[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f49mLICBxH6qzeWJU-owPkHOqgYoNssDPnQLZG40PWJU":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":74,"crawl_stats":38,"alternatives":80,"analysis":189,"fingerprints":314},"imagemagick-engine","ImageMagick Engine","1.7.14","Rickard Westerlind","https:\u002F\u002Fprofiles.wordpress.org\u002Frickardw\u002F","\u003Cp>Dramatically improve the quality of re-sized images by making WordPress use ImageMagick instead of standard GD image library.\u003C\u002Fp>\n\u003Cp>Features\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Preserve embedded color profile in re-sized image\u003C\u002Fli>\n\u003Cli>Automatically recognize custom image sizes\u003C\u002Fli>\n\u003Cli>Allow regeneration of existing images (optionally for selected image sizes only)\u003C\u002Fli>\n\u003Cli>Configure image quality or use dynamically computed default value\u003C\u002Fli>\n\u003Cli>Optimize different image sizes for either quality or size\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Lnguages: English, French, German, Swedish, Turkish\u003C\u002Fp>\n\u003Cp>Requires either ImageMagick binary or Imagick PHP module.\u003C\u002Fp>\n\u003Ch3>Contribute\u003C\u002Fh3>\n\u003Cp>Code repo available on https:\u002F\u002Fgithub.com\u002Forangelabweb\u002Fimagemagick-engine\u002F\u003C\u002Fp>\n","Improve the quality of re-sized images by replacing standard GD library with ImageMagick.",60000,1296978,88,16,"2025-10-16T09:39:00.000Z","6.8.5","5.0","",[20,21,22,23,24],"gd","image","imagemagick","picture","regenerate","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fimagemagick-engine\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fimagemagick-engine.1.7.14.zip",96,3,0,"2024-09-20 00:00:00","2026-03-15T15:16:48.613Z",[33,49,64],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":40,"severity":41,"cvss_score":42,"cvss_vector":43,"vuln_type":44,"published_date":30,"updated_date":45,"references":46,"days_to_patch":48},"CVE-2024-6486","imagemagick-engine-authenticated-administrator-remote-code-execution","ImageMagick Engine \u003C= 1.7.10 - Authenticated (Administrator+) Remote Code Execution","The ImageMagick Engine plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.7.10 via the 'cli_path' parameter. This is due to the plugin not properly restricting content in the ImageMagick path field. This makes it possible for unauthenticated attackers to execute arbitrary OS commands on the server leading to remote code execution.",null,"\u003C=1.7.10","1.7.11","high",7.2,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:H\u002FUI:N\u002FS:U\u002FC:H\u002FI:H\u002FA:H","Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')","2025-05-30 18:20:35",[47],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fc318a0cf-5aaa-4442-a25e-138936d1dc90?source=api-prod",253,{"id":50,"url_slug":51,"title":52,"description":53,"plugin_slug":4,"theme_slug":38,"affected_versions":54,"patched_in_version":55,"severity":41,"cvss_score":56,"cvss_vector":57,"vuln_type":58,"published_date":59,"updated_date":60,"references":61,"days_to_patch":63},"CVE-2022-3568","imagemagick-engine-cross-site-request-forgery-to-phar-deserialization","ImageMagick Engine \u003C= 1.7.5 - Cross-Site Request Forgery to PHAR Deserialization","The ImageMagick Engine plugin for WordPress is vulnerable to deserialization of untrusted input via the 'cli_path' parameter in versions up to, and including 1.7.5. This makes it possible for unauthenticated users to call files using a PHAR wrapper, granted they can trick a site administrator into performing an action such as clicking on a link, that will deserialize and call arbitrary PHP Objects that can be used to perform a variety of malicious actions granted a POP chain is also present. It also requires that the attacker is successful in uploading a file with the serialized payload.","\u003C=1.7.5","1.7.6",8.8,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:U\u002FC:H\u002FI:H\u002FA:H","Deserialization of Untrusted Data","2023-02-09 00:00:00","2024-01-22 