
Fluidity Document Library Security & Risk Analysis
wordpress.org/plugins/fluidity-document-libraryA modern document library plugin for WordPress featuring a sleek design and a fast, responsive user experience.
Is Fluidity Document Library Safe to Use in 2026?
Generally Safe
Score 100/100Fluidity Document Library has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The fluidity-document-library plugin version 1.0.5 exhibits a mixed security posture. On the positive side, the code adheres to several good security practices, including the exclusive use of prepared statements for all SQL queries and a high percentage of properly escaped output. There are no recorded vulnerabilities (CVEs) in its history, and no dangerous functions, file operations, or external HTTP requests were detected, suggesting a generally well-written codebase in these areas. Furthermore, nonce checks and capability checks are present for a portion of the entry points.
However, a significant concern arises from the substantial attack surface exposed without adequate authentication. Out of six identified entry points, five are AJAX handlers that lack proper authorization checks. This means that any unauthenticated user could potentially interact with these AJAX endpoints, opening the door to various vulnerabilities if the handlers themselves are not sufficiently secured against malicious input. The absence of any taint analysis results is also noteworthy; while it could indicate a lack of complex data flows that could be exploited, it might also suggest that taint analysis was not performed comprehensively or that the plugin's functionality is simple enough that such flows are absent.
In conclusion, while the plugin demonstrates strengths in its handling of SQL and output escaping, and its lack of historical vulnerabilities is a positive sign, the high number of unprotected AJAX endpoints is a critical weakness. This significantly elevates the risk of exploitation, particularly if these endpoints process user-supplied data without proper validation and sanitization.
Key Concerns
- Unprotected AJAX handlers
- Large attack surface without auth
- Missing nonce checks on AJAX
- Missing capability checks on AJAX
Fluidity Document Library Security Vulnerabilities
Fluidity Document Library Code Analysis
Output Escaping
Fluidity Document Library Attack Surface
AJAX Handlers 5
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
Fluidity Document Library Maintenance & Trust
Maintenance Signals
Community Trust
Fluidity Document Library Alternatives
Document Library Lite
document-library-lite
Create a WordPress document library to manage, search and download files.
Filr – Secure document library
filr-protection
Easily Create a Secure Document Library with Filr
File Manager
wp-file-manager
file manager provides you ability to edit, delete, upload, download, copy and paste files and folders.
FileBird – WordPress Media Library Folders & File Manager
filebird
Organize thousands of WordPress media files in folders / categories with ease.
FileOrganizer – WordPress File Manager
fileorganizer
FileOrganizer is an intuitive file manager to easily edit, delete, upload, download, and manage all your WordPress files and folders right from the da …
Fluidity Document Library Developer Profile
8 plugins · 190 total installs
How We Detect Fluidity Document Library
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fluidity-document-library/admin/css/fluidity-dl-admin.css/wp-content/plugins/fluidity-document-library/assets/css/glass-style.css/wp-content/plugins/fluidity-document-library/admin/js/fluidity-dl-admin.js/wp-content/plugins/fluidity-document-library/assets/js/lib/vue.global.prod.js/wp-content/plugins/fluidity-document-library/assets/js/lib/vue.global.jsfluidity-dl-admin.css?ver=glass-style.css?ver=fluidity-dl-admin.js?ver=vue.global.prod.js?ver=vue.global.js?ver=HTML / DOM Fingerprints
wp-block-fluidity-document-library-document-list<!-- Add Document Manager as the first submenu item (optional but good for clarity) --><!-- Folders Submenu --><!-- Tags Submenu --><!-- Use nonce for verification -->data-fluidity-dl-doc-iddata-fluidity-dl-file-urldata-fluidity-dl-download-urlfluidity_dl_admin_vars[fluidity_document_list][fluidity_document_viewer]