Easy Symbols & Icons Security & Risk Analysis
wordpress.org/plugins/easy-symbols-iconsA simple WordPress plugin to manage and use icon fonts via a block editor with easy font uploads and selection.
Is Easy Symbols & Icons Safe to Use in 2026?
Generally Safe
Score 100/100Easy Symbols & Icons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "easy-symbols-icons" v1.0.0 plugin exhibits a concerning security posture due to a significant number of unprotected entry points into its codebase. While the plugin avoids the use of dangerous functions and largely employs prepared statements for SQL queries, the lack of authentication and capability checks on several AJAX handlers and REST API routes presents a substantial attack surface. This means that unauthorized users could potentially interact with or manipulate these endpoints, leading to unintended consequences. The plugin's static analysis also indicates a generally good practice in output escaping, and importantly, there is no historical vulnerability data, suggesting a proactive approach to security or perhaps limited exposure. However, the presence of unprotected entry points, even without critical taint flows or known CVEs, represents a clear and present risk that needs to be addressed to improve the overall security of sites using this plugin. The plugin's strengths lie in its internal code hygiene regarding SQL and output, but these are overshadowed by the external exposure due to the lack of proper authorization mechanisms.
Key Concerns
- Unprotected AJAX handler
- Unprotected REST API route
- Unprotected REST API route
- No capability checks found
Easy Symbols & Icons Security Vulnerabilities
Easy Symbols & Icons Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Easy Symbols & Icons Attack Surface
AJAX Handlers 1
REST API Routes 2
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
Easy Symbols & Icons Maintenance & Trust
Maintenance Signals
Community Trust
Easy Symbols & Icons Alternatives
Skyboot Custom Icons for Elementor
skyboot-custom-icons-for-elementor
Skyboot Custom Icons for Elementor expands your Elementor icon library with 14,300+ icons from 15 packs, fully customizable in Elementor's editor.
Custom Icons for Elementor
custom-icons-for-elementor
Add custom icon fonts to the built in Elementor icon controls
Icons Font Loader – Load Web Fonts and Icon Libraries
icons-font-loader
Load essential Flaticon webfonts into your WordPress site. Use icons anywhere on your site with simple integration, ensuring fast performance.
Dicode Icons Pack
dicode-icons-pack
Dicode Icons Pack by Designinvento provides ability to add custom font icons to your website from all time top icon libraries.
Wp Fontawesome by Creareblogs.net
wp-cb-fontawesome
Wp Cb FontAwesome is a plugin to migrate from [FontAwesome](http://www.fontawesome.com "FontAwesome") 4 to 5 in the easiest way possible.
Easy Symbols & Icons Developer Profile
3 plugins · 200 total installs
How We Detect Easy Symbols & Icons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easy-symbols-icons/assets/eics-icons/eics-icons.css/wp-content/plugins/easy-symbols-icons/assets/eics-icons/eics-icons.js/wp-content/plugins/easy-symbols-icons/assets/eics-icons/eics-icons.jsHTML / DOM Fingerprints
eics-icondata-icon-sourceEasySymbolsIconseics_icon_data/wp-json/easy-symbols-icons/v1/icons/wp-json/easy-symbols-icons/v1/fonts/wp-json/easy-symbols-icons/v1/icon_usage[easy_icons][easy_icon]