Genie Image – Image Generation with its AI Magic Security & Risk Analysis

wordpress.org/plugins/genie-image-ai

Ai Image Generator, Open AI DALL-E 2, Image Generator Plugin, Blog post Image generator, AI Image Creation, WordPress Image Generator, Openai photo ge …

300 active installs v1.0.6 PHP 7.4+ WP + Updated Nov 27, 2025
ai-image-generateblog-image-generationdall-e-2gpt3openai
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Genie Image – Image Generation with its AI Magic Safe to Use in 2026?

Generally Safe

Score 100/100

Genie Image – Image Generation with its AI Magic has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "genie-image-ai" v1.0.6 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, exclusively using prepared statements, and a high percentage of properly escaped output. The absence of dangerous functions, file operations, and known vulnerabilities in its history are also encouraging signs of a relatively secure codebase. However, a significant concern arises from its attack surface, with a large proportion of REST API routes lacking permission callbacks. This creates potential entry points for unauthorized access and manipulation. The limited taint analysis, while showing no critical or high-severity flows, might be due to the analysis scope rather than an absolute absence of risk, especially given the unprotected REST API endpoints.

Key Concerns

  • REST API routes without permission callbacks
  • AJAX handlers without auth checks
  • Low taint analysis coverage
Vulnerabilities
None known

Genie Image – Image Generation with its AI Magic Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Genie Image – Image Generation with its AI Magic Release Timeline

v1.0.6Current
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

Genie Image – Image Generation with its AI Magic Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
18 escaped
Nonce Checks
12
Capability Checks
14
File Operations
0
External Requests
3
Bundled Libraries
0

Output Escaping

86% escaped21 total outputs
Attack Surface
8 unprotected

Genie Image – Image Generation with its AI Magic Attack Surface

Entry Points10
Unprotected8

AJAX Handlers 2

authwp_ajax_lease_auth_tokenapp\Api\LeaseToken.php:11
noprivwp_ajax_lease_auth_tokenapp\Api\LeaseToken.php:12

REST API Routes 8

GET/wp-json/genieimage/v1feedbackapp\Api\Feedback.php:16
GET/wp-json/genieimage/v1/geniechat(?P<action>[\w-]+)app\Api\GenieChat.php:16
GET/wp-json/genieimage/v1/history(?P<action>[\w-]+)app\Api\History.php:16
GET/wp-json/genieimage/v1/license(?P<action>[\w-]+)app\Api\License.php:15
GET/wp-json/genieimage/v1/parser(?P<param1>[\w-]+)/(?P<param2>[\w-]+)app\Api\Parser.php:15
GET/wp-json/genieimage/v1/store(?P<post_id>[\d]+)/(?P<key>[\w-]+)app\Api\Store.php:15
GET/wp-json/genieimage/v1genie-image/uploadapp\Api\UploadImage.php:15
GET/wp-json/genieimage/v1limit_usage_statsapp\Api\UsageLimitStats.php:15
WordPress Hooks 16
actionrest_api_initapp\Api\Feedback.php:15
actionrest_api_initapp\Api\GenieChat.php:15
actionrest_api_initapp\Api\History.php:15
actionrest_api_initapp\Api\License.php:14
actionrest_api_initapp\Api\Parser.php:14
actionrest_api_initapp\Api\Store.php:14
actionrest_api_initapp\Api\UploadImage.php:14
actionrest_api_initapp\Api\UsageLimitStats.php:14
actioninitapp\Providers\EnqueueProvider.php:11
actionadmin_enqueue_scriptsapp\Providers\EnqueueProvider.php:17
actionadmin_enqueue_scriptsapp\Providers\EnqueueProvider.php:19
actionadmin_menuapp\Providers\SideMenuProvider.php:35
actioninitapp\Services\GenieChat\Cpt.php:15
actioninitapp\Services\History\Cpt.php:15
actionadmin_headgenie-image-ai.php:65
actionadmin_headgenie-image-ai.php:78
Maintenance & Trust

Genie Image – Image Generation with its AI Magic Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 27, 2025
PHP min version7.4
Downloads6K

Community Trust

Rating0/100
Number of ratings0
Active installs300
Developer Profile

Genie Image – Image Generation with its AI Magic Developer Profile

GetGenie

1 plugin · 300 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Genie Image – Image Generation with its AI Magic

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/genie-image-ai/assets/dist/admin/css/genie-image-ai.css/wp-content/plugins/genie-image-ai/assets/dist/admin/js/genie-image-ai.js/wp-content/plugins/genie-image-ai/assets/dist/frontend/css/genie-image-ai.css/wp-content/plugins/genie-image-ai/assets/dist/frontend/js/genie-image-ai.js
Script Paths
/wp-content/plugins/genie-image-ai/assets/dist/admin/js/genie-image-ai.js/wp-content/plugins/genie-image-ai/assets/dist/frontend/js/genie-image-ai.js
Version Parameters
genie-image-ai/assets/dist/admin/css/genie-image-ai.css?ver=genie-image-ai/assets/dist/admin/js/genie-image-ai.js?ver=genie-image-ai/assets/dist/frontend/css/genie-image-ai.css?ver=genie-image-ai/assets/dist/frontend/js/genie-image-ai.js?ver=

HTML / DOM Fingerprints

CSS Classes
genieimagenotice-wrappergenieimagenoticenotice-iconnotice-messagenotice-link
Data Attributes
data-genieimage-config
JS Globals
genieImage.config
REST Endpoints
/wp-json/genieimage/v1/parser//wp-json/genieimage/v1/limit_usage_stats//wp-json/genieimage/v1/store//wp-json/genieimage/v1/license//wp-json/genieimage/v1/feedback//wp-json/genieimage/v1/history//wp-json/genieimage/v1/geniechat//wp-json/genieimage/v1/upload_image/
FAQ

Frequently Asked Questions about Genie Image – Image Generation with its AI Magic