
AVIF Local Support Security & Risk Analysis
wordpress.org/plugins/avif-local-supportHigh-quality AVIF image conversion for WordPress — local, quality-first.
Is AVIF Local Support Safe to Use in 2026?
Generally Safe
Score 100/100AVIF Local Support has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'avif-local-support' plugin version 0.6.3 presents a mixed security posture. On the positive side, there are no known historical vulnerabilities (CVEs) and the taint analysis shows no critical or high severity flows, indicating a general lack of easily exploitable injection or data leakage issues. The plugin also demonstrates good practices with a high percentage of SQL queries using prepared statements and a decent rate of output escaping. However, the presence of dangerous functions like 'exec', 'proc_open', and 'shell_exec' is a significant concern. While the current static analysis may not have identified direct exploitable paths for these functions, their mere presence in the code greatly increases the potential attack surface. Furthermore, the limited number of nonce and capability checks, coupled with two cron events, could potentially become entry points for privilege escalation or unauthorized execution if not carefully secured. The lack of external HTTP requests is a positive note, reducing risks associated with third-party integrations.
Key Concerns
- Use of dangerous functions (exec, proc_open, shell_exec)
- Limited nonce checks
- Limited capability checks
- SQL queries without prepared statements
- Outputs not properly escaped
AVIF Local Support Security Vulnerabilities
AVIF Local Support Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
AVIF Local Support Attack Surface
WordPress Hooks 20
Scheduled Events 2
Maintenance & Trust
AVIF Local Support Maintenance & Trust
Maintenance Signals
Community Trust
AVIF Local Support Alternatives
ImgSmaller – Optimize Images | Compress Images | Convert WebP & AVIF
imgsmaller
Compress and optimize your WordPress media library images using the ImgSmaller API with automated backups and restore controls.
Image Optimizer – Optimize Images and Convert to WebP or AVIF
image-optimization
Automatically resize, optimize, and convert images to WebP and AVIF. Compress images in bulk or on upload to boost your WordPress site performance.
Imagify Image Optimization – Optimize Images | Compress Images | Convert WebP | Convert AVIF
imagify
Optimize images in 1-click: compress images, convert to WebP & AVIF, resize, and boost your site with the easiest WordPress image optimization plugin!
Modern Image Formats
webp-uploads
Converts images to more modern formats such as WebP or AVIF during upload.
Image Optimizer by 10web – Image Optimizer and Compression plugin
image-optimizer-wd
Image Optimizer by 10Web optimizes and preserves image quality. Improve your website speed, bounce rate, and SEO with Image Optimizer.
AVIF Local Support Developer Profile
2 plugins · 20 total installs
How We Detect AVIF Local Support
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/avif-local-support/assets/admin.css/wp-content/plugins/avif-local-support/assets/admin.js/wp-content/plugins/avif-local-support/assets/admin.jsavif-local-support/assets/admin.css?ver=avif-local-support/assets/admin.js?ver=HTML / DOM Fingerprints
window.aviflosu_admin_params/wp-json/aviflosu/v1/upload_test/wp-json/aviflosu/v1/reset_defaults/wp-json/aviflosu/v1/get_status/wp-json/aviflosu/v1/delete_avifs/wp-json/aviflosu/v1/delete_lqips/wp-json/aviflosu/v1/clear_logs/wp-json/aviflosu/v1/run_schedule/wp-json/aviflosu/v1/stop_schedule