19:56:02",[62],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F4a2ca2f0-1d4a-4614-86ba-a46e765f4a9f?source=api-prod",348,{"id":65,"url_slug":66,"title":67,"description":68,"plugin_slug":4,"theme_slug":38,"affected_versions":54,"patched_in_version":55,"severity":41,"cvss_score":56,"cvss_vector":57,"vuln_type":69,"published_date":70,"updated_date":60,"references":71,"days_to_patch":73},"CVE-2022-2441","imagemagick-engine-cross-site-request-forgery-to-remote-command-execution","ImageMagick Engine \u003C= 1.7.5 - Cross-Site Request Forgery to Remote Command Execution","The ImageMagick Engine plugin for WordPress is vulnerable to remote code execution via the 'cli_path' parameter in versions up to, and including 1.7.5. This makes it possible for unauthenticated users to run arbitrary commands leading to remote command execution, granted they can trick a site administrator into performing an action such as clicking on a link. This makes it possible for an attacker to create and or modify files hosted on the server which can easily grant attackers backdoor access to the affected server.","Cross-Site Request Forgery (CSRF)","2022-10-17 00:00:00",[72],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fb1f17a83-1df0-44fe-bd86-243cff6ec91b?source=api-prod",463,{"slug":75,"display_name":7,"profile_url":8,"plugin_count":76,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":77,"trust_score":78,"computed_at":79},"rickardw",1,355,76,"2026-04-04T06:45:57.115Z",[81,102,125,147,166],{"slug":82,"name":83,"version":84,"author":85,"author_profile":86,"description":87,"short_description":88,"active_installs":89,"downloaded":90,"rating":91,"num_ratings":92,"last_updated":93,"tested_up_to":94,"requires_at_least":95,"requires_php":18,"tags":96,"homepage":18,"download_link":100,"security_score":101,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"remove-exif-and-metadata","Remove exif and metadata","1.0","EdgarKotov","https:\u002F\u002Fprofiles.wordpress.org\u002Fedgarkotov\u002F","\u003Cp>Automatically remove exif and metadata data after uploading. Just moment supported format: JPG and PNG. Using ImageMagick\u003C\u002Fp>\n","Automatically remove exif and metadata data after uploading. Just moment supported format: JPG and PNG. Using ImageMagick",200,6750,80,5,"2016-01-13T08:20:00.000Z","4.4.34","3.0",[97,22,98,99,23],"exif","images","metadata","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fremove-exif-and-metadata.zip",85,{"slug":103,"name":104,"version":105,"author":106,"author_profile":107,"description":108,"short_description":109,"active_installs":110,"downloaded":111,"rating":112,"num_ratings":113,"last_updated":18,"tested_up_to":114,"requires_at_least":115,"requires_php":116,"tags":117,"homepage":121,"download_link":122,"security_score":123,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":124},"atec-webp","atec WebP","1.1.29","docjojo","https:\u002F\u002Fprofiles.wordpress.org\u002Fdocjojo\u002F","\u003Cp>atec-WebP works automatically, no configuration required.\u003Cbr \u002F>\nJust install, activate and switch on the “WebP active” option. That’s all.\u003C\u002Fp>\n\u003Cp>Most other image optimization plugins (such as Smush or LiteSpeed) use batch conversion.\u003Cbr \u002F>\nThese plugins convert ALL images in the upload folder, including thumbnails.\u003Cbr \u002F>\nThis is not necessary, as some of these images might never be requested.\u003Cbr \u002F>\natec-WebP works “on demand”, it converts images only when requested. This saves disk space.\u003C\u002Fp>\n\u003Cp>In case you are using a CDN the rewrite rules to serve .webp files will not be effective – unless you exclude image files from caching.\u003Cbr \u002F>\nPlease check the response header to see whether .webp files are actually handled by your server – or delivered by a CDN.\u003C\u002Fp>\n\u003Ch3>Specifications\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Supports IMG_WEBP_LOSSLESS quality.\u003C\u002Fli>\n\u003Cli>Supports BMP, GIF, PNG & JPEG image format.\u003C\u002Fli>\n\u003Cli>Supports transparent GIF & PNG files (plus BMP with ImageMagick).\u003C\u002Fli>\n\u003Cli>Unsupported files (like animated GIFs and transparent BMP with GD-extension) will be skipped automatically.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Requirements\u003C\u002Fh3>\n\u003Cp>atec-WebP requires write permission for the \u002F.htaccess file and a webserver that supports rewrite rules (mod_rewrite).\u003Cbr \u002F>\nRewrite rules will be added to the .htaccess file only if you check the “WebP active” option.