
Delete Unscaled Images Security & Risk Analysis
wordpress.org/plugins/delete-unscaled-imagesDeletes original image files if they have been resized
Is Delete Unscaled Images Safe to Use in 2026?
Generally Safe
Score 92/100Delete Unscaled Images has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'delete-unscaled-images' v1.2.4 exhibits a very strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is excellent. Furthermore, the code signals indicate a robust approach to security, with no dangerous functions, all SQL queries using prepared statements, and the presence of nonce and capability checks. The clean taint analysis with zero unsanitized paths further reinforces this positive assessment.
While the overall security is commendable, there are minor areas for improvement. The 67% output escaping rate suggests that two out of three outputs are not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is involved in these outputs. Additionally, the presence of file operations, while not inherently dangerous, warrants careful consideration to ensure they are implemented securely and do not expose sensitive files or operations.
The plugin's vulnerability history is also a significant strength, with zero recorded CVEs and no past vulnerabilities. This suggests a history of secure development and maintenance. In conclusion, 'delete-unscaled-images' v1.2.4 appears to be a highly secure plugin, with its strengths far outweighing its minor potential weaknesses. The primary area of focus for improvement would be ensuring all output is properly escaped.
Key Concerns
- Outputs not properly escaped
Delete Unscaled Images Security Vulnerabilities
Delete Unscaled Images Code Analysis
Output Escaping
Delete Unscaled Images Attack Surface
WordPress Hooks 3
Maintenance & Trust
Delete Unscaled Images Maintenance & Trust
Maintenance Signals
Community Trust
Delete Unscaled Images Alternatives
QBank Connector
qbank-dam-connector
Gain access to all your files in QBank that you can publish directly from Wordpress without leaving their interface.
Image Photoroll Creator For Photographers
image-photoroll-creator-for-photographers
Plugin adds aditional buttons to media upload module allowing of faster images edit and add to post.
Additional Featured Images and Media Uploader Anywhere
additional-featured-images-and-media-uploader-anywhere
Add additional featured images to any post type and display using either a built in image gallery/slideshow shortcode or by using a single image short …
Imagify Image Optimization – Optimize Images | Compress Images | Convert WebP | Convert AVIF
imagify
Optimize images in 1-click: compress images, convert to WebP & AVIF, resize, and boost your site with the easiest WordPress image optimization plugin!
Smush Image Optimization – Optimize Images | Compress & Lazy Load Images | Convert WebP & AVIF | Image CDN
wp-smushit
Optimize and compress images with lossless and lossy compression, lazy load, WebP & AVIF conversion, and global image CDN.
Delete Unscaled Images Developer Profile
3 plugins · 1K total installs
How We Detect Delete Unscaled Images
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wrap