Imajinn – Magical AI Image Generation Security & Risk Analysis

wordpress.org/plugins/imajinn-ai

Generate the perfect royalty-free images for your blog in seconds with cutting-edge AI for a fraction of the cost of stock photo sites.

300 active installs v1.5.5 PHP 7.2+ WP 6.0+ Updated Nov 10, 2024
aiartdalleimage-generatorstock-photos
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Imajinn – Magical AI Image Generation Safe to Use in 2026?

Generally Safe

Score 92/100

Imajinn – Magical AI Image Generation has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The imajinn-ai plugin v1.5.5 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices regarding SQL queries and output escaping, with 100% of SQL using prepared statements and all outputs being properly escaped. It also has no recorded vulnerabilities or CVEs, suggesting a generally well-maintained codebase. However, a significant concern arises from the attack surface analysis, where 10 out of 11 AJAX handlers lack authentication checks. This exposes a large number of entry points to potential unauthorized access and manipulation, which is a critical security weakness. While no critical taint flows or dangerous functions were identified, the high number of unprotected AJAX endpoints could still lead to various security issues depending on their specific functionality.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

Imajinn – Magical AI Image Generation Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Imajinn – Magical AI Image Generation Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
13 escaped
Nonce Checks
1
Capability Checks
3
File Operations
1
External Requests
3
Bundled Libraries
0

Output Escaping

100% escaped13 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<imajinn-ai> (imajinn-ai.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
10 unprotected

Imajinn – Magical AI Image Generation Attack Surface

Entry Points11
Unprotected10

AJAX Handlers 11

authwp_ajax_imajinn-connectimajinn-ai.php:56
authwp_ajax_imajinn-refreshimajinn-ai.php:57
authwp_ajax_imajinn-account-urlimajinn-ai.php:58
authwp_ajax_imajinn-start-jobimajinn-ai.php:59
authwp_ajax_imajinn-check-jobimajinn-ai.php:60
authwp_ajax_imajinn-cancel-jobimajinn-ai.php:61
authwp_ajax_imajinn-face-repairimajinn-ai.php:62
authwp_ajax_imajinn-create-promptsimajinn-ai.php:63
authwp_ajax_imajinn-save-imageimajinn-ai.php:64
authwp_ajax_imajinn-tweetimajinn-ai.php:65
authwp_ajax_imajinn-dismiss-welcomeimajinn-ai.php:66
WordPress Hooks 6
actioninitimajinn-ai.php:46
actionenqueue_block_editor_assetsimajinn-ai.php:47
actioninitimajinn-ai.php:49
actionadmin_menuimajinn-ai.php:51
filterplugin_action_links_imajinn-ai/imajinn-ai.phpimajinn-ai.php:53
filternetwork_admin_plugin_action_links_imajinn-ai/imajinn-ai.phpimajinn-ai.php:54
Maintenance & Trust

Imajinn – Magical AI Image Generation Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedNov 10, 2024
PHP min version7.2
Downloads14K

Community Trust

Rating100/100
Number of ratings3
Active installs300
Developer Profile

Imajinn – Magical AI Image Generation Developer Profile

Aaron Edwards

4 plugins · 520 total installs

88
trust score
Avg Security Score
91/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Imajinn – Magical AI Image Generation

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/imajinn-ai/build/editor.css/wp-content/plugins/imajinn-ai/build/editor.js
Script Paths
/wp-content/plugins/imajinn-ai/build/editor.js
Version Parameters
imajinn-ai/build/editor.css?ver=imajinn-ai/build/editor.js?ver=

HTML / DOM Fingerprints

CSS Classes
imajinn-block-editor
Data Attributes
data-noncedata-connecteddata-remaining-creditsdata-emaildata-checkout-urldata-history+2 more
JS Globals
IMAJINN
REST Endpoints
/wp-json/imajinn-ai/v1/connect/wp-json/imajinn-ai/v1/refresh/wp-json/imajinn-ai/v1/account-url/wp-json/imajinn-ai/v1/start-job/wp-json/imajinn-ai/v1/check-job/wp-json/imajinn-ai/v1/cancel-job/wp-json/imajinn-ai/v1/face-repair/wp-json/imajinn-ai/v1/create-prompts/wp-json/imajinn-ai/v1/save-image/wp-json/imajinn-ai/v1/tweet-url/wp-json/imajinn-ai/v1/dismiss-welcome
FAQ

Frequently Asked Questions about Imajinn – Magical AI Image Generation