Ely – WordPress Gutenberg Modern Gallery Security & Risk Analysis

wordpress.org/plugins/ely-gallery

Create awesome, elegant and perfect galleries easily in wordpress. Ely Gallery is a super fun and easy to use plugin. you can create your galleries fr …

0 active installs v3.0.4 PHP 5.4+ WP + Updated Dec 16, 2019
gallerygallery-plugingutenberggutenberg-gallerymasonry
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Ely – WordPress Gutenberg Modern Gallery Safe to Use in 2026?

Generally Safe

Score 85/100

Ely – WordPress Gutenberg Modern Gallery has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The 'ely-gallery' plugin version 3.0.4 exhibits a strong security posture based on the provided static analysis. The absence of any detected entry points like AJAX handlers, REST API routes, shortcodes, or cron events, and crucially, the lack of any unprotected entry points, indicates a minimal attack surface. Furthermore, the code signals show no dangerous functions, all SQL queries are properly prepared, and there are no file operations or external HTTP requests. This suggests a generally well-written and secure codebase.

However, a significant concern arises from the output escaping. With 2 total outputs and 0% properly escaped, there is a high risk of Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data that is displayed back to the user without proper sanitization or escaping could be exploited. The lack of nonce and capability checks, while not directly evidenced as a vulnerability due to the limited attack surface, represents a missed opportunity for layered security, especially if new entry points were to be introduced in the future.

The vulnerability history, showing zero recorded CVEs of any severity, is a positive indicator. It suggests that the plugin has historically been stable and free from known security flaws. This, combined with the current static analysis findings (excluding the output escaping), paints a picture of a plugin that has likely been developed with security in mind. The primary actionable item is to address the unescaped output to mitigate the XSS risk.

Key Concerns

  • Output not properly escaped
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Ely – WordPress Gutenberg Modern Gallery Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Ely – WordPress Gutenberg Modern Gallery Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped2 total outputs
Attack Surface

Ely – WordPress Gutenberg Modern Gallery Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionplugins_loadedplugin.php:38
actionafter_setup_themeplugin.php:39
actionenqueue_block_assetsplugin.php:40
actionenqueue_block_editor_assetsplugin.php:41
actionadmin_noticesplugin.php:42
actionadmin_initplugin.php:43
actioninitsrc\blocks\index.php:14
Maintenance & Trust

Ely – WordPress Gutenberg Modern Gallery Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedDec 16, 2019
PHP min version5.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Ely – WordPress Gutenberg Modern Gallery Developer Profile

Sabri

3 plugins · 90 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Ely – WordPress Gutenberg Modern Gallery

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ely-gallery/dist/slick.css/wp-content/plugins/ely-gallery/dist/style.build.css/wp-content/plugins/ely-gallery/dist/slick.min.js/wp-content/plugins/ely-gallery/dist/frontend.min.js/wp-content/plugins/ely-gallery/dist/blocks.build.js/wp-content/plugins/ely-gallery/dist/editor.build.css
Script Paths
/wp-content/plugins/ely-gallery/dist/slick.min.js/wp-content/plugins/ely-gallery/dist/frontend.min.js/wp-content/plugins/ely-gallery/dist/blocks.build.js
Version Parameters
/ely-gallery/dist/slick.css?ver=/ely-gallery/dist/style.build.css?ver=/ely-gallery/dist/slick.min.js?ver=/ely-gallery/dist/frontend.min.js?ver=/ely-gallery/dist/blocks.build.js?ver=/ely-gallery/dist/editor.build.css?ver=

HTML / DOM Fingerprints

JS Globals
ely_objELY_PARAMS
FAQ

Frequently Asked Questions about Ely – WordPress Gutenberg Modern Gallery