\u003Cbr \u002F>\nThe rules will be deleted if you uncheck the option or deactivate the plugin.\u003C\u002Fp>\n\u003Cp>Image requests will be redirected to their WebP counterpart, if the WebP version exists, otherwise the request will be redirected to a script in the .\u002Fuploads\u002Fatec-webp folder. The script converts image files to *.Xwebp.webp files in their respective folder. There will be no extra folders for the converted images, so everythings stays in place. However you can still delete the convert files at any time, as they are easily identified by their .Xwebp.webp extension.\u003C\u002Fp>\n\u003Cp>atec-WebP dashboard also provides a feature to delete these files, with no impact on the original files.\u003C\u002Fp>\n\u003Ch3>Attention\u003C\u002Fh3>\n\u003Cp>DO NOT disallow script execution in wp-content\u002Fuplods folder by a “deny from all” rule, because the conversion script resides in the wp-content\u002Fuplods\u002Fatec-webp.\u003C\u002Fp>\n\u003Ch3>3rd party scripts\u003C\u002Fh3>\n\u003Cp>The plugin uses “basicLightbox” to preview images.\u003Cbr \u002F>\nSource code @ https:\u002F\u002Fgithub.com\u002Felecterious\u002FbasicLightbox\u003C\u002Fp>\n\u003Ch3>Third-Party Services\u003C\u002Fh3>\n\u003Ch3>Integrity check\u003C\u002Fh3>\n\u003Cp>Once, when activating the plugin, an integrity check is requested from our server – if you give your permission.\u003Cbr \u002F>\nSource: https:\u002F\u002Fatecplugins.com\u002F\u003Cbr \u002F>\nPrivacy policy: https:\u002F\u002Fatecplugins.com\u002Fprivacy-policy\u002F\u003C\u002Fp>\n\u003Ch3>atec-WebP and Cloudflare compatibility\u003C\u002Fh3>\n\u003Cp>The plugin does not replace image files in the media library nor does it alter the image attachments in pages or posts.\u003Cbr \u002F>\nIt works by serving .webp images instead of other images formats by converting those images in the uploads folder and rewriting requests to the original image by the use of .htaccess rewrite rules.\u003Cbr \u002F>\nFor the plugin to be in effect, the browser must send an ‘accept’ header that includes the ‘image\u002Fwebp’ mime type.\u003Cbr \u002F>\nHowever, if you use cloudflare, the cloudflare crawler will not send this header, thus the redirect script will not run the rewrite rule.\u003Cbr \u002F>\nAs a result, the crawler will get the original image and atec-WebP is not interfere.\u003C\u002Fp>\n\u003Ch3>atec-WebP and LiteSpeed web-server compatibility\u003C\u002Fh3>\n\u003Cp>LiteSpeed support for .htaccess files depends on the web-server configuration. LiteSpeed must reload the .htaccess after it has been altered by atec-WebP. It can take several minutes for the changes to have effect.\u003C\u002Fp>\n","Auto convert all BMP, GIF, PNG & JPEG images into the much better WebP format. Supports the GD & ImageMagick libraries.",50,4518,90,2,"6.9.4","4.9","7.4",[118,119,120],"auto-convert-all-bmp","gif","png-jpeg-images-into-the-much-better-webp-format-supports-the-gd-imagemagick-libraries","https:\u002F\u002Fatecplugins.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fatec-webp.1.1.29.zip",100,"2026-03-15T10:48:56.248Z",{"slug":126,"name":127,"version":128,"author":129,"author_profile":130,"description":131,"short_description":132,"active_installs":133,"downloaded":134,"rating":135,"num_ratings":136,"last_updated":137,"tested_up_to":16,"requires_at_least":138,"requires_php":139,"tags":140,"homepage":18,"download_link":144,"security_score":145,"vuln_count":76,"unpatched_count":29,"last_vuln_date":146,"fetched_at":31},"easy-watermark","Easy Watermark","1.0.11","Wojtek Szałkiewicz","https:\u002F\u002Fprofiles.wordpress.org\u002Fszaleq\u002F","\u003Cp>Easy Watermark can automatically add watermark to images as they are uploaded to wordpress media library. You can also watermark existing images manually (all at once or an every single image). Watermark can be an image, text or both.\u003C\u002Fp>\n\u003Ch4>See the demo\u003C\u002Fh4>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FxM_0Y0oX4o0?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Ch4>Plugin features\u003C\u002Fh4>\n\u003Cp>On one image you can have two watermarks! One of them can be text watermark and the other image watermark. You can control their position and size and apply them to your media independently.