Enable All Font Uploads Security & Risk Analysis

wordpress.org/plugins/enable-all-font-uploads

Allows uploading restricted font files (WOFF, WOFF2, TTF, OTF) to WordPress media library.

200 active installs v1.0.0 PHP + WP 5.0+ Updated Oct 19, 2025
font-uploadotfttfwoffwoff2
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Enable All Font Uploads Safe to Use in 2026?

Generally Safe

Score 100/100

Enable All Font Uploads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "enable-all-font-uploads" plugin v1.0.0 exhibits a strong security posture based on the provided static analysis. There are no identified dangerous functions, external HTTP requests, or file operations. All SQL queries utilize prepared statements, and all outputs are properly escaped. The presence of a capability check, although only one is noted, is a positive indicator of security awareness in the code. Furthermore, the plugin has no recorded vulnerability history, including CVEs, which suggests a history of secure development and maintenance.

Vulnerabilities
None known

Enable All Font Uploads Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Enable All Font Uploads Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Enable All Font Uploads Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_menuenable-all-font-uploads.php:22
actionadmin_initenable-all-font-uploads.php:23
actionadmin_enqueue_scriptsenable-all-font-uploads.php:24
filterupload_mimesenable-all-font-uploads.php:25
filterwp_check_filetype_and_extenable-all-font-uploads.php:26
Maintenance & Trust

Enable All Font Uploads Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 19, 2025
PHP min version
Downloads917

Community Trust

Rating0/100
Number of ratings0
Active installs200
Developer Profile

Enable All Font Uploads Developer Profile

Asif Hossain

1 plugin · 200 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Enable All Font Uploads

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/enable-all-font-uploads/assets/enable-all-font-uploads.css
Version Parameters
enable-all-font-uploads/assets/enable-all-font-uploads.css?ver=1.0.0

HTML / DOM Fingerprints

CSS Classes
enable-all-font-uploads-containerenable-all-font-uploads-contentenable-all-font-uploads-titleenable-all-font-uploads-formenable-all-font-uploads-control-groupenable-all-font-uploads-toggleenable-all-font-uploads-sliderenable-all-font-uploads-control-label+1 more
Data Attributes
name="enable_all_font_uploads"value="1"
FAQ

Frequently Asked Questions about Enable All Font Uploads