
Gpx2Graphics Security & Risk Analysis
wordpress.org/plugins/gpx2graphicsCreate a Google Map, Elevation image or Speed image from your (Garmin) GpX files.
Is Gpx2Graphics Safe to Use in 2026?
Generally Safe
Score 85/100Gpx2Graphics has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "gpx2graphics" plugin version 0.3 exhibits a mixed security posture. On the positive side, it has a very small attack surface with no registered AJAX handlers, REST API routes, shortcodes, or cron events. All identified SQL queries are correctly using prepared statements, and there are no external HTTP requests. The absence of vulnerability history suggests a lack of previously discovered security flaws, which is a good sign. However, significant concerns arise from the static analysis. A critical weakness is that 100% of the plugin's output is not properly escaped, and the taint analysis reveals two flows with unsanitized paths, both classified as high severity. Furthermore, the plugin lacks nonce and capability checks, leaving potential entry points, though the current attack surface is zero, vulnerable if any were introduced. The file operation functions also warrant attention given the lack of proper input validation indicated by the taint analysis.
Key Concerns
- High severity unsanitized taint flows
- All output is unescaped
- No nonce checks
- No capability checks
- Unsanitized paths in taint flows
Gpx2Graphics Security Vulnerabilities
Gpx2Graphics Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Gpx2Graphics Attack Surface
WordPress Hooks 3
Maintenance & Trust
Gpx2Graphics Maintenance & Trust
Maintenance Signals
Community Trust
Gpx2Graphics Alternatives
Show Fit File
show-fit-file
A plugin to display fit, gpx and tcx files.
Listdom KML Addon – Display KML Layers
listdom-kml
Easily add KML (and GPX) map layers to your Listdom directory maps, highlighting specific areas, routes, or boundaries.
WP Go Maps (formerly WP Google Maps)
wp-google-maps
The easiest to use Google maps plugin! Create a custom Google map, map block, store locator or map widget with high quality markers containing categor …
iframe
iframe
[iframe src="http://www.youtube.com/embed/7_nAZQt9qu0" width="100%" height="500"] shortcode
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters
wp-google-map-plugin
WordPress map plugin for Google Maps, OpenStreetMap & Mapbox with store locator, filterable listings & custom markers.
Gpx2Graphics Developer Profile
2 plugins · 20 total installs
How We Detect Gpx2Graphics
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gpx2graphics/file.php/wp-content/plugins/gpx2graphics/graph.php/wp-content/plugins/gpx2graphics/point.phpHTML / DOM Fingerprints
wrapdata-gpx2graphics-map-idinitialize_<div id="map_canvas_gpx2maps_.js.png