File Manager for Dropbox Security & Risk Analysis

wordpress.org/plugins/integrate-dropbox

Secure Dropbox integration for WordPress. Manage, share, and embed files via blocks, shortcodes, and Elementor widgets.

300 active installs v1.3.9 PHP 7.4+ WP 6.2+ Updated Mar 9, 2026
cloud-integrationdropboxembedfile-managermedia
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is File Manager for Dropbox Safe to Use in 2026?

Generally Safe

Score 100/100

File Manager for Dropbox has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 25d ago
Risk Assessment

The "integrate-dropbox" plugin v1.3.9 exhibits a generally strong security posture based on the static analysis. A significant majority of SQL queries utilize prepared statements, and output escaping is also well-implemented, indicating good development practices to prevent common vulnerabilities like SQL injection and XSS. The plugin also employs nonce and capability checks for its entry points, which is a positive sign for secure handling of user actions. The absence of any recorded vulnerabilities in its history further reinforces this positive outlook, suggesting a history of secure code maintenance.

However, the presence of the `unserialize` function is a notable concern. While its usage is not detailed, unserialization of untrusted data can lead to severe vulnerabilities such as Remote Code Execution if not handled with extreme care and validation. The static analysis did not reveal any taint flows related to this function, but its mere presence warrants careful scrutiny. The plugin also bundles the Freemius and Guzzle libraries; their specific versions are noted, and while not flagged as outdated in this analysis, keeping bundled libraries up-to-date is crucial for security.

In conclusion, "integrate-dropbox" v1.3.9 appears to be a well-developed plugin with strong foundational security practices. The lack of historical vulnerabilities is a significant positive. The primary area for caution is the `unserialize` function, which, although not currently showing exploitable taint flows, represents a potential risk vector that requires ongoing vigilance and secure implementation. Bundled libraries should also be monitored for updates.

Key Concerns

  • Dangerous function unserialize used
  • Bundled library Freemius v1.0
  • Bundled library Guzzle
Vulnerabilities
None known

File Manager for Dropbox Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

File Manager for Dropbox Code Analysis

Dangerous Functions
1
Raw SQL Queries
2
236 prepared
Unescaped Output
12
205 escaped
Nonce Checks
5
Capability Checks
15
File Operations
9
External Requests
1
Bundled Libraries
2

Dangerous Functions Found

unserialize$value = unserialize( $value );models\Shortcode.php:566

Bundled Libraries

Freemius1.0Guzzle

SQL Query Safety

99% prepared238 total queries

Output Escaping

94% escaped217 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<Files> (models\Files.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

File Manager for Dropbox Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 3

noprivwp_ajax_indbox_authorizationincludes\CodeConfig.php:83
authwp_ajax_indbox_authorizationincludes\CodeConfig.php:84
authwp_ajax_ccpidb_retry_migrationincludes\Update.php:43

Shortcodes 1

[integrate_dropbox] includes\Shortcode.php:41
WordPress Hooks 42
actionadmin_menuincludes\Admin.php:16
actionadmin_noticesincludes\AdminNotice.php:16
actionrest_api_initincludes\API\ApiRegistry.php:26
actionadmin_noticesincludes\CodeConfig.php:85
actionccpidb_generate_file_media_info_eventincludes\CodeConfig.php:86
filterplugin_row_metaincludes\CodeConfig.php:87
actioninitincludes\CodeConfig.php:94
filterallowed_redirect_hostsincludes\CodeConfig.php:95
actionadmin_initincludes\CodeConfig.php:96
actionwp_insert_siteincludes\CodeConfig.php:98
filterquery_varsincludes\Content.php:24
actiontemplate_redirectincludes\Content.php:25
actionadmin_enqueue_scriptsincludes\Enqueue.php:22
actionwp_enqueue_scriptsincludes\Enqueue.php:23
actionplugins_loadedincludes\Integration.php:30
actioninitincludes\Integrations\Blocks.php:32
filterblock_categories_allincludes\Integrations\Blocks.php:33
actionelementor/editor/wp_headincludes\Integrations\Elementor.php:29
actionplugin_loadedincludes\Integrations\Elementor.php:30
actionelementor/elements/categories_registeredincludes\Integrations\Elementor.php:34
actionwpcf7_initincludes\Integrations\Forms\ContactForm7.php:29
actionwpcf7_admin_initincludes\Integrations\Forms\ContactForm7.php:30
filterwpcf7_validate_dropboxincludes\Integrations\Forms\ContactForm7.php:32
filterwpcf7_validate_dropbox*includes\Integrations\Forms\ContactForm7.php:33
actionpre_get_postsincludes\Integrations\MediaLibrary.php:20
filterccpidb_localize_dataincludes\Integrations\MediaLibrary.php:74
actionadmin_enqueue_scriptsincludes\Integrations\MediaLibrary.php:75
actionccpidb_sync_existing_dropbox_files_eventincludes\Schedule.php:18
actionccpidb_sync_media_library_eventincludes\Schedule.php:19
actionsave_postincludes\Shortcode\Locations.php:20
actionpost_updatedincludes\Shortcode\Locations.php:21
actionwp_trash_postincludes\Shortcode\Locations.php:22
actionuntrash_postincludes\Shortcode\Locations.php:23
actiondelete_postincludes\Shortcode\Locations.php:24
actionadmin_initincludes\Update.php:44
actionwp_dashboard_setupincludes\Update.php:115
actionadmin_initincludes\Updates\class-update-1.3.0.php:85
actionadmin_initincludes\Updates\class-update-1.3.0.php:86
actioninitincludes\Updates\class-update-1.3.2.php:32
actionadmin_initincludes\Updates\class-update-1.3.2.php:33
actionadmin_initincludes\Updates\class-update-1.3.4.php:38
actioninitincludes\Updates\class-update-1.3.5.php:38

