
Archivarix External Images Importer Security & Risk Analysis
wordpress.org/plugins/archivarix-external-images-importerImport external images in posts and pages from external sources or Web Archive if original sources are not available anymore.
Is Archivarix External Images Importer Safe to Use in 2026?
Generally Safe
Score 100/100Archivarix External Images Importer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'archivarix-external-images-importer' v2.0.3 exhibits a generally strong security posture based on the provided static analysis. The complete absence of unprotected AJAX handlers, REST API routes, shortcodes, and cron events significantly minimizes the potential attack surface. Furthermore, the adherence to prepared statements for all SQL queries and a high percentage of properly escaped output are excellent indicators of secure coding practices. The presence of nonce and capability checks on the vast majority of entry points further reinforces this positive assessment.
Despite the overall good practices, the taint analysis revealed one flow with unsanitized paths, flagged as high severity. This is a notable concern and indicates a potential pathway for malicious input to be processed in an insecure manner, even though it's not categorized as critical. The plugin's vulnerability history, showing no recorded CVEs, suggests a track record of security. However, the single high-severity taint flow warrants careful investigation and remediation to maintain this clean record.
In conclusion, 'archivarix-external-images-importer' v2.0.3 demonstrates a solid commitment to security through its diligent implementation of authentication, authorization, and data handling mechanisms. The primary area for improvement lies in addressing the identified high-severity taint flow, which, if left unaddressed, could introduce a significant risk. The lack of historical vulnerabilities is a positive sign, but proactive mitigation of the current taint flow is crucial for long-term security.
Key Concerns
- High severity taint flow with unsanitized path
Archivarix External Images Importer Security Vulnerabilities
Archivarix External Images Importer Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Archivarix External Images Importer Attack Surface
AJAX Handlers 9
WordPress Hooks 6
Maintenance & Trust
Archivarix External Images Importer Maintenance & Trust
Maintenance Signals
Community Trust
Archivarix External Images Importer Alternatives
Smart Auto Upload Images – Import External Images
smart-auto-upload-images
Import external images automatically on save. Adds to media library and updates URLs. No manual downloads. Works with any post type.
GL Import External Images
gl-import-external-images
Import and insert images to WordPress Media Library from external URLs.
Archiveo – Importer for the Wayback Machine
archiveo-importer-wayback
Import archived pages from the Wayback Machine into WordPress as editable drafts.
Replace External Images
replace-external-images
Easily import externally hosted images found in post content into your media library and replace them with local copies.
WP Image Importer
wp-image-importer
WP Image Importer plugin allows you to easily insert image into your wordpress post from facebook, flickr and pixabay
Archivarix External Images Importer Developer Profile
1 plugin · 2K total installs
How We Detect Archivarix External Images Importer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/archivarix-external-images-importer/assets/css/admin.css/wp-content/plugins/archivarix-external-images-importer/assets/js/admin.js/wp-content/plugins/archivarix-external-images-importer/assets/js/admin.jsarchivarix-external-images-importer/assets/css/admin.css?ver=archivarix-external-images-importer/assets/js/admin.js?ver=HTML / DOM Fingerprints
aeii_params/wp-json/aeii/v1/scan/wp-json/aeii/v1/process-image/wp-json/aeii/v1/get-logs/wp-json/aeii/v1/queue-status/wp-json/aeii/v1/start-background/wp-json/aeii/v1/stop-background