Cute MediaInfo Security & Risk Analysis

wordpress.org/plugins/cute-mediainfo

Customizable plugin to display MediaInfo for humans.

0 active installs v1.0.3 PHP 5.6+ WP 4.6+ Updated Mar 2, 2022
mediainfovideo-infovideo-links
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Cute MediaInfo Safe to Use in 2026?

Generally Safe

Score 85/100

Cute MediaInfo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The "cute-mediainfo" plugin, version 1.0.3, exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin boasts a clean slate with no known CVEs, indicating a commitment to security or a lack of targeted exploitation. The static analysis reveals a well-protected attack surface, with all identified entry points (AJAX handlers, shortcodes) appearing to have proper authentication and capability checks, and no direct REST API routes are exposed. The code also demonstrates good practices in SQL query handling, exclusively using prepared statements, and a high percentage of output escaping is observed.

However, there are minor areas for improvement. The presence of file operations, while not inherently a vulnerability, warrants careful review to ensure they are handled securely and do not introduce risks of arbitrary file access or modification. Furthermore, while the taint analysis shows no immediate critical or high-severity issues, the absence of flows analyzed (0 total) means this is an area where deeper inspection might be beneficial if further concerns arise. Overall, this plugin appears to be developed with security in mind, but continuous vigilance and review of file operation usage would enhance its resilience.

Key Concerns

  • File operations present
  • Taint flow analysis incomplete
Vulnerabilities
None known

Cute MediaInfo Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Cute MediaInfo Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
24
332 escaped
Nonce Checks
8
Capability Checks
8
File Operations
3
External Requests
0
Bundled Libraries
0

Output Escaping

93% escaped356 total outputs
Attack Surface

Cute MediaInfo Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 2

authwp_ajax_extract_cute_mediainfo_dataincludes\cute-mediainfo\class-cutemi-post-type-mediainfo.php:51
authwp_ajax_cutemi_mediainfo_extractincludes\cute-mediainfo\class-cutemi-post-type-mediainfo.php:53