Scheduled Events 2

ccpidb_sync_existing_dropbox_files_event
ccpidb_generate_file_media_info_event
Maintenance & Trust

File Manager for Dropbox Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 9, 2026
PHP min version7.4
Downloads15K

Community Trust

Rating92/100
Number of ratings8
Active installs300
Developer Profile

File Manager for Dropbox Developer Profile

CodeConfig

6 plugins · 720 total installs

97
trust score
Avg Security Score
95/100
Avg Patch Time
7 days
View full developer profile
Detection Fingerprints

How We Detect File Manager for Dropbox

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/integrate-dropbox/assets/css/vendor/bootstrap-v4.3.1/bootstrap.min.css/wp-content/plugins/integrate-dropbox/assets/css/admin/common.css/wp-content/plugins/integrate-dropbox/assets/css/admin/dashboard.css/wp-content/plugins/integrate-dropbox/assets/css/admin/settings.css/wp-content/plugins/integrate-dropbox/assets/css/admin/accounts.css/wp-content/plugins/integrate-dropbox/assets/css/admin/files.css/wp-content/plugins/integrate-dropbox/assets/css/admin/folders.css/wp-content/plugins/integrate-dropbox/assets/css/frontend/common.css+9 more
Script Paths
/wp-content/plugins/integrate-dropbox/assets/js/admin/common.js/wp-content/plugins/integrate-dropbox/assets/js/admin/dashboard.js/wp-content/plugins/integrate-dropbox/assets/js/admin/settings.js/wp-content/plugins/integrate-dropbox/assets/js/admin/accounts.js/wp-content/plugins/integrate-dropbox/assets/js/admin/files.js/wp-content/plugins/integrate-dropbox/assets/js/admin/folders.js+2 more
Version Parameters
integrate-dropbox/assets/css/vendor/bootstrap-v4.3.1/bootstrap.min.css?ver=integrate-dropbox/assets/css/admin/common.css?ver=integrate-dropbox/assets/css/admin/dashboard.css?ver=integrate-dropbox/assets/css/admin/settings.css?ver=integrate-dropbox/assets/css/admin/accounts.css?ver=integrate-dropbox/assets/css/admin/files.css?ver=integrate-dropbox/assets/css/admin/folders.css?ver=integrate-dropbox/assets/css/frontend/common.css?ver=integrate-dropbox/assets/css/frontend/folders.css?ver=integrate-dropbox/assets/js/admin/common.js?ver=integrate-dropbox/assets/js/admin/dashboard.js?ver=integrate-dropbox/assets/js/admin/settings.js?ver=integrate-dropbox/assets/js/admin/accounts.js?ver=integrate-dropbox/assets/js/admin/files.js?ver=integrate-dropbox/assets/js/admin/folders.js?ver=integrate-dropbox/assets/js/frontend/common.js?ver=integrate-dropbox/assets/js/frontend/folders.js?ver=

HTML / DOM Fingerprints

CSS Classes
ccpidb-admin-commonccpidb-dashboardccpidb-settingsccpidb-accountsccpidb-filesccpidb-foldersccpidb-frontend-commonccpidb-frontend-folders
HTML Comments
<!-- integrate-dropbox --><!-- File Manager for Dropbox --><!-- Automatically generated by the Freemius SDK --><!-- Freemius SDK END -->+2 more
Data Attributes
data-id="ccpidb-accounts"data-id="ccpidb-settings"data-id="ccpidb-dashboard"data-id="ccpidb-files"data-id="ccpidb-folders"data-id="ccpidb-admin-common"+2 more
JS Globals
window.ccpidb_ajax_objectwindow.ccpidb_varswindow.ccpidb_params
REST Endpoints
/wp-json/integrate-dropbox/v1/admin/wp-json/integrate-dropbox/v1/frontend
Shortcode Output
[integrate_dropbox][integrate_dropbox_folders]
FAQ

Frequently Asked Questions about File Manager for Dropbox