AI Image Generator – Easy image creation with AI Security & Risk Analysis

wordpress.org/plugins/ai-image-generator

Create stunning images with AI Image Generator. Use our image generator powered by OpenAI and DALL-E to produce high-quality visuals effortlessly.

200 active installs v1.0.7 PHP 7.4+ WP 4.9+ Updated Nov 24, 2024
aiai-imagedall-eopenaitext-to-image
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AI Image Generator – Easy image creation with AI Safe to Use in 2026?

Generally Safe

Score 92/100

AI Image Generator – Easy image creation with AI has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "ai-image-generator" v1.0.7 plugin exhibits a concerning security posture due to a significant number of unprotected AJAX handlers. While the plugin demonstrates good practices in other areas such as using prepared statements for SQL queries and proper output escaping, the presence of six AJAX handlers without any authentication or capability checks represents a major attack surface. This oversight could allow unauthenticated users to trigger potentially sensitive actions within the plugin, leading to vulnerabilities if not carefully handled. The taint analysis, while not revealing critical or high severity issues, did identify three flows with unsanitized paths, which, combined with the unprotected AJAX endpoints, increases the risk of path traversal or other file-related attacks. The plugin's lack of any recorded vulnerability history is a positive sign, suggesting a history of secure development or diligent patching. However, this cannot fully mitigate the immediate risks posed by the identified unprotected entry points. Overall, the plugin has strengths in its core coding practices, but the unprotected AJAX handlers are a significant weakness that requires immediate attention.

Key Concerns

  • AJAX handlers without auth checks
  • Flows with unsanitized paths
Vulnerabilities
None known

AI Image Generator – Easy image creation with AI Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

AI Image Generator – Easy image creation with AI Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
22 escaped
Nonce Checks
5
Capability Checks
3
File Operations
3
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

Output Escaping

100% escaped22 total outputs
Data Flows
3 unsanitized

Data Flow Analysis

7 flows3 with unsanitized paths
generate_image_variations (admin\controllers\ImageController.php:104)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
6 unprotected

AI Image Generator – Easy image creation with AI Attack Surface

Entry Points6
Unprotected6

AJAX Handlers 6

authwp_ajax_set_api_keyincludes\class-ai-wp-cgntvdnmc.php:164
authwp_ajax_set_image_variations_settingsincludes\class-ai-wp-cgntvdnmc.php:165
authwp_ajax_store_base64_image_in_media_libraryincludes\class-ai-wp-cgntvdnmc.php:167
authwp_ajax_generate_image_variationsincludes\class-ai-wp-cgntvdnmc.php:168
authwp_ajax_set_text_to_image_settingsincludes\class-ai-wp-cgntvdnmc.php:170
authwp_ajax_create_image_from_promptincludes\class-ai-wp-cgntvdnmc.php:171
WordPress Hooks 7
actionplugins_loadedincludes\class-ai-wp-cgntvdnmc.php:142
actionadmin_enqueue_scriptsincludes\class-ai-wp-cgntvdnmc.php:157
actionadmin_enqueue_scriptsincludes\class-ai-wp-cgntvdnmc.php:158
actionadmin_menuincludes\class-ai-wp-cgntvdnmc.php:159
actionadmin_initincludes\class-ai-wp-cgntvdnmc.php:160
actionwp_enqueue_mediaincludes\class-ai-wp-cgntvdnmc.php:162
actionafter_uninstallincludes\class-ai-wp-cgntvdnmc.php:173
Maintenance & Trust

AI Image Generator – Easy image creation with AI Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedNov 24, 2024
PHP min version7.4
Downloads8K

Community Trust

Rating90/100
Number of ratings8
Active installs200
Developer Profile

AI Image Generator – Easy image creation with AI Developer Profile

upcasted

2 plugins · 400 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
22 days
View full developer profile
Detection Fingerprints

How We Detect AI Image Generator – Easy image creation with AI

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ai-image-generator/dist/js/chunk-vendors.js/wp-content/plugins/ai-image-generator/dist/js/app.js
Script Paths
/wp-content/plugins/ai-image-generator/freemius/start.php/wp-content/plugins/ai-image-generator/lib/autoload.php/wp-content/plugins/ai-image-generator/includes/class-ai-wp-cgntvdnmc.php

HTML / DOM Fingerprints

CSS Classes
ai-wp-cgntvdnmc-main-app
Data Attributes
id="ai-wp-cgntvdnmc-main-app"
JS Globals
aiwpcgntvdnmc_fs
REST Endpoints
/wp-json/ai-wp-cgntvdnmc/v1/image-generator/generate-image/wp-json/ai-wp-cgntvdnmc/v1/image-generator/get-images/wp-json/ai-wp-cgntvdnmc/v1/image-generator/delete-image/wp-json/ai-wp-cgntvdnmc/v1/image-generator/get-image/wp-json/ai-wp-cgntvdnmc/v1/image-generator/generate-image-variations/wp-json/ai-wp-cgntvdnmc/v1/image-generator/get-variations/wp-json/ai-wp-cgntvdnmc/v1/image-generator/delete-variation/wp-json/ai-wp-cgntvdnmc/v1/settings/set-api-key/wp-json/ai-wp-cgntvdnmc/v1/settings/get-api-key/wp-json/ai-wp-cgntvdnmc/v1/settings/set-image-variations-settings/wp-json/ai-wp-cgntvdnmc/v1/settings/get-image-variations-settings/wp-json/ai-wp-cgntvdnmc/v1/settings/set-image-generation-settings/wp-json/ai-wp-cgntvdnmc/v1/settings/get-image-generation-settings/wp-json/ai-wp-cgntvdnmc/v1/settings/set-image-size-settings/wp-json/ai-wp-cgntvdnmc/v1/settings/get-image-size-settings/wp-json/ai-wp-cgntvdnmc/v1/settings/set-image-prompt-settings/wp-json/ai-wp-cgntvdnmc/v1/settings/get-image-prompt-settings
FAQ

Frequently Asked Questions about AI Image Generator – Easy image creation with AI