
Just Image Optimizer Security & Risk Analysis
wordpress.org/plugins/just-image-optimizerJust Image Optimizer uses Google Page Speed Insights API to compress image files, improve performance and boost your SEO rank.
Is Just Image Optimizer Safe to Use in 2026?
Generally Safe
Score 85/100Just Image Optimizer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "just-image-optimizer" v1.1.3 plugin exhibits several significant security concerns despite a clean vulnerability history. The most pressing issue is the presence of two AJAX handlers that lack authentication checks. This creates a direct attack surface where unauthorized users could potentially trigger plugin functionalities. Furthermore, the taint analysis reveals six high-severity flows with unsanitized paths. This indicates that user-supplied data is being processed in a way that could lead to unintended or malicious outcomes, potentially allowing for path traversal or other file-related vulnerabilities. While the plugin demonstrates good practices in SQL query preparation and output escaping, the unprotected AJAX endpoints and the high number of unsanitized taint flows present a substantial risk. The absence of any recorded vulnerabilities is a positive sign, but it does not negate the risks identified in the static and taint analysis. The plugin needs immediate attention to secure its entry points and properly sanitize all user inputs to mitigate potential exploitation.
Key Concerns
- AJAX handlers without authentication checks
- High-severity taint flows with unsanitized paths
- No nonce checks on AJAX
- No capability checks
Just Image Optimizer Security Vulnerabilities
Just Image Optimizer Release Timeline
Just Image Optimizer Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Just Image Optimizer Attack Surface
AJAX Handlers 2
WordPress Hooks 25
Scheduled Events 1
Maintenance & Trust
Just Image Optimizer Maintenance & Trust
Maintenance Signals
Community Trust
Just Image Optimizer Alternatives
ShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF
shortpixel-image-optimiser
Optimize images & PDFs smartly. Create and compress next-gen WebP and AVIF formats. Smart crop and resize.
Kraken.io Image Optimizer
kraken-image-optimizer
This plugin allows you to optimize your WordPress images through the Kraken.io API, the world's most advanced image optimization and resizing API.
Compress, Resize & Lazy Load Images – WPvivid Image Optimization
wpvivid-imgoptim
Optimize, compress and resize images in WordPress in bulk. Lazy load images. Auto resize and optimize images upon upload.
Image Optimizer, Resizer and CDN – Sirv
sirv
Serve perfectly optimized images, videos, models and 360 spins. The best WordPress & WooCommerce CDN plugin for media.
Resize Control – Compress and resize images after upload
resize-control
Auto resize, optimize images; ensure compression for WP accounts to save time, speed, space, and bandwidth.
Just Image Optimizer Developer Profile
5 plugins · 2K total installs
How We Detect Just Image Optimizer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/just-image-optimizer/assets/css/styles.css/wp-content/plugins/just-image-optimizer/assets/js/optimize.js/wp-content/plugins/just-image-optimizer/assets/js/optimize.jsjust-image-optimizer/assets/css/styles.css?ver=just-image-optimizer/assets/js/optimize.js?ver=HTML / DOM Fingerprints
jri-attachement-meta-infojri-attachement-meta-info-contentdata-iddata-actiondata-noncejust_img_optimize_obj