
WP Fakeloader Security & Risk Analysis
wordpress.org/plugins/wp-fakeloaderWP Fakeloader is a simple and customizable wordpress preloader plugin based on fakeloader js.
Is WP Fakeloader Safe to Use in 2026?
Generally Safe
Score 85/100WP Fakeloader has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-fakeloader" v1.2 plugin exhibits a generally positive security posture based on the static analysis. The absence of dangerous functions, SQL queries, file operations, external HTTP requests, and a clear indication that all SQL queries utilize prepared statements are strong indicators of good security practices. Furthermore, the vulnerability history shows no recorded CVEs, suggesting a history of secure development or prompt patching if issues have arisen. The limited attack surface, with only one shortcode and no unprotected entry points, also contributes to its safety.
However, a significant concern emerges from the output escaping analysis. With 100% of outputs not properly escaped, this presents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data that is displayed by the plugin without proper sanitization and escaping could be leveraged by attackers to inject malicious scripts. This oversight, despite other strong security measures, leaves the plugin vulnerable to client-side attacks.
In conclusion, while "wp-fakeloader" v1.2 demonstrates many strengths, particularly in its handling of server-side code and SQL, the complete lack of output escaping is a critical weakness. This needs immediate attention to mitigate XSS risks. The plugin's otherwise clean history and limited attack surface are commendable, but the unescaped output significantly detracts from its overall security.
Key Concerns
- 0% of outputs properly escaped
WP Fakeloader Security Vulnerabilities
WP Fakeloader Code Analysis
Output Escaping
WP Fakeloader Attack Surface
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
WP Fakeloader Maintenance & Trust
Maintenance Signals
Community Trust
WP Fakeloader Alternatives
HF-Preloader-Awesome
hf-preloader-awesome
This plugin will make awesome style when your Webpage loading. It will help you to stay visitor in your website and also increase your traffic.
Safelayout Cute Preloader – CSS3 WordPress Preloader
safelayout-cute-preloader
Easily add a pure CSS animated preloader to your WordPress website.
WP Smart Preloader
wp-smart-preloader
A Plugin to add awesome collection of Loaders and Spinners. Delightful and performance-focused Pure CSS animations.
DWL Preloader
dwl-preloader
DWL Preloader will create a preloading screen for your website before all your images (including the images in CSS) are fully loaded.
uLoader – A Simple Preloader
u-loader
uLoader is a simple, easy to use preloader. Just install it on your site, and it'll do the rest. If you want your customized preloader with your …
WP Fakeloader Developer Profile
1 plugin · 20 total installs
How We Detect WP Fakeloader
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-fakeloader/site/assets/css/style.css/wp-content/plugins/wp-fakeloader/site/assets/js/fakeloader.min.js/wp-content/plugins/wp-fakeloader/site/assets/js/script.js/wp-content/plugins/wp-fakeloader/site/assets/js/script.js/wp-content/plugins/wp-fakeloader/site/assets/js/fakeloader.min.jswp-fakeloader/site/assets/css/style.css?ver=wp-fakeloader/site/assets/js/fakeloader.min.js?ver=wp-fakeloader/site/assets/js/script.js?ver=HTML / DOM Fingerprints
window.fakeloader[fakeloader][/fakeloader]