Media Library File Size Security & Risk Analysis

wordpress.org/plugins/media-library-file-size

New in 2026: 'Analyze' feature to find largest files by visual pie chart. Displays the Media Library file sizes, including collective varian …

5K active installs v1.7 PHP 5.6+ WP 4.1+ Updated Feb 6, 2026
file-sizeimage-sizelibrary-sizemedia-library
99
A · Safe
CVEs total1
Unpatched0
Last CVEJan 21, 2026
Safety Verdict

Is Media Library File Size Safe to Use in 2026?

Generally Safe

Score 99/100

Media Library File Size has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Jan 21, 2026Updated 1mo ago
Risk Assessment

The media-library-file-size plugin v1.7 exhibits a generally strong security posture. The static analysis reveals a well-protected attack surface, with all identified AJAX handlers possessing authentication checks. The absence of dangerous functions, file operations, and external HTTP requests further contributes to its security. Code signals are mostly positive, with a good percentage of SQL queries using prepared statements and a reasonable rate of output escaping. Nonce and capability checks are also present on all entry points.

However, there are minor areas for improvement. While no critical or high severity taint flows were detected, and the majority of SQL queries are prepared, there's a minority (40%) that are not. Similarly, while most outputs are escaped, 36% are not, which could potentially lead to cross-site scripting vulnerabilities if they handle user-supplied data. The plugin has a history of one medium severity vulnerability, which was related to missing authorization. This suggests a historical tendency towards authorization issues, although the current version appears to have addressed this.

Overall, the plugin is in good standing. The developers have implemented several robust security practices, and the current version seems to have mitigated past authorization issues. The minor concerns around unprepared SQL queries and unescaped output are not critical but warrant attention for further hardening. The vulnerability history, while present, is not a current major threat as it's patched.

Key Concerns

  • SQL queries not using prepared statements
  • Unescaped output
  • Past medium vulnerability (Missing Authorization)
Vulnerabilities
1

Media Library File Size Security Vulnerabilities

CVEs by Year

