Advanced Images Gallery With Lightbox Security & Risk Analysis

wordpress.org/plugins/advanced-images-gallery-with-lightbox

Advanced Images Gallery With Lightbox is the leading plugin for building responsive galleries with Fancybox & Different Layouts (Grid Gallery , Ma …

100 active installs v1.0.3 PHP 7.4+ WP 6.0+ Updated Apr 24, 2025
gallerygallery-with-fancyboximage-gallerysliderswipeable-gallery
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Advanced Images Gallery With Lightbox Safe to Use in 2026?

Generally Safe

Score 92/100

Advanced Images Gallery With Lightbox has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of "advanced-images-gallery-with-lightbox" v1.0.3 reveals a generally strong security posture, with excellent adherence to best practices. The plugin demonstrates a robust approach to preventing common web vulnerabilities by utilizing prepared statements for all SQL queries and properly escaping nearly all output. The presence of a nonce check, even with limited entry points, is a positive indicator. The absence of any recorded vulnerabilities or CVEs in its history further reinforces this positive outlook, suggesting a stable and well-maintained codebase. The limited attack surface, consisting only of a single shortcode, is also a beneficial factor for security.

However, a notable concern is the complete lack of capability checks across all entry points. While the current analysis did not reveal any critical taint flows or dangerous functions, this absence of proper authorization checks leaves the plugin vulnerable to privilege escalation or unauthorized actions if specific conditions are met or if future vulnerabilities are introduced. The lack of any capability checks on the single shortcode means any user, regardless of their role, could potentially interact with it in unexpected ways if it were to be exploited in conjunction with other issues.

In conclusion, the plugin exhibits strong technical security controls in areas like SQL injection and XSS prevention. Its clean vulnerability history is a significant strength. The primary weakness lies in the absence of capability checks, which represents a potential gap in authorization. Addressing this by implementing role-based access control for its shortcode functionality would significantly enhance its overall security.

Key Concerns

  • No capability checks on entry points
Vulnerabilities
None known

Advanced Images Gallery With Lightbox Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Advanced Images Gallery With Lightbox Release Timeline

v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

Advanced Images Gallery With Lightbox Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
138 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped139 total outputs
Attack Surface

Advanced Images Gallery With Lightbox Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[aigwl_gallery] public\class-advanced-images-gallery-with-lightbox-public.php:111
WordPress Hooks 11
actionplugins_loadedincludes\class-advanced-images-gallery-with-lightbox.php:142
actionadmin_enqueue_scriptsincludes\class-advanced-images-gallery-with-lightbox.php:158
actionadmin_enqueue_scriptsincludes\class-advanced-images-gallery-with-lightbox.php:159
actionsave_postincludes\class-advanced-images-gallery-with-lightbox.php:160
actionadd_meta_boxesincludes\class-advanced-images-gallery-with-lightbox.php:162
actioninitincludes\class-advanced-images-gallery-with-lightbox.php:163
actionmanage_aigwl_gallery_posts_custom_columnincludes\class-advanced-images-gallery-with-lightbox.php:164
filtermanage_aigwl_gallery_posts_columnsincludes\class-advanced-images-gallery-with-lightbox.php:165
actionwp_enqueue_scriptsincludes\class-advanced-images-gallery-with-lightbox.php:180
actionwp_enqueue_scriptsincludes\class-advanced-images-gallery-with-lightbox.php:181
actioninitincludes\class-advanced-images-gallery-with-lightbox.php:182
Maintenance & Trust

Advanced Images Gallery With Lightbox Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 24, 2025
PHP min version7.4
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

Advanced Images Gallery With Lightbox Developer Profile

IT Path Solutions

13 plugins · 11K total installs

80
trust score
Avg Security Score
89/100
Avg Patch Time
77 days
View full developer profile
Detection Fingerprints

How We Detect Advanced Images Gallery With Lightbox

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advanced-images-gallery-with-lightbox/admin/css/advanced-images-gallery-with-lightbox-admin.css/wp-content/plugins/advanced-images-gallery-with-lightbox/admin/js/advanced-images-gallery-with-lightbox-admin.js/wp-content/plugins/advanced-images-gallery-with-lightbox/admin/js/custom.js
Script Paths
https://wordpress.org/plugins/advanced-images-gallery-with-lightbox/
Version Parameters
advanced-images-gallery-with-lightbox-admin.css?ver=advanced-images-gallery-with-lightbox-admin.js?ver=custom.js?ver=

HTML / DOM Fingerprints

CSS Classes
aigwl_gallery
Data Attributes
post_type=aigwl_gallery
JS Globals
aigwl_setting_url
FAQ

Frequently Asked Questions about Advanced Images Gallery With Lightbox