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Image watermark can be a JPG, PNG or GIF\u003C\u002Fli>\n\u003Cli>Full support for transparency and alpha chanel in PNG and GIF files\u003C\u002Fli>\n\u003Cli>JPG and GIF files and text can have opacity set (from 0 to 100%)\u003C\u002Fli>\n\u003Cli>Text watermark is created using ttf fonts\u003C\u002Fli>\n\u003Cli>Text color, size and rotation can be set\u003C\u002Fli>\n\u003Cli>All built-in image sizes can be watermarked (thumbnail, medium, large and fullsize) as well as all additional sizes registered by themes or plugins\u003C\u002Fli>\n\u003Cli>Plugin can create image backups and allows to easily restore images\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Image watermark\u003C\u002Fh4>\n\u003Cp>Easy Watermark supports three most popular image formats for watermark: JPG, PNG and GIF. For JPG watermarks you can control the opacity as well.\u003C\u002Fp>\n\u003Cp>Watermark can be applied in on of the 9 positions on the image and you can controll the exact sizing of it.\u003C\u002Fp>\n\u003Ch4>Text watermark\u003C\u002Fh4>\n\u003Cp>Text watermark have a powerful feature of placeholders, which can be dynamically applied to the image. Ie. you can put the name of user who uploaded the image as well as the upload date. Watermark text will be automatically generated and applied.\u003C\u002Fp>\n\u003Cp>The plugin supports a few fonts:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Arial\u003C\u002Fli>\n\u003Cli>Arial Black\u003C\u002Fli>\n\u003Cli>Comic Sans MS\u003C\u002Fli>\n\u003Cli>Courier New\u003C\u002Fli>\n\u003Cli>Georgia\u003C\u002Fli>\n\u003Cli>Impact\u003C\u002Fli>\n\u003Cli>Tahoma\u003C\u002Fli>\n\u003Cli>Times New Roman\u003C\u002Fli>\n\u003Cli>Trebuchet MS\u003C\u002Fli>\n\u003Cli>Verdana\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>You can also place the text watermark in one of the 9 positions on the image, control the angle, color, opacity and size.\u003C\u002Fp>\n\u003Ch4>Custom development\u003C\u002Fh4>\n\u003Cp>BracketSpace – the company behind this plugin provides \u003Ca href=\"https:\u002F\u002Fbracketspace.com\u002Fcustom-development\u002F\" rel=\"nofollow ugc\">custom WordPress plugin development services\u003C\u002Fa>. We can create any custom plugin for you.\u003C\u002Fp>\n","Allows to add watermark to images automatically on upload or manually.",40000,667593,74,157,"2025-08-25T11:16:00.000Z","4.6","5.6",[21,141,142,23,143],"media","photo","watermark","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-watermark.1.0.11.zip",99,"2019-02-25 00:00:00",{"slug":148,"name":149,"version":150,"author":151,"author_profile":152,"description":153,"short_description":154,"active_installs":133,"downloaded":155,"rating":156,"num_ratings":156,"last_updated":157,"tested_up_to":16,"requires_at_least":139,"requires_php":116,"tags":158,"homepage":163,"download_link":164,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":165,"fetched_at":31},"fancybox-for-wordpress","FancyBox for WordPress","3.3.7","colorlibplugins","https:\u002F\u002Fprofiles.wordpress.org\u002Fcolorlibplugins\u002F","\u003Cp>Seamlessly integrates FancyBox into your blog: Upload, activate, and you’re done. Additional configuration optional.\u003C\u002Fp>\n\u003Cp>You can easily customize almost anything you can think about fancybox lightbox: the border, margin width and color, zoom speed, animation type, close button position, overlay color and opacity and even more advanced option like several options to group images into galleries, and more…\u003C\u002Fp>\n\u003Cp>By default, the plugin will use jQuery to apply FancyBox to ANY thumbnails that link directly to an image. This includes posts, the sidebar, etc, so you can activate it and it will be applied automatically.\u003C\u002Fp>\n\u003Ch4>Further Reading\u003C\u002Fh4>\n\u003Cp>This plugin is developed and maintained by Colorlib. Which is well know for their free \u003Ca href=\"https:\u002F\u002Fcolorlib.com\u002Fwp\u002Fthemes\u002F\" rel=\"nofollow ugc\">\u003C\u002Fa>WordPress themes. However, now they are looking to extend their presence in plugin development and believe that FancyBox lightbox is a great way to start.