Shortcodes 1

[mediainfo] includes\cute-mediainfo\class-cutemi-post-type-mediainfo.php:70
WordPress Hooks 74
actionadmin_noticesadmin\admin-init.php:81
actionadmin_initadmin\admin-init.php:87
actionadmin_initadmin\class-cute-mediainfo-settings.php:21
actionadmin_menuadmin\class-cute-mediainfo-settings.php:22
filtercutemi_settings_sectionsadmin\class-cute-mediainfo-settings.php:127
filtercutemi_settings_array_can_remove_itemadmin\class-cute-mediainfo-settings.php:298
actioncutemi_settings_array_end_itemadmin\class-cute-mediainfo-settings.php:299
filtercutemi_settings_field_render_argsadmin\class-cute-mediainfo-settings.php:300
filtercutemi_settings_pre_printadmin\class-cutemi-settings-credentials.php:8
filtercutemi_settings_pre_printadmin\class-cutemi-settings-wizards.php:12
actionadmin_enqueue_scriptsadmin\customizer\class-cutemi-customize-settings.php:154
filterthe_postsadmin\customizer\class-cutemi-fake-pages-preview.php:12
filtertemplate_includeadmin\customizer\class-cutemi-fake-pages-preview.php:51
filterthe_contentadmin\customizer\class-cutemi-fake-pages-preview.php:52
actionadmin_enqueue_scriptsadmin\includes\class-cutemi-settings-api.php:66
actionadmin_initadmin\includes\class-cutemi-taxonomy-customs-metas.php:59
filteruser_has_capadmin\includes\class-cutemi-taxonomy-customs-metas.php:157
filtermap_meta_capadmin\includes\class-cutemi-taxonomy-customs-metas.php:158
actionadmin_enqueue_scriptsadmin\includes\class-cutemi-taxonomy-customs-metas.php:165
actionadmin_enqueue_scriptsadmin\includes\class-cutemi-taxonomy-customs-metas.php:166
filterpre_get_termsadmin\includes\class-cutemi-taxonomy-customs-metas.php:175
actionadmin_noticesadmin\install\class-cutemi-update.php:120
actionplugins_loadedcute-mediainfo.php:34
actioncustomize_registercute-mediainfo.php:113
filterquery_varscute-mediainfo.php:126
actionwp_enqueue_scriptscute-mediainfo.php:158
actionplugins_loadedicon-packs\class-cutemi-base-icon-pack.php:20
filtercutemi_available_icon_packsicon-packs\class-cutemi-base-icon-pack.php:30
filterblock_type_metadata_settingsincludes\block\block.php:8
actioninitincludes\block\block.php:29
actionrest_api_initincludes\block\block.php:55
actionenqueue_block_editor_assetsincludes\block\block.php:226
actioninitincludes\class-cutemi-custom-post-type.php:37
actioninitincludes\class-cutemi-custom-post-type.php:39
actioninitincludes\class-cutemi-custom-post-type.php:41
actionadd_meta_boxesincludes\class-cutemi-custom-post-type.php:42
actionedit_form_topincludes\class-cutemi-custom-post-type.php:44
filterpost_type_linkincludes\class-cutemi-custom-post-type.php:45
actionadmin_enqueue_scriptsincludes\class-cutemi-custom-post-type.php:52
filtercutemi_get_data_groups_default_configincludes\class-cutemi-profile-summary.php:10
filtercutemi_get_default_config_data_fieldsincludes\class-cutemi-profile-summary.php:11
filtercutemi_get_default_config_stylesincludes\class-cutemi-profile-summary.php:12
actioncutemi_activatedincludes\class-cutemi-template-styles.php:36
actioncutemi_refresh_cssincludes\class-cutemi-template-styles.php:37
filterwp_redirectincludes\class-cutemi-template-styles.php:49
actioncustomize_save_afterincludes\class-cutemi-template-styles.php:50
actioncustomize_saveincludes\class-cutemi-template-styles.php:53
filtercustomize_save_responseincludes\class-cutemi-template-styles.php:55
actionupdate_option_cutemi_force_inline_cssincludes\class-cutemi-template-styles.php:57
actionupdate_option_cutemi_relaxed_ownershipincludes\class-cutemi-template-styles.php:58
actionwp_headincludes\class-cutemi-template-styles.php:61
actionadmin_headincludes\class-cutemi-template-styles.php:62
actioncutemi_enqueue_cssincludes\class-cutemi-template-styles.php:64
actionwp_enqueue_scriptsincludes\class-cutemi-template-styles.php:65
filterstyle_loader_tagincludes\class-cutemi-template-styles.php:67
filterget_the_excerptincludes\cute-mediainfo\class-cutemi-post-type-mediainfo.php:48
filterthe_contentincludes\cute-mediainfo\class-cutemi-post-type-mediainfo.php:49
actioninitincludes\cute-mediainfo\taxonomies.php:561
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-amazon-data-extract.php:10
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-clicknupload-data-extract.php:12
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-dailyuploads-data-extract.php:12
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-ddownload-data-extract.php:12
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-dropapk-data-extract.php:12
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-fastclick-data-extract.php:12
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-fastdown-data-extract.php:14
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-hexupload-data-extract.php:12
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-katfile-data-extract.php:12
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-mega-data-extract.php:14
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-onedrive-data-extract.php:11
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-pcloud-data-extract.php:12
filtercutemi_link_data_extract_postincludes\links\link-sources\class-cutemi-usersdrive-data-extract.php:12
filtercutemi_mediainfo_pre_stream_searchincludes\mediainfo\class-cutemi-mediainfo-filters.php:10
filtercutemi_mediainfo_end_stream_searchincludes\mediainfo\class-cutemi-mediainfo-filters.php:11
filtercutemi_mediainfo_end_streams_searchincludes\mediainfo\class-cutemi-mediainfo-filters.php:13
Maintenance & Trust

Cute MediaInfo Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedMar 2, 2022
PHP min version5.6
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Alternatives

Cute MediaInfo Alternatives

No alternatives data available yet.

Developer Profile

Cute MediaInfo Developer Profile

Mauricio Galetto

2 plugins · 10 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Cute MediaInfo

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cute-mediainfo/assets/js/svg-inject.min.js/wp-content/plugins/cute-mediainfo/assets/alpha-color-picker.js/wp-content/plugins/cute-mediainfo/assets/alpha-color-picker.css
Script Paths
/wp-content/plugins/cute-mediainfo/assets/js/svg-inject.min.js/wp-content/plugins/cute-mediainfo/assets/alpha-color-picker.js
Version Parameters
cute-mediainfo/style.css?ver=cute-mediainfo/assets/js/svg-inject.min.js?ver=1.0.3cute-mediainfo/assets/alpha-color-picker.js?ver=1.0.3cute-mediainfo/assets/alpha-color-picker.css?ver=1.0.3

HTML / DOM Fingerprints

CSS Classes
cutemi-alpha-color-control
Data Attributes
data-show-opacitydata-palettedata-default-color
JS Globals
CUTEMI_Alpha_Color_Control
FAQ

Frequently Asked Questions about Cute MediaInfo