
Imajize Security & Risk Analysis
wordpress.org/plugins/imajizeImajize enables you to easily embed a 360° product spin into any Wordpress post or WooCommerce product by simply pasting an embed link.
Is Imajize Safe to Use in 2026?
Generally Safe
Score 85/100Imajize has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The imajize plugin version 1.0.10 demonstrates a strong security posture based on the provided static analysis. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events, coupled with zero known CVEs and a lack of reported vulnerabilities, suggests a minimal attack surface and a history of secure development. The code also shows good practices by not utilizing dangerous functions, performing file operations, or making external HTTP requests, and all SQL queries are properly prepared.
However, there are areas for improvement. The most significant concern is the low percentage of properly escaped output (20%). This indicates that sensitive data might be susceptible to cross-site scripting (XSS) vulnerabilities if user-supplied data is not adequately sanitized before being displayed. Furthermore, the complete absence of nonce checks and capability checks, while not directly exploitable given the current attack surface, represents a potential weakness. If new entry points are added in future versions, these security mechanisms would be crucial for preventing unauthorized actions. The lack of taint analysis results is also notable; while it could mean no issues were found, it might also indicate limitations in the analysis performed. Overall, the plugin is currently secure due to its limited functionality, but the unescaped output is a significant concern that needs addressing.
Key Concerns
- Insufficient output escaping
- No nonce checks implemented
- No capability checks implemented
Imajize Security Vulnerabilities
Imajize Code Analysis
Output Escaping
Imajize Attack Surface
WordPress Hooks 11
Maintenance & Trust
Imajize Maintenance & Trust
Maintenance Signals
Community Trust
Imajize Alternatives
360 Javascript Viewer
360deg-javascript-viewer
Turn a series of images into an interactive 360 degree view.
360 Spin For Woocommerce
glo3dapp-woospin
With a push of a button of any smartphone or professional camera, capture, edit, share and embed 360° photo of any product to your woocommerce online …
Essential Addons for Elementor – Popular Elementor Templates & Widgets
essential-addons-for-elementor-lite
Elementor addon offering 110+ widgets and templates — Elementor Gallery, Slider, Form, Post Grid, Menu, Accordion, WooCommerce & more.
Google for WooCommerce
google-listings-and-ads
Native integration with Google that allows merchants to easily display their products across Google’s network.
WooPayments: Integrated WooCommerce Payments
woocommerce-payments
Securely accept credit and debit cards on your WooCommerce store. Manage payments without leaving your WordPress dashboard. Only with WooPayments.
Imajize Developer Profile
1 plugin · 80 total installs
How We Detect Imajize
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/imajize/js/imajize-public.js/wp-content/plugins/imajize/css/imajize-public.css/wp-content/plugins/imajize/css/imajize-admin.css/wp-content/plugins/imajize/js/imajize-admin.js/wp-content/plugins/imajize/js/imajize-public.js/wp-content/plugins/imajize/js/imajize-admin.jsimajize-public?ver=imajize-admin?ver=HTML / DOM Fingerprints
data-imajize-urlImajizePublic/wp-json/imajize/v1/get_url