
Sitemap by click5 Security & Risk Analysis
wordpress.org/plugins/sitemap-by-click5Best WordPress Sitemap plugin to generate and customize HTML & XML sitemaps for your website.
Is Sitemap by click5 Safe to Use in 2026?
Generally Safe
Score 85/100Sitemap by click5 has a strong security track record. Known vulnerabilities have been patched promptly.
The 'sitemap-by-click5' plugin version 1.0.42 exhibits a concerning security posture, primarily due to a large number of unprotected REST API routes. While the plugin demonstrates good practices in output escaping and the use of prepared statements for SQL queries, the presence of 40 REST API routes without any permission callbacks creates a significant attack surface. The taint analysis reveals two high-severity flows, indicating potential vulnerabilities in how data is processed. Furthermore, the vulnerability history shows a past medium-severity CVE related to missing authorization, which aligns with the current findings of unprotected entry points. Although there are no currently unpatched CVEs and the plugin uses dangerous functions sparingly, the high number of unprotected REST API endpoints and the identified taint flows represent a tangible risk that could be exploited by attackers.
Key Concerns
- 40 REST API routes without permission callbacks
- 2 high severity taint flows
- 1 past medium severity CVE (Missing Authorization)
- 3 flows with unsanitized paths
Sitemap by click5 Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Sitemap by click5 <= 1.0.35 - Unauthenticated Arbitrary Options Update
Sitemap by click5 Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Sitemap by click5 Attack Surface
REST API Routes 40
Shortcodes 1
WordPress Hooks 16
Scheduled Events 1
Maintenance & Trust
Sitemap by click5 Maintenance & Trust
Maintenance Signals
Community Trust
Sitemap by click5 Alternatives
XML Sitemap Generator for Google
google-sitemap-generator
Generate multiple types of sitemaps to improve SEO and get your website indexed quickly.
WP SEO HTML Sitemap
wp-seo-html-sitemap
A responsive HTML sitemap that uses all of the settings for your XML sitemap in the WordPress SEO by Yoast Plugin.
XML Sitemaps
xml-sitemaps
Automatically generates XML Sitemaps for your site and notifies search engines when they're updated.
Main Menu HTML Sitemap
main-menu-html-site-map
Your site need html sitemap for SEO enhance. This plugin will make it easy.
Really Simple XML and HTML Sitemap
really-simple-xml-and-html-sitemap
You can add Sitemap on any posts, or pages using the shortcode [rsxh_sitemap] and it also generates an XML Sitemap which will be placed on site root d …
Sitemap by click5 Developer Profile
6 plugins · 7K total installs
How We Detect Sitemap by click5
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sitemap-by-click5/assets/js/custom.js/wp-content/plugins/sitemap-by-click5/assets/css/custom.css/wp-content/plugins/sitemap-by-click5/assets/js/custom.jssitemap-by-click5/assets/js/custom.js?ver=sitemap-by-click5/assets/css/custom.css?ver=HTML / DOM Fingerprints
click5_sitemap_custom_setting<!-- Sitemap by click5 -->data-click5-idclick5_sitemap_vars