Awesome Wp Mixitup Portfolio Security & Risk Analysis

wordpress.org/plugins/awesome-wp-mixitup-portfolio

Awesome Mixitup Portfolio allows you to create a very modern and outstanding portfolio which filters instantly using jQuery animations.

200 active installs v1.0 PHP + WP 5.0.1+ Updated Jan 7, 2024
awesome-photo-galleyawesome-wp-mixitup-portfolioimage-galleryphotowidget-photo-gallery
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Awesome Wp Mixitup Portfolio Safe to Use in 2026?

Generally Safe

Score 85/100

Awesome Wp Mixitup Portfolio has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "awesome-wp-mixitup-portfolio" plugin version 1.0 exhibits a mixed security posture. On the positive side, it has no recorded vulnerabilities, no dangerous functions, no file operations, no external HTTP requests, and all SQL queries are prepared. This indicates a potentially well-written plugin in certain areas. However, significant concerns arise from the static analysis. The plugin's attack surface is minimal with only one shortcode, and crucially, none of the identified entry points have any authentication or capability checks. Furthermore, 100% of the observed output is not properly escaped, presenting a clear risk of Cross-Site Scripting (XSS) vulnerabilities. The lack of taint analysis results is not necessarily positive; it could simply mean the analysis tools were not configured or capable of finding flows in this specific code. The absence of any recorded vulnerabilities to date is encouraging but should not be relied upon given the identified weaknesses in output escaping and lack of authorization checks on its sole entry point. A real-world attack could exploit these to inject malicious scripts or manipulate content.

In conclusion, while the plugin avoids common pitfalls like unpatched CVEs or raw SQL queries, the complete lack of output escaping and authorization on its entry points represents a critical security oversight. The plugin's strengths in database interaction are overshadowed by its susceptibility to XSS and unauthorized access through its shortcode. Immediate attention is required to address these identified weaknesses to prevent potential security incidents.

Key Concerns

  • Unescaped output
  • Entry point without auth/capability checks
Vulnerabilities
None known

Awesome Wp Mixitup Portfolio Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Awesome Wp Mixitup Portfolio Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped4 total outputs
Attack Surface

Awesome Wp Mixitup Portfolio Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[advanced-portfolio] Awesome-Wp-Mixitup-Portfolio.php:20
WordPress Hooks 2
actionwp_enqueue_scriptsAwesome-Wp-Mixitup-Portfolio.php:18
actioninitAwesome-Wp-Mixitup-Portfolio.php:19
Maintenance & Trust

Awesome Wp Mixitup Portfolio Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedJan 7, 2024
PHP min version
Downloads7K

Community Trust

Rating100/100
Number of ratings2
Active installs200
Developer Profile

Awesome Wp Mixitup Portfolio Developer Profile

nayon46

12 plugins · 820 total installs

84
trust score
Avg Security Score
86/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Awesome Wp Mixitup Portfolio

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/awesome-wp-mixitup-portfolio/css/portfolio.css/wp-content/plugins/awesome-wp-mixitup-portfolio/js/jquery.mixitup.min.js/wp-content/plugins/awesome-wp-mixitup-portfolio/js/portfolio.js
Script Paths
/wp-content/plugins/awesome-wp-mixitup-portfolio/js/jquery.mixitup.min.js/wp-content/plugins/awesome-wp-mixitup-portfolio/js/portfolio.js
Version Parameters
awesome-wp-mixitup-portfolio/css/portfolio.css?ver=awesome-wp-mixitup-portfolio/js/jquery.mixitup.min.js?ver=awesome-wp-mixitup-portfolio/js/portfolio.js?ver=

HTML / DOM Fingerprints

CSS Classes
mixmixiareamixifilterfilterContainerrrcontainerrgridgird-area+5 more
Data Attributes
data-filter
Shortcode Output
<div class="blog_heading"><h2 class="blog_title">[<span class="main_title_content">Portfolio</span>]<span class="title_underline"><i class="fa fa-cog"></i></span>
FAQ

Frequently Asked Questions about Awesome Wp Mixitup Portfolio