Easy Genesis Logo Uploader Security & Risk Analysis

wordpress.org/plugins/genesis-logo-uploader

This is a plugin that will allow you to upload your logo via the WordPress Customizer for Genesis Child Themes.

400 active installs v0.1.1 PHP + WP 3.0.1+ Updated Sep 2, 2014
genesisgenesis-frameworkgenesis-logologoupload
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Easy Genesis Logo Uploader Safe to Use in 2026?

Generally Safe

Score 85/100

Easy Genesis Logo Uploader has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11yr ago
Risk Assessment

The genesis-logo-uploader v0.1.1 plugin exhibits a generally positive security posture based on the provided static analysis. It has no identified CVEs, a zero-attack surface with respect to AJAX, REST API, shortcodes, and cron events, and a complete absence of dangerous functions or raw SQL queries. The plugin also avoids external HTTP requests and file operations, further limiting its potential attack vectors. However, a significant concern arises from the complete lack of output escaping. This means that any data rendered to the user interface, even if not directly exploitable through other means, could potentially be manipulated to inject malicious content or disrupt the user experience. The absence of nonce and capability checks is also a notable weakness, although the lack of entry points mitigates the immediate risk. While the vulnerability history is clean, the code itself contains a critical oversight in output sanitization that needs immediate attention.

Key Concerns

  • Output not properly escaped
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Easy Genesis Logo Uploader Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Easy Genesis Logo Uploader Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped1 total outputs
Attack Surface

Easy Genesis Logo Uploader Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actioninitlogo.php:23
actionadmin_noticeslogo.php:75
actiongenesis_beforelogo.php:94
actiongenesis_site_titlelogo.php:98
actioncustomize_registerlogo.php:149
Maintenance & Trust

Easy Genesis Logo Uploader Maintenance & Trust

Maintenance Signals

WordPress version tested3.9.40
Last updatedSep 2, 2014
PHP min version
Downloads11K

Community Trust

Rating80/100
Number of ratings4
Active installs400
Developer Profile

Easy Genesis Logo Uploader Developer Profile

surefirewebserv

1 plugin · 400 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy Genesis Logo Uploader

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
site-logo
FAQ

Frequently Asked Questions about Easy Genesis Logo Uploader