
Image Regenerate & Select Crop Security & Risk Analysis
wordpress.org/plugins/image-regenerate-select-cropAdvanced management for images, register new sub-sizes, sub-sizes details, regenerate and cleanup files.
Is Image Regenerate & Select Crop Safe to Use in 2026?
Generally Safe
Score 99/100Image Regenerate & Select Crop has a strong security track record. Known vulnerabilities have been patched promptly.
The 'image-regenerate-select-crop' plugin v8.1.6 presents a mixed security posture. While it demonstrates good practices by largely utilizing prepared statements for SQL queries and performing a decent number of nonce and capability checks, significant concerns arise from its attack surface. A substantial number of AJAX handlers (11 out of 12) lack proper authentication checks, creating a wide entry point for potential unauthorized actions. This, coupled with a history of four medium-severity vulnerabilities, including exposure of sensitive information, missing authorization, and CSRF, indicates a recurring pattern of security weaknesses that attackers could exploit. The absence of critical or high-severity vulnerabilities in its history and the current lack of unpatched CVEs are positive signs, but the numerous unprotected AJAX endpoints represent a tangible and immediate risk. The plugin's strengths in secure SQL handling are overshadowed by the easily exploitable attack vectors in its AJAX interface. Therefore, while not critically flawed, it requires careful attention and remediation of its authorization vulnerabilities.
Key Concerns
- High number of AJAX handlers without auth checks
- History of medium severity vulnerabilities (x4)
- Vulnerability types: Missing Authorization, CSRF
- Only 52% of output properly escaped
Image Regenerate & Select Crop Security Vulnerabilities
CVEs by Year
Severity Breakdown
4 total CVEs
Image Regenerate & Select Crop <= 7.3.0 - Sensitive Information Exposure
Image Regenerate & Select Crop <= 7.1.0 - Missing Authorization
Image Regenerate & Select Crop <= 7.1.0 - Missing Authorization on multiple AJAX actions
Image Regenerate & Select Crop <= 7.1.0 - Cross-Site Request Forgery on multiple AJAX actions
Image Regenerate & Select Crop Code Analysis
SQL Query Safety
Output Escaping
Image Regenerate & Select Crop Attack Surface
AJAX Handlers 12
WordPress Hooks 45
Maintenance & Trust
Image Regenerate & Select Crop Maintenance & Trust
Maintenance Signals
Community Trust
Image Regenerate & Select Crop Alternatives
Thumbnail Remover and Size Manager
thumbnail-remover
Safely analyze, preview, trash, restore, regenerate, and manage WordPress thumbnails and image sizes.
Acme Fix Images – Regenerate Thumbnails
acme-fix-images
Fix image sizes after you have changed image sizes from Media Settings. Ensure your images display consistently across your website.
BFPC Image Cropper
bfpc-image-cropper
This plugin allows site visitors to edit and crop images online directly on your website.
Image Optimizer – Optimize Images and Convert to WebP or AVIF
image-optimization
Automatically resize, optimize, and convert images to WebP and AVIF. Compress images in bulk or on upload to boost your WordPress site performance.
Imagify Image Optimization – Optimize Images | Compress Images | Convert WebP | Convert AVIF
imagify
Optimize images in 1-click: compress images, convert to WebP & AVIF, resize, and boost your site with the easiest WordPress image optimization plugin!
Image Regenerate & Select Crop Developer Profile
8 plugins · 21K total installs
How We Detect Image Regenerate & Select Crop
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/image-regenerate-select-crop/sirsc-css.css/wp-content/plugins/image-regenerate-select-crop/sirsc-js.js/wp-content/plugins/image-regenerate-select-crop/sirsc-editor-js.js/wp-content/plugins/image-regenerate-select-crop/sirsc-js.js/wp-content/plugins/image-regenerate-select-crop/sirsc-editor-js.jsimage-regenerate-select-crop/sirsc-css.css?ver=image-regenerate-select-crop/sirsc-js.js?ver=image-regenerate-select-crop/sirsc-editor-js.js?ver=HTML / DOM Fingerprints
sirsc-settings-page<!-- sirsc-admin-editor --><!-- sirsc-cropped-editor --><!--sirsc-bulk-actions-wrapper-->data-sirsc-noncedata-sirsc-iddata-sirsc-bulk-itemdata-sirsc-bulk-actionSIRSC_BULK_PROCESS_DELAYSIRSC_VER_TEXTSIRSC_NAMESIRSC_ADONSsirsc_editor_params