
Enqueue Me Security & Risk Analysis
wordpress.org/plugins/enqueue-meEasily enqueue your favourite javascript and CSS libraries from an open-source package library. Designed specifically for WordPress theme developers.
Is Enqueue Me Safe to Use in 2026?
Generally Safe
Score 100/100Enqueue Me has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "enqueue-me" plugin v0.5 presents a significant security risk due to its unprotected AJAX handlers. All five identified AJAX entry points lack authentication checks, meaning any unauthenticated user could potentially trigger these actions. While the plugin demonstrates good practices by not using dangerous functions and employing prepared statements for SQL, the complete absence of capability checks and nonce verification on these critical entry points leaves it highly vulnerable to unauthorized execution of plugin functionalities. The absence of any recorded vulnerabilities in its history is positive, but it does not mitigate the severe risks identified in the static analysis. The plugin's security posture is concerning primarily because the identified attack surface is completely exposed.
Key Concerns
- Unprotected AJAX handlers
- Missing nonce checks on AJAX handlers
- Missing capability checks on AJAX handlers
- Taint analysis shows unsanitized paths
- Output escaping is not fully proper
Enqueue Me Security Vulnerabilities
Enqueue Me Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Enqueue Me Attack Surface
AJAX Handlers 5
WordPress Hooks 10
Maintenance & Trust
Enqueue Me Maintenance & Trust
Maintenance Signals
Community Trust
Enqueue Me Alternatives
Debug Bar List Script & Style Dependencies
debug-bar-list-dependencies
Debug Bar List Script & Style Dependencies is an add-on to WordPress Debug Bar
Context Manager
context-manager
Make your site react to users' context by changing your theme's CSS and JavaScript files, navigation menus, sidebars and the HTML body tag.
Post Head Includes
post-head-includes
Easily add scripts and stylesheets to the HEAD of your posts, keeping your HTML cleaner without inline scripts or styles.
Asset Finder
asset-finder
Finds and allows late-loading and removal of the scripts and styles enqueued on your website.
Custom CSS and JavaScript
custom-css-and-javascript
Easily add custom CSS and JavaScript code to your WordPress site, with draft previewing, revisions, and minification!
Enqueue Me Developer Profile
2 plugins · 410 total installs
How We Detect Enqueue Me
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/enqueue-me/inc/core.php/wp-content/plugins/enqueue-me/inc/admin.php/wp-content/plugins/enqueue-me/inc/load-scripts.php/wp-content/plugins/enqueue-me/inc/import-export.php/wp-content/plugins/enqueue-me/inc/fav-lists.phpHTML / DOM Fingerprints
forbidden-fruitenqueueme-settingsem-packages-selectmy-enqueue-wrapmy-enqueue-headid="root-dep-box"id="licenece-box"id="licenece-email-box"id="update-licence"plugins_url