
AWSOM Pixgallery Security & Risk Analysis
wordpress.org/plugins/awsom-pixgalleryAWSOM Pixgallery is an Image Gallery/Archive plugin for Wordpress designed to make it easier for Artists or Webcomic creators to set up a portfolio of …
Is AWSOM Pixgallery Safe to Use in 2026?
Generally Safe
Score 100/100AWSOM Pixgallery has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "awsom-pixgallery" v4.8.0 plugin presents a mixed security picture. On one hand, the static analysis indicates a very limited attack surface with no exposed AJAX handlers, REST API routes, shortcodes, or cron events that lack proper authentication or permission checks. This suggests a good understanding of secure entry point management.
However, significant concerns arise from the code signals and taint analysis. The presence of 7 instances of the dangerous `create_function` is a major red flag, as this function can be a source of code injection vulnerabilities if not handled with extreme care. Furthermore, only a small percentage (1%) of SQL queries use prepared statements, and a similarly low 3% of outputs are properly escaped. This indicates a high risk of SQL injection and cross-site scripting (XSS) vulnerabilities, respectively. The taint analysis, while not reporting critical or high severity flows, did identify 3 flows with unsanitized paths, hinting at potential issues with file handling or path traversal that could be exploited.
The vulnerability history is notably clean, with no recorded CVEs. This might suggest that the plugin has historically been relatively secure or that vulnerabilities have not been widely discovered or reported. However, the presence of the aforementioned code quality issues means that the absence of past vulnerabilities should not be seen as a guarantee of future security. The plugin exhibits strengths in attack surface limitation but weaknesses in secure coding practices regarding SQL, output escaping, and the use of dangerous functions.
Key Concerns
- Dangerous function create_function usage
- Low percentage of prepared SQL statements
- Low percentage of properly escaped output
- Unsanitized paths in taint analysis
- Bundled outdated TinyMCE library
AWSOM Pixgallery Security Vulnerabilities
AWSOM Pixgallery Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
AWSOM Pixgallery Attack Surface
WordPress Hooks 15
Maintenance & Trust
AWSOM Pixgallery Maintenance & Trust
Maintenance Signals
Community Trust
AWSOM Pixgallery Alternatives
real.PostImages
real-postimages
Дополнительное поле записей (постов) для изображений. | English read below
Scissors and Watermark
scissors-watermark
Scissors and Watermark enhances WordPress' handling of images by introducing cropping, resizing, rotating, and watermarking functionality.
Posts from Images
posts-from-images
Makes a post for every image in your library and optionally sets it as the the post thumbnail, adds the image and/or gallery to the post body.
Nowy Widget for WordPress
nowy-widget
The Nowy Widget plugin allows you to create, manage, edit, and customize new Nowy app social content posts gallery layout.
Add From Server
add-from-server
Add From Server is designed to help ease the pain of bad web hosts, allowing you to upload files via FTP or SSH and later import them into WordPress.
AWSOM Pixgallery Developer Profile
2 plugins · 30 total installs
How We Detect AWSOM Pixgallery
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/awsom-pixgallery/css/pixgallery.css/wp-content/plugins/awsom-pixgallery/js/jquery-lightbox.js/wp-content/plugins/awsom-pixgallery/js/awsom_pixgallery.js/wp-content/plugins/awsom-pixgallery/js/jquery-lightbox.js/wp-content/plugins/awsom-pixgallery/js/awsom_pixgallery.jsawsom-pixgallery/css/pixgallery.css?ver=awsom-pixgallery/js/jquery-lightbox.js?ver=awsom-pixgallery/js/awsom_pixgallery.js?ver=HTML / DOM Fingerprints
awsom_pixgallery<!-- Mod added for AWSOM options --><!-- End Mod --><!-- Mod PixGallery -->data-lightbox-gallerydata-lightbox-titleawsom_pixgallery_optionsawsom_pixgallery_config[awsom_pixgallery]