
Classic Image Button Security & Risk Analysis
wordpress.org/plugins/classic-image-buttonRestore the classic image button in the post and page text editor editor of WordPress
Is Classic Image Button Safe to Use in 2026?
Generally Safe
Score 85/100Classic Image Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "classic-image-button" v1.0.2 plugin exhibits a mixed security posture. On the positive side, the plugin has no recorded vulnerabilities (CVEs) and demonstrates good practices by using prepared statements for all its SQL queries and performing no external HTTP requests or file operations. The lack of cron events and shortcodes also contributes to a reduced attack surface.
However, significant concerns arise from the static code analysis. A notable weakness is the complete absence of output escaping for all identified output points (2 total). This means that any dynamic content rendered by the plugin is susceptible to cross-site scripting (XSS) vulnerabilities, especially if user-supplied data is involved. Furthermore, the taint analysis revealed two flows with unsanitized paths, which, while not classified as critical or high severity in this report, indicate potential for security issues if these paths can be manipulated by an attacker. The absence of nonce and capability checks also means that if any entry points were to be discovered, they would likely be unprotected.
Key Concerns
- Unescaped output for all identified outputs
- Taint analysis shows unsanitized paths
- No nonce checks present
- No capability checks present
Classic Image Button Security Vulnerabilities
Classic Image Button Code Analysis
Output Escaping
Data Flow Analysis
Classic Image Button Attack Surface
WordPress Hooks 5
Maintenance & Trust
Classic Image Button Maintenance & Trust
Maintenance Signals
Community Trust
Classic Image Button Alternatives
Share This Image
share-this-image
Image sharing plugin for WordPress. Share exactly needed images with fully customizable content.
Post Categories Gallery
post-category-gallery
Post Category Gallery displays selectable categories of posts horizontally and below the featured images of selected posts are displayed.
AddToAny Share Buttons
add-to-any
Share buttons for WordPress including the AddToAny button, Facebook, Bluesky, Mastodon, WhatsApp, Pinterest, Reddit, many more, and follow icons too.
AddQuicktag
addquicktag
This plugin makes it easy to add Quicktags to the html - and visual-editor.
Social Sharing Plugin – Sassy Social Share
sassy-social-share
The Simplest and Optimized Social Share buttons. Facebook, X, Reddit, Pinterest, Whatsapp, Grok, ChatGPT, Gab, Gettr and over 100 more.
Classic Image Button Developer Profile
7 plugins · 10K total installs
How We Detect Classic Image Button
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
classic_image_button_settingsname="Settings[disable_inline_styling]"