\u003C\u002Fp>\n\u003Cp>If you are new to WordPress and want to lear more we have got you covered. Colorlib will teach you have to \u003Ca href=\"https:\u002F\u002Fcolorlib.com\u002F\" rel=\"nofollow ugc\">start a blog\u003C\u002Fa> or \u003Ca href=\"https:\u002F\u002Fcolorlib.com\u002Fwp\u002Fhow-to-make-a-website\u002F\" rel=\"nofollow ugc\">create a website\u003C\u002Fa> and much more. If you are already familiar with WordPress you likely want to learn how to make it faster and more reliable. That’s when you want to look into hosting and more specifically \u003Ca href=\"http:\u002F\u002Fcolorlib.com\u002Fwp\u002Fwordpress-hosting\" rel=\"nofollow ugc\">WordPress hosting\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>If you enjoy using FancyBox lightbox for WordPress please leave a \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Ffancybox-for-wordpress\u002Freviews\u002F?filter=5\" rel=\"ugc\">positive feedback\u003C\u002Fa>. We are committed to make it the best lightbox plugin for WordPress.\u003C\u002Fp>\n","Seamlessly integrates FancyBox lightbox into your WordPress blog: Upload, activate, and you're done. Additional configuration optional.",1940597,92,"2025-05-07T14:18:00.000Z",[159,98,160,161,162],"fancybox","lightbox","photos","pictures","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffancybox-for-wordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffancybox-for-wordpress.3.3.7.zip","2025-05-13 00:00:00",{"slug":167,"name":168,"version":169,"author":170,"author_profile":171,"description":172,"short_description":173,"active_installs":174,"downloaded":175,"rating":176,"num_ratings":177,"last_updated":178,"tested_up_to":114,"requires_at_least":179,"requires_php":180,"tags":181,"homepage":187,"download_link":188,"security_score":123,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"image-sizes","ThumbPress – Image Management Suite for Performance and Optimization","5.8.37","Codexpert, Inc","https:\u002F\u002Fprofiles.wordpress.org\u002Fcodexpert\u002F","\u003Cp>🚀 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002F\" rel=\"nofollow ugc\">Pro Version\u003C\u002Fa> | 🔵 \u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002FThumbPressCo\u002F\" rel=\"nofollow ugc\">Facebook\u003C\u002Fa> | 🐦 \u003Ca href=\"https:\u002F\u002Ftwitter.com\u002FThumbPressCo\u002F\" rel=\"nofollow ugc\">Twitter\u003C\u002Fa> | 👥 \u003Ca href=\"https:\u002F\u002Fwww.linkedin.com\u002Fcompany\u002Fthumbpress\u002F\" rel=\"nofollow ugc\">LinkedIn\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>How many images and thumbnails do you have on your WordPress site? Can’t count, right?\u003C\u002Fp>\n\u003Cp>Managing those images and thumbnails is harder than counting them. ThumbPress, the one-stop WordPress image management plugin makes this easier than ever.\u003C\u002Fp>\n\u003Cp>Check out the exciting features below:\u003C\u002Fp>\n\u003Ch3>👉 All ThumbPress Features to Supercharge Your WordPress Image Management\u003C\u002Fh3>\n\u003Cp>💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fdisable-thumbnails\u002F\" rel=\"nofollow ugc\">Disable Thumbnails\u003C\u002Fa>\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fregenerate-thumbnails\u002F\" rel=\"nofollow ugc\">Regenerate Thumbnails\u003C\u002Fa>\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fdetect-unused-images\u002F\" rel=\"nofollow ugc\">Find Unused Images\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fimage-upload-limit\u002F\" rel=\"nofollow ugc\">Set Image Upload Limit\u003C\u002Fa>\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fdetect-large-images\u002F\" rel=\"nofollow ugc\">Detect Large Images\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fcompress-images\u002F\" rel=\"nofollow ugc\">Image Compression\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Freplace-image-with-new-version\u002F\" rel=\"nofollow ugc\">Replace Images\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fset-social-media-thumbnails\u002F\" rel=\"nofollow ugc\">Set Social Media Thumbnails\u003C\u002Fa>\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fimage-editor\u002F\" rel=\"nofollow ugc\">Image Editor\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fconvert-images-to-webp\u002F\" rel=\"nofollow ugc\">Convert to WebP\u003C\u002Fa>\u003Cbr \u002F>\n💥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fdisable-right-click\u002F\" rel=\"nofollow