
ICustomizer Security & Risk Analysis
wordpress.org/plugins/icustomizerPersonnalisation de votre administration et de votre site web
Is ICustomizer Safe to Use in 2026?
Generally Safe
Score 100/100ICustomizer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "icustomizer" v1.7.3 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and the complete reliance on prepared statements for SQL queries are significant strengths. Furthermore, the lack of critical or high-severity taint flows and a minimal attack surface with no exposed entry points are positive indicators. The plugin also demonstrates some good practices with a capability check in place and a file operation being present, suggesting potential for secure file handling. However, several areas raise concerns. The presence of three instances of the `create_function` function is a notable risk, as it can be a vector for code injection vulnerabilities if not handled with extreme care and proper sanitization. Additionally, a very low percentage of properly escaped output (2%) is a significant weakness, indicating a high likelihood of cross-site scripting (XSS) vulnerabilities. The bundled jQuery library v1.9.1 is also outdated, which could expose the plugin and the site to known vulnerabilities in that version. While the plugin has no recorded history of vulnerabilities, the identified code signals point to potential weaknesses that could be exploited.
Key Concerns
- Low output escaping percentage
- Presence of create_function
- Outdated bundled library jQuery v1.9.1
ICustomizer Security Vulnerabilities
ICustomizer Code Analysis
Dangerous Functions Found
Bundled Libraries
Output Escaping
ICustomizer Attack Surface
WordPress Hooks 35
Maintenance & Trust
ICustomizer Maintenance & Trust
Maintenance Signals
Community Trust
ICustomizer Alternatives
Simple Custom CSS and JS
custom-css-js
Easily add Custom CSS or JS to your website with an awesome editor.
Admin Menu Editor
admin-menu-editor
Lets you edit the WordPress admin menu. You can re-order, hide or rename menus, add custom menus and more.
White Label CMS
white-label-cms
Customise dashboard panels and branding, hide menus plus lots more.
Ultimate Dashboard – Custom WordPress Dashboard
ultimate-dashboard
The #1 Plugin to Customize the WordPress Dashboard!
Display PHP Version
display-php-version
Displays the currently installed PHP/MySQL version in the "At a Glance" admin dashboard widget.
ICustomizer Developer Profile
1 plugin · 30 total installs
How We Detect ICustomizer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/icustomizer/core/assets/css/icustomizer-style.css/wp-content/plugins/icustomizer/core/assets/js/icustomizer-script.js/wp-content/plugins/icustomizer/core/assets/js/icustomizer-script.jsicustomizer/core/assets/css/icustomizer-style.css?ver=icustomizer/core/assets/js/icustomizer-script.js?ver=HTML / DOM Fingerprints
icustomizer-dashboard-widgetICustomizer Meta links in plugins pagedata-icustomizerwindow.icustomizer_vars