XS2H XML Sitemap to HTML Security & Risk Analysis

wordpress.org/plugins/xs2h-xml-sitemap-to-html

Generate a searchable HTML list or table from one or more XML sitemaps via a simple shortcode.

0 active installs v1.2 PHP 7.4+ WP 6.0+ Updated Aug 24, 2025
htmlsearchshortcodesitemapxml
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is XS2H XML Sitemap to HTML Safe to Use in 2026?

Generally Safe

Score 100/100

XS2H XML Sitemap to HTML has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The "xs2h-xml-sitemap-to-html" plugin, version 1.2, exhibits a strong security posture based on the provided static analysis. The absence of any identified entry points (AJAX handlers, REST API routes, shortcodes, cron events) significantly limits the potential attack surface. Furthermore, the code demonstrates good development practices, with no dangerous function usage, all SQL queries employing prepared statements, and nearly all output being properly escaped. The presence of nonce and capability checks, along with the single external HTTP request being the only notable code signal outside of standard WordPress functionality, further solidifies its secure design.

The plugin's vulnerability history is also clear, with zero recorded CVEs of any severity. This lack of past issues, combined with the thorough code analysis showing no critical or high severity taint flows and no unescaped output concerns, suggests a well-maintained and secure plugin. The plugin's strengths lie in its minimal attack surface and adherence to secure coding standards.

In conclusion, "xs2h-xml-sitemap-to-html" v1.2 appears to be a highly secure plugin. The static analysis reveals no immediate security vulnerabilities or significant risks. The developers have demonstrated a commitment to security by employing prepared statements, proper output escaping, and limiting potential entry points. The clean vulnerability history reinforces this positive assessment. The only minor point of consideration is the single external HTTP request, which would warrant review in a more in-depth security audit if the destination or purpose were unclear, but given the rest of the analysis, it poses no immediate threat.

Vulnerabilities
None known

XS2H XML Sitemap to HTML Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

XS2H XML Sitemap to HTML Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
69 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

99% escaped70 total outputs
Attack Surface

XS2H XML Sitemap to HTML Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuxs2h-xml-sitemap-to-html.php:33
actionadmin_initxs2h-xml-sitemap-to-html.php:34
actionwp_enqueue_scriptsxs2h-xml-sitemap-to-html.php:36
actionadmin_enqueue_scriptsxs2h-xml-sitemap-to-html.php:37
Maintenance & Trust

XS2H XML Sitemap to HTML Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 24, 2025
PHP min version7.4
Downloads178

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

XS2H XML Sitemap to HTML Developer Profile

fradigital

2 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect XS2H XML Sitemap to HTML

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/xs2h-xml-sitemap-to-html/xs2h-xml-sitemap-html.css/wp-content/plugins/xs2h-xml-sitemap-to-html/xs2h-xml-sitemap-html.js
Script Paths
/wp-content/plugins/xs2h-xml-sitemap-to-html/xs2h-xml-sitemap-html.js
Version Parameters
xs2h-xml-sitemap-to-html/xs2h-xml-sitemap-html.css?ver=xs2h-xml-sitemap-to-html/xs2h-xml-sitemap-html.js?ver=

HTML / DOM Fingerprints

CSS Classes
xs2h-sitemap-html-containerxs2h-sitemap-html-wrapperxs2h-sitemap-html-searchxs2h-sitemap-html-tablexs2h-sitemap-html-rowxs2h-sitemap-html-cell
Data Attributes
data-xs2h-layoutdata-xs2h-show-urldata-xs2h-show-lastmoddata-xs2h-case
JS Globals
XS2H_SITEMAP_HTML_I18N
Shortcode Output
<div class="xs2h-sitemap-html-container"><div class="xs2h-sitemap-html-wrapper"><div class="xs2h-sitemap-html-search"><table class="xs2h-sitemap-html-table">
FAQ

Frequently Asked Questions about XS2H XML Sitemap to HTML