ugc\">Disable Right Click on Image\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Here are some of the key features of the ThumbPress plugin for WordPress Image Management –\u003C\u002Fp>\n\u003Ch4>🚀 Disable Thumbnails\u003C\u002Fh4>\n\u003Cp>When you upload an image using Media Uploader, WordPress generates multiple copies\u002Fthumbnails of that image. By default, WordPress generates 5 thumbnails:\u003Cbr \u002F>\n– Thumbnail\u003Cbr \u002F>\n– Medium\u003Cbr \u002F>\n– Medium-large\u003Cbr \u002F>\n– Large\u003Cbr \u002F>\n– Scaled\u003C\u002Fp>\n\u003Cp>Along with this, your themes and plugins add more thumbnails and most of these thumbnails remain unused.\u003C\u002Fp>\n\u003Cp>The result? Unnecessary additional images eat up your server space and slow down your site!\u003C\u002Fp>\n\u003Cp>This is where the Disable feature comes into the picture. Just install the plugin and choose which of the image sizes you want to prevent from generating.\u003C\u002Fp>\n\u003Ch4>🚀 Regenerate Thumbnails\u003C\u002Fh4>\n\u003Cp>Regenerate thumbnails on your WordPress site at any moment, regardless of their sizes. No more worrying about lost thumbnails — our WordPress plugin guarantees swift restoration, keeping your site’s visual appeal flawless and consistent. Start now and rebuild thumbnails on your WordPress site.\u003C\u002Fp>\n\u003Ch4>🚀 Social Media Thumbnails\u003C\u002Fh4>\n\u003Cp>ThumbPress enables you to assign unique thumbnails for various social media platforms, ensuring that an image intended for Facebook remains uncropped when shared on Twitter or LinkedIn. You can upload distinct thumbnails for each social media site.\u003C\u002Fp>\n\u003Ch4>🚀 Image Upload Limit\u003C\u002Fh4>\n\u003Cp>Set a maximum limit for image upload size and resolution to ensure faster loading times. Our feature allows you to customize these parameters according to your website requirements and prevent oversized images from slowing down your site.\u003C\u002Fp>\n\u003Ch4>🚀 Convert Images to WebP\u003C\u002Fh4>\n\u003Cp>In WordPress convert images to WebP in bulk or one by one without any effort. Convert JPG or PNG to WebP from the comfort of your favorite WordPress dashboard and upgrade your website’s performance without sacrificing image quality. This advanced function ensures your images remain crisp and clear while reducing file size compared to traditional formats. The image conversion to WebP format helps you in SEO and gets you better rankings as Google recommends this format.\u003C\u002Fp>\n\u003Ch4>🚀 Disable Right Click on Image\u003C\u002Fh4>\n\u003Cp>Disable the right-click function on your website, a simple yet effective way to deter visitors from downloading or copying your images and thumbnails. It’s a preventive measure that adds an extra layer of protection to your digital assets and keeps your visuals exclusive to your site.\u003C\u002Fp>\n\u003Ch3>👉 ThumbPress Pro Features\u003C\u002Fh3>\n\u003Cp>🔥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fdetect-large-images\u002F\" rel=\"nofollow ugc\">Detect Large Images\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n🔥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fdetect-unused-images\u002F\" rel=\"nofollow ugc\">Detect Unused Images\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n🔥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fcompress-images\u002F\" rel=\"nofollow ugc\">Compress Images\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n🔥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Freplace-image-with-new-version\u002F\" rel=\"nofollow ugc\">Replace Image with New Version\u003C\u002Fa> [Pro]\u003Cbr \u002F>\n🔥 \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fmodules\u002Fimage-editor\u002F\" rel=\"nofollow ugc\">Image Editor\u003C\u002Fa> [Pro]\u003C\u002Fp>\n\u003Cp>Check out our \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002F\" rel=\"nofollow ugc\">Pro Features\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fthumbpress.co\u002Fpricing\u002F\" rel=\"nofollow ugc\">Pricing Plans\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>🌟 Detect Large Images\u003C\u002Fh4>\n\u003Cp>Find and compress oversized images, or delete them entirely to get back valuable server space. It’s a great way to improve user experience by speeding up your site’s loading time and streamlining media files directly on the WordPress dashboard.