File Uploader – Tektonic Solutions Security & Risk Analysis

wordpress.org/plugins/file-uploader-tektonic-solutions

Tektonic Solutions File Uploader plugin lets a logged-in end-user on your website upload files one at a time.

10 active installs v1.0.0 PHP 5.6.30+ WP 4.8+ Updated Oct 26, 2019
file-uploaderfileuploadpage
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is File Uploader – Tektonic Solutions Safe to Use in 2026?

Generally Safe

Score 85/100

File Uploader – Tektonic Solutions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The file-uploader-tektonic-solutions plugin v1.0.0 exhibits a mixed security posture. On the positive side, it demonstrates good practices by avoiding dangerous functions, utilizing prepared statements for all SQL queries, and properly escaping a high percentage of its output. The absence of known CVEs and common vulnerability types in its history is also a strong indicator of a generally secure development approach thus far. However, the plugin presents notable concerns regarding its attack surface. The presence of two AJAX handlers without authentication checks creates a significant entry point for potential unauthorized actions. While taint analysis did not reveal immediate vulnerabilities, the lack of explicit capability checks on any entry points means that even protected AJAX handlers or shortcodes could be leveraged by authenticated users with lower privileges than intended, potentially leading to privilege escalation or unintended functionality execution. The plugin also includes a file operation, which, without further context on its implementation and sanitization, could pose a risk if not handled securely.

Key Concerns

  • AJAX handlers without authentication
  • Missing capability checks on entry points
  • Presence of file operations
Vulnerabilities
None known

File Uploader – Tektonic Solutions Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

File Uploader – Tektonic Solutions Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
12
61 escaped
Nonce Checks
2
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

84% escaped73 total outputs
Attack Surface
2 unprotected

File Uploader – Tektonic Solutions Attack Surface

Entry Points5
Unprotected2

AJAX Handlers 4

authwp_ajax_tektonic_file_uploadfile-uploader-tektonic-solutions.php:167
noprivwp_ajax_tektonic_file_uploadfile-uploader-tektonic-solutions.php:168
authwp_ajax_tektonic_file_upload_delete_filefile-uploader-tektonic-solutions.php:351
noprivwp_ajax_tektonic_file_upload_delete_filefile-uploader-tektonic-solutions.php:352

Shortcodes 1

[tektonic_file_upload] file-uploader-tektonic-solutions.php:140
WordPress Hooks 5
actionadmin_menuclasses\tektonic-file-upload-settings-class.php:13
actionadmin_initclasses\tektonic-file-upload-settings-class.php:14
actionwp_enqueue_scriptsfile-uploader-tektonic-solutions.php:116
actionadmin_enqueue_scriptsfile-uploader-tektonic-solutions.php:138
filterplugin_row_metafile-uploader-tektonic-solutions.php:446
Maintenance & Trust

File Uploader – Tektonic Solutions Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedOct 26, 2019
PHP min version5.6.30
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

File Uploader – Tektonic Solutions Developer Profile

Tektonic Solutions

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect File Uploader – Tektonic Solutions

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/file-uploader-tektonic-solutions/css/tektonic-file-upload.css/wp-content/plugins/file-uploader-tektonic-solutions/css/tektonic-file-upload-circle.css/wp-content/plugins/file-uploader-tektonic-solutions/js/tektonic-file-upload.js/wp-content/plugins/file-uploader-tektonic-solutions/css/tektonic-file-upload-admin.css
Script Paths
/wp-content/plugins/file-uploader-tektonic-solutions/js/tektonic-file-upload.js
Version Parameters
file-uploader-tektonic-solutions/css/tektonic-file-upload.css?ver=1.0.0file-uploader-tektonic-solutions/css/tektonic-file-upload-circle.css?ver=1.0.0file-uploader-tektonic-solutions/css/tektonic-file-upload-admin.css?ver=1.0.0

HTML / DOM Fingerprints

CSS Classes
tektonic-file-upload-wrap
Data Attributes
data-tektonic-site-urldata-tektonic-ajax-urldata-tektonic-tdata-tektonic-tsfu
JS Globals
tektonic_site_params
Shortcode Output
tektonic_file_upload_form
FAQ

Frequently Asked Questions about File Uploader – Tektonic Solutions