sHub-jld Security & Risk Analysis

wordpress.org/plugins/syntaxhub-jld

Optimize your site's structured data and meta output with sHub-jld.

10 active installs v1.0.8 PHP 7.2+ WP 5.0+ Updated Mar 26, 2026
aioseojson-ldseostructured-datayoast
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is sHub-jld Safe to Use in 2026?

Generally Safe

Score 100/100

sHub-jld has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The syntaxhub-jld plugin v1.0.6 presents a generally positive security posture with no recorded vulnerabilities or critical issues identified in the static analysis. The absence of direct entry points like AJAX handlers, REST API routes, and shortcodes significantly reduces the potential attack surface. The code demonstrates good practices by utilizing prepared statements for all SQL queries and including nonce and capability checks. However, the analysis does reveal some areas for improvement. The taint analysis indicates two flows with unsanitized paths, although they did not reach a critical or high severity level. This suggests a potential for issues if these paths were to be exploited, even if not currently severe. Furthermore, the output escaping is only 60% proper, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not adequately sanitized before being displayed to the user. The plugin also performs one file operation, which, without further context on how it's handled, represents a potential, albeit small, risk area. Overall, while the plugin has a strong foundation with robust handling of common web vulnerabilities like SQL injection, the identified unsanitized paths and suboptimal output escaping warrant attention to prevent future security weaknesses.

Key Concerns

  • Unsanitized paths found in taint analysis
  • Output escaping is not fully proper (60%)
  • File operations present without detailed context
Vulnerabilities
None known

sHub-jld Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

sHub-jld Release Timeline

v1.0.8Current
v1.0.7
v1.0.6
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
Code Analysis
Analyzed Mar 16, 2026

sHub-jld Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
3 escaped
Nonce Checks
1
Capability Checks
1
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

60% escaped5 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
syntaxhub_jld_settings_page (includes\settings-page.php:19)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

sHub-jld Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 19
actionadd_meta_boxesincludes\custom-fields-description.php:7
actionsave_postincludes\custom-fields-description.php:40
actionwp_headincludes\jsonld-breadcrumbs.php:5
filteraioseo_schema_graphincludes\jsonld-control.php:13
filterwpseo_json_ld_outputincludes\jsonld-control.php:23
filterwpseo_schema_breadcrumbincludes\jsonld-control.php:26
filterwpseo_schema_webpageincludes\jsonld-control.php:29
filterwpseo_schema_articleincludes\jsonld-control.php:32
filterwpseo_schema_searchactionincludes\jsonld-control.php:35
filterwpseo_schema_organizationincludes\jsonld-control.php:38
filterwpseo_schema_websiteincludes\jsonld-control.php:41
filterwpseo_schema_readactionincludes\jsonld-control.php:44
filterwpseo_schema_entrypointincludes\jsonld-control.php:47
actionwp_headincludes\jsonld-control.php:52
actionwp_headincludes\jsonld-control.php:53
actiontemplate_redirectincludes\jsonld-control.php:56
actiontemplate_redirectincludes\jsonld-control.php:64
actionwp_headincludes\jsonld-description.php:2
actionadmin_menuincludes\settings-page.php:7
Maintenance & Trust

sHub-jld Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 26, 2026
PHP min version7.2
Downloads879

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

sHub-jld Developer Profile

SyntaxCloud

2 plugins · 10 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect sHub-jld

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Script Paths
/wp-content/plugins/syntaxhub-jld/includes/js/script.js
Version Parameters
/wp-content/plugins/syntaxhub-jld/includes/js/script.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about sHub-jld