\u003C\u002Fp>\n\u003Ch4>🌟 Find & Delete Unused Images on WordPress\u003C\u002Fh4>\n\u003Cp>Find unused images on WordPress and delete them by simply using ThumbPress. Unused images eat up your server space without adding any value to your website audiences. ThumbPress makes it easy for you to find all unused images and remove them from a very user-friendly interface with ThumbPress image optimizer.\u003C\u002Fp>\n\u003Ch4>🌟 Compress Images (The Easiest Image Compression Plugin on WordPress)\u003C\u002Fh4>\n\u003Cp>Optimize and have a blazing-fast website by using the WordPress image compression plugin ThumbPress. Our built-in WordPress image compression feature optimizes images to improve your site’s performance without losing visual quality. The plugin’s simple interface helps you compress WordPress effortlessly.\u003C\u002Fp>\n\u003Ch4>🌟 Replace Image with New Version\u003C\u002Fh4>\n\u003Cp>Replace images with newer versions without changing their existing links. It ensures that the same image will show up properly if used elsewhere. It’s the perfect solution for maintaining visual relevance.\u003C\u002Fp>\n\u003Ch4>🌟 Image Editor\u003C\u002Fh4>\n\u003Cp>We always try to upload the finest image to the site after all the editing stuff is done. But, sometimes, the previously uploaded images may require some brush-ups. In such cases, one option is to upload quite new images. The WordPress image editor feature of ThumbPress enables you to edit them right on your WordPress Dashboard. Try our simple and compact image editor tool today and bring perfection to your WordPress images.\u003C\u002Fp>\n\u003Ch3>Notes\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>ThumbPress uses \u003Ca href=\"https:\u002F\u002Fwww.intercom.com\u002F\" rel=\"nofollow ugc\">Intercom\u003C\u002Fa> and its API to provide live chat support right from the dashboard.\u003C\u002Fli>\n\u003Cli>Some third-party libraries are used to enable some features of the plugin. Kudos to the corresponding authors.\u003C\u002Fli>\n\u003C\u002Ful>\n","Disable Thumbnails, Regenerate Thumbnails, Compress Images, Convert to WebP, Find Unused and Large Images, Edit Images, and more with ThumbPress.",30000,1217337,72,106,"2026-01-13T09:27:00.000Z","6.0","7.0",[182,183,184,185,186],"compress-images","disable-thumbnails","image-editor","optimize-images","regenerate-thumbnails","https:\u002F\u002Fthumbpress.co","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fimage-sizes.5.8.37.zip",{"attackSurface":190,"codeSignals":241,"taintFlows":299,"riskAssessment":300,"analyzedAt":313},{"hooks":191,"ajaxHandlers":225,"restRoutes":238,"shortcodes":239,"cronEvents":240,"entryPointCount":28,"unprotectedCount":29},[192,198,201,205,210,214,218,222],{"type":193,"name":194,"callback":195,"file":196,"line":197},"action","plugins_loaded","ime_init_early","imagemagick-engine.php",79,{"type":193,"name":199,"callback":200,"file":196,"line":91},"init","ime_init",{"type":202,"name":203,"callback":204,"priority":145,"file":196,"line":101},"filter","intermediate_image_sizes_advanced","ime_filter_image_sizes",{"type":202,"name":206,"callback":207,"priority":208,"file":196,"line":209},"wp_read_image_metadata","ime_filter_read_image_metadata",10,86,{"type":202,"name":211,"callback":212,"priority":208,"file":196,"line":213},"wp_generate_attachment_metadata","ime_filter_attachment_metadata",87,{"type":193,"name":215,"callback":216,"file":196,"line":217},"admin_menu","ime_admin_menu",94,{"type":202,"name":219,"callback":220,"priority":208,"file":196,"line":221},"plugin_action_links","ime_filter_plugin_actions",95,{"type":202,"name":223,"callback":224,"priority":208,"file":196,"line":27},"media_meta","ime_filter_media_meta",[226,232,235],{"action":227,"nopriv":228,"callback":229,"hasNonce":230,"hasCapCheck":230,"file":196,"line":231},"ime_test_im_path",false,"ime_ajax_test_im_path",true,98,{"action":233,"nopriv":228,"callback":234,"hasNonce":230,"hasCapCheck":230,"file":196,"line":145},"ime_process_image","ime_ajax_process_image",{"action":236,"nopriv":228,"callback":237,"hasNonce":230,"hasCapCheck":230,"file":196,"line":123},"ime_regeneration_get_images","ime_ajax_regeneration_get_images",[],[],[],{"dangerousFunctions":242,"sqlUsage":250,"outputEscaping":255,"fileOperations":76,"externalRequests":29,"nonceChecks":297,"capabilityChecks":297,"bundledLibraries":298},[243,247],{"fn":244,"file":196,"line":245,"context":246},"exec",539,"@exec( '\"' . $fullpath . '\" --version', $output );",{"fn":244,"file":196,"line":248,"context":249},654,"exec( $cmd );",{"prepared":76,"raw":76,"locations":251},[252],{"file":196,"line":253,"context":254},683,"$wpdb->get_results() with variable interpolation",{"escaped":256,"rawEcho":257,"locations":258},7,19,[259,262,264,266,268,270,272,274,276,278,280,282,284,286,287,289,291,293,295],{"file":196,"line":260,"context":261},959,"raw output",{"file":196,"line":263,"context":261},1033,{"file":196,"line":265,"context":261},1085,{"file":196,"line":267,"context":261},1089,{"file":196,"line":269,"context":261},1120,{"file":196,"line":271,"context":261},1130,{"file":196,"line":273,"context":261},1165,{"file":196,"line":275,"context":261},1169,{"file":196,"line":277,"context":261},1178,{"file":196,"line":279,"context":261},1185,{"file":196,"line":281,"context":261},1186,{"file":196,"line":283,"context":261},1187,{"file":196,"line":285,"context":261},1188,{"file":196,"line":285,"context":261},{"file":196,"line":288,"context":261},1190,{"file":196,"line":290,"context":261},1231,{"file":196,"line":292,"context":261},1233,{"file":196,"line":294,"context":261},1236,{"file":196,"line":296,"context":261},1239,4,[],[],{"summary":301,"deductions":302},"The imagick-engine plugin v1.7.14 exhibits a mixed security posture. While it demonstrates good practices with no unprotected entry points (AJAX, REST API, shortcodes, cron) and a solid number of nonce and capability checks, significant concerns arise from the static analysis. The presence of two dangerous `exec` functions, especially without evidence of taint analysis being performed on them, is a major red flag. Coupled with only 27% of outputs being properly escaped and file operations present, this creates potential avenues for attackers if the inputs to these functions are not rigorously sanitized. The plugin's vulnerability history is a critical issue, with 3 known high-severity CVEs, all of which are surprisingly reported as currently unpatched, although the data contradicts this slightly. The common vulnerability types (OS Command Injection, Deserialization, CSRF) are particularly worrying as they often stem from improper handling of user input, which aligns with the static analysis findings regarding `exec` and output escaping. This plugin requires immediate attention to address its historical vulnerabilities and mitigate risks associated with its code signals.",[303,306,309,311],{"reason":304,"points":305},"3 known high severity unpatched CVEs",20,{"reason":307,"points":308},"2 dangerous functions (exec)",15,{"reason":310,"points":208},"Only 27% of outputs properly escaped",{"reason":312,"points":92},"File operations present","2026-03-16T17:15:38.754Z",{"wat":315,"direct":325},{"assetPaths":316,"generatorPatterns":319,"scriptPaths":320,"versionParams":322},[317,318],"\u002Fwp-content\u002Fplugins\u002Fimagemagick-engine\u002Fcss\u002Fime-admin.css","\u002Fwp-content\u002Fplugins\u002Fimagemagick-engine\u002Fjs\u002Fime-admin.js",[],[321],"https:\u002F\u002Fcdn.jsdelivr.net\u002Fnpm\u002Falpinejs@3.x.x\u002Fdist\u002Fcdn.min.js",[323,324],"imagemagick-engine\u002Fcss\u002Fime-admin.css?ver=","imagemagick-engine\u002Fjs\u002Fime-admin.js?ver=",{"cssClasses":326,"htmlComments":343,"htmlAttributes":347,"restEndpoints":355,"jsGlobals":356,"shortcodeOutput":358},[327,328,329,330,331,332,333,334,335,336,337,338,339,340,341,342],"ime-admin-page","ime-wrap","ime-modal","ime-modal-content","ime-modal-header","ime-modal-body","ime-modal-footer","ime-btn-primary","ime-btn-secondary","ime-btn-close","ime-button-group","ime-loading-spinner","ime-regenerate-progress","ime-regenerate-button","ime-notice","ime-notice-warning",[344,345,346],"\u003C!-- ImageMagick Engine Admin Page -->","\u003C!-- ImageMagick Engine Test IM Path Modal -->","\u003C!-- ImageMagick Engine Image Regeneration Modal -->",[348,349,350,351,352,353,354],"x-data","x-show","x-init","data-ime-modal-target","data-ime-modal-close","data-ime-modal-toggle","data-ime-modal-backdrop",[],[357],"ime_admin_ajax_object",[]]