatives
LazyLoad Plugin – Lazy Load Images, Videos, and Iframes
rocket-lazy-load
The best free lazy load plugin for WordPress. Lazy load images, videos, and iframes to improve performance and Core Web Vitals scores.
Loading Page with Loading Screen
loading-page
Loading Page with Loading Screen plugin performs a pre-loading of images on your website and displays a loading progress screen with percentage of com …
Preloader Awesome – Page Loading Animation with Spinner & Gif
preloader-awesome
Preloader Awesome help You to create page loading animation WordPress with spinner or You can upload Your own GIF.
PageLoader Lite – Loading Screen
pageloader-lite
Add a simple to use, lightweight loading screen to your WordPress site. Great for branding!
WunderSlider Gallery
wunderslider-gallery
WunderSlider Gallery turns default WordPress and NextGEN galleries into responsive fullscreen and embedded WunderSlider slideshows.
Page Loading Effects Developer Profile
6 plugins · 8K total installs
How We Detect Page Loading Effects
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/page-loading-effects/assets/css/ple-preloader.css/wp-content/plugins/page-loading-effects/assets/js/ple-preloader.js/wp-content/plugins/page-loading-effects/assets/js/ple-preloader.jspage-loading-effects/assets/css/ple-preloader.css?ver=page-loading-effects/assets/js/ple-preloader.js?ver=HTML / DOM Fingerprints
ple-preloaderple-preloader-overlayple-preloader-loadingple-preloader-contentdata-ple-effectPLEple_vars