
LeadLab by wiredminds Security & Risk Analysis
wordpress.org/plugins/wiredminds-leadlabIntegration of the Wiredminds LeadLab trackingcode.
Is LeadLab by wiredminds Safe to Use in 2026?
Generally Safe
Score 99/100LeadLab by wiredminds has a strong security track record. Known vulnerabilities have been patched promptly.
The wiredminds-leadlab plugin v1.4.3 demonstrates a generally strong security posture based on the static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant strength. Furthermore, the code signals indicate a responsible development approach, with no dangerous functions, all SQL queries using prepared statements, and all output properly escaped. The presence of nonce and capability checks further reinforces this positive assessment.
However, the plugin's vulnerability history raises a concern. The existence of one known CVE, even if currently unpatched and of medium severity, suggests that vulnerabilities have been discovered in the past. While the static analysis did not reveal any critical or high severity issues in the current version, the historical pattern of Cross-site Scripting (XSS) vulnerabilities implies a potential for undiscovered flaws or regressions. The lack of an identified attack surface is a positive sign for the current version, but the historical context warrants a cautious approach.
In conclusion, the wiredminds-leadlab plugin v1.4.3 appears to be well-developed with excellent security practices evident in its code. The static analysis reveals no immediate critical risks. Nevertheless, the past discovery of a medium-severity XSS vulnerability, though patched, indicates that diligent security monitoring and prompt updates are crucial for this plugin to maintain its security. Users should remain vigilant for future updates and advisories.
Key Concerns
- 1 Medium Severity CVE historically
LeadLab by wiredminds Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
LeadLab by wiredminds <= 1.3 - Reflected Cross-Site Scripting
LeadLab by wiredminds Code Analysis
Output Escaping
Data Flow Analysis
LeadLab by wiredminds Attack Surface
WordPress Hooks 3
Maintenance & Trust
LeadLab by wiredminds Maintenance & Trust
Maintenance Signals
Community Trust
LeadLab by wiredminds Alternatives
AddFunc Head & Footer Code
addfunc-head-footer-code
Easily add code to your head, footer and/or immediately after the opening body tag, site-wide and/or on any individual page/post.
Embed Code – Headers & Footers by DesignBombs
embed-code
The easiest way to embed code in the head or footer of your site, globally or on a per-page/post basis.
Analytics by BestWebSoft – Google Analytics Dashboard and Statistic Plugin for WordPress
bws-google-analytics
Add Google Analytics code to WordPress website and track basic stats.
Wp Tracking Codes
wp-tracking-codes
The tracking codes in one place. Support: Google Tag Manager, GA 4 Global Tag, Google ADS Remarketing Global Tag,Google Merchant Reviews,Facebook Pixe …
Content Snippet Manager
content-snippet-manager
Content Snippet Manager plugin allows you to create and manage unlimited numbers of HTML and WordPress shortcodes in your WordPress content
LeadLab by wiredminds Developer Profile
3 plugins · 110 total installs
How We Detect LeadLab by wiredminds
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wiredminds-leadlab/assets/js/script.js/wp-content/plugins/wiredminds-leadlab/assets/css/style.css/wp-content/plugins/wiredminds-leadlab/assets/js/script.jswiredminds-leadlab/assets/js/script.js?ver=wiredminds-leadlab/assets/css/style.css?ver=HTML / DOM Fingerprints
wp-wm-formwp-wm-labelwp-wm-inputwp-wm-descriptionwp-wm-submitwp-wm-statuswp-wm-status activewp-wm-status inactive<!-- LeadLab tracking code --><!-- End LeadLab tracking code --><!-- BEGIN: wiredminds LeadLab tracking code --><!-- END: wiredminds LeadLab tracking code -->pattern="[a-zA-Z0-9]{16}"title="Geben Sie genau 16 alphanumerische Zeichen ein"oninput="this.value = this.value.replace(/[^a-zA-Z0-9]/g, '')"window.wiredminds = window.wiredminds || {};window.wiredminds.leadlab = window.wiredminds.leadlab || {};window.wiredminds.leadlab.trackingId = '%%TRACKING_ID%%';