Cloud Image Gallery Security & Risk Analysis

wordpress.org/plugins/cloud-image-gallery

Cloud image gallery is nice image gallery plugin.it is full responsive. it has 9 themes , Options page, custom css and more.

10 active installs v1.0.1 PHP + WP 1.0.1+ Updated Unknown
galleryimage-gallerypop-up-image-galleryresponsive-image-gallery
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Cloud Image Gallery Safe to Use in 2026?

Generally Safe

Score 100/100

Cloud Image Gallery has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The cloud-image-gallery plugin v1.0.1 presents a mixed security posture. On the positive side, it demonstrates strong practices in its handling of SQL queries, exclusively using prepared statements, and it has no recorded vulnerabilities or CVEs, suggesting a history of secure development. The absence of file operations, external HTTP requests, and a taint analysis with no unsanitized flows are also favorable indicators. However, significant concerns arise from the complete lack of output escaping for all identified outputs. This means that any data displayed by the plugin could be vulnerable to cross-site scripting (XSS) attacks if user-controlled input is not meticulously handled elsewhere. Additionally, the absence of nonce and capability checks across all entry points, including the shortcode, is a critical weakness. This allows any user, regardless of their role or permissions, to trigger the plugin's functionality, potentially leading to unauthorized actions or information disclosure. The limited attack surface is a saving grace, but the lack of fundamental security controls in its execution is a serious flaw.

Key Concerns

  • 0% output escaping
  • 0 nonce checks
  • 0 capability checks
Vulnerabilities
None known

Cloud Image Gallery Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Cloud Image Gallery Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
14
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped14 total outputs
Attack Surface

Cloud Image Gallery Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[cigallery] cloudimagegallery.php:44
WordPress Hooks 6
actionwp_enqueue_scriptscloudimagegallery.php:43
actionadmin_menucloudimagegallery.php:119
actionadmin_initcloudimagegallery.php:126
actionadmin_enqueue_scriptsfunctions.php:7
actioninitfunctions.php:9
actionwp_headfunctions.php:62
Maintenance & Trust

Cloud Image Gallery Maintenance & Trust

Maintenance Signals

WordPress version tested4.2.39
Last updatedUnknown
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings3
Active installs10
Developer Profile

Cloud Image Gallery Developer Profile

Md Rukon Shekh

2 plugins · 110 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Cloud Image Gallery

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cloud-image-gallery/css/flat-ui.css/wp-content/plugins/cloud-image-gallery/css/photopile.css/wp-content/plugins/cloud-image-gallery/css/style.css/wp-content/plugins/cloud-image-gallery/js/jquery.ui.touch-punch.min.js/wp-content/plugins/cloud-image-gallery/js/photopile.js
Script Paths
/wp-content/plugins/cloud-image-gallery/js/jquery.ui.touch-punch.min.js/wp-content/plugins/cloud-image-gallery/js/photopile.js

HTML / DOM Fingerprints

CSS Classes
photopile-wrapperphotopilecg_wrapercg_headingcg_form_box
Data Attributes
id="cg_thumbBorderColor"class="showColorPicker"
JS Globals
cigalleryJS
Shortcode Output
<div class="photopile-wrapper"><ul class="photopile"><li><a href=""><img src="" alt="
FAQ

Frequently Asked Questions about Cloud Image Gallery