
Sitemap HTML Generator Security & Risk Analysis
wordpress.org/plugins/sitemap-html-generatorThis plugin allows you to use a shortcode to display anywhere in WordPress HTML sitemap with posts and pages list. You can also change title of post a …
Is Sitemap HTML Generator Safe to Use in 2026?
Generally Safe
Score 92/100Sitemap HTML Generator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "sitemap-html-generator" v1.0 plugin demonstrates a generally good security posture based on the provided static analysis. The plugin has a small attack surface with only one entry point (a shortcode) and no unprotected entry points. Crucially, there are no detected dangerous functions, raw SQL queries, file operations, or external HTTP requests, which significantly reduces common attack vectors. The high percentage of properly escaped output (83%) is also a positive indicator. The plugin's vulnerability history is clean, with no known CVEs, suggesting a history of secure development or active maintenance. However, a notable concern is the complete absence of nonce checks and capability checks. While the current entry point might not directly expose sensitive actions, this omission represents a significant weakness. If the shortcode were to be extended or interact with admin actions in the future, the lack of these fundamental security measures could lead to various Cross-Site Request Forgery (CSRF) or privilege escalation vulnerabilities. The zero taint flows are encouraging, indicating no apparent injection vulnerabilities in the analyzed code paths.
Key Concerns
- Missing nonce checks
- Missing capability checks
- Some unescaped output (17%)
Sitemap HTML Generator Security Vulnerabilities
Sitemap HTML Generator Code Analysis
Output Escaping
Sitemap HTML Generator Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Sitemap HTML Generator Maintenance & Trust
Maintenance Signals
Community Trust
Sitemap HTML Generator Alternatives
XML Sitemap Generator By Kaboom
xml-sitemap-generator-by-kaboom
The best sitemap generator which is very easy to configure and has multilingual support (WPML). This plugin will generate a XML and a HTML sitemap.
XML Sitemap Generator for Google
google-sitemap-generator
Generate multiple types of sitemaps to improve SEO and get your website indexed quickly.
WP Sitemap Page
wp-sitemap-page
Add a sitemap on any of your page using the simple shortcode [wp_sitemap_page]. Improve the SEO and navigation of your website.
Sitemap by click5
sitemap-by-click5
Best WordPress Sitemap plugin to generate and customize HTML & XML sitemaps for your website.
Simple XML Sitemap Generator
simple-xml-sitemap-generator
add a sitemap to your wordpress website.
Sitemap HTML Generator Developer Profile
11 plugins · 1K total installs
How We Detect Sitemap HTML Generator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sitemap-html-generator/sitemap-html.phpHTML / DOM Fingerprints
sp_wordpress_html_sitemap_generator-classid="pages_title"name="pages_title"id="posts_title"name="posts_title"[sp_sitemap_html]