
B7 Random Images Security & Risk Analysis
wordpress.org/plugins/b7-random-imagesDisplay random images from your media library on any post or page using a simple shortcode.
Is B7 Random Images Safe to Use in 2026?
Generally Safe
Score 92/100B7 Random Images has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The b7-random-images plugin version 1.0.0 exhibits a strong security posture based on the provided static analysis. The code adheres to several best practices, including the absence of dangerous functions, 100% usage of prepared statements for SQL queries, and proper output escaping. Crucially, there are no observed taint flows, indicating that user-supplied data is not being processed in a way that could lead to vulnerabilities like code injection or path traversal. The plugin also has no history of known vulnerabilities, which is a positive sign of developer diligence.
Despite the overall positive assessment, there are a few areas that warrant attention. The plugin utilizes a shortcode as its sole entry point without any apparent authentication or capability checks. While the static analysis did not detect any unprotected entry points, the presence of a shortcode without explicit checks could theoretically be a vector if it interacts with user-supplied data in a sensitive way, though the taint analysis suggests this is not currently the case. The absence of nonce checks, while not directly flagged as a vulnerability in this specific analysis, is a general security practice that would typically be implemented for actions triggered by shortcodes that might modify data or perform other state-changing operations.
In conclusion, b7-random-images v1.0.0 appears to be a secure plugin with good coding practices. The lack of known vulnerabilities and the absence of critical code signals are reassuring. However, the reliance on a shortcode as an entry point without explicit authentication or nonce checks represents a minor area for potential improvement, even if no immediate risks are evident from the provided data.
Key Concerns
- Shortcode without explicit auth/capability checks
- Missing nonce checks
B7 Random Images Security Vulnerabilities
B7 Random Images Release Timeline
B7 Random Images Code Analysis
Output Escaping
B7 Random Images Attack Surface
Shortcodes 1
Maintenance & Trust
B7 Random Images Maintenance & Trust
Maintenance Signals
Community Trust
B7 Random Images Alternatives
Random Post Thumbnail
random-post-thumbnail
Easy way to add random featured images to your posts.
Random image gallery with pretty photo zoom
random-image-gallery-with-pretty-photo-zoom
This plugin which allows you to simply and easily show random image anywhere in your template files or using widgets with onclick pretty photo zoom.
Image Roulette – Random Image Block
image-roulette
Display a random image from your Media Library galleries with full accessibility support. Spin the wheel of images!
Play Random Image Plugin
play-random-image
Play Random Image is a responsive random image generator plugin for WordPress with which you could able to show your users some random information by …
Shuffle Random Image Gallery
shuffle-random-image-gallery
The Shuffle Random Image Gallery plugin dynamically displays random images from specified posts or media IDs, using shortcodes.
B7 Random Images Developer Profile
5 plugins · 240 total installs
How We Detect B7 Random Images
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/b7-random-images/style.css/wp-content/plugins/b7-random-images/script.js/wp-content/plugins/b7-random-images/script.jsb7-random-images/style.css?ver=b7-random-images/script.js?ver=HTML / DOM Fingerprints
b7-random-imagesrandom-image-item<div class="b7-random-images" style="display: flex; flex-wrap: wrap; justify-content: center; gap: 10px;"><div class="random-image-item" style="flex: 1 1 auto; max-width: 100%;"><div style="max-width: 100%; margin: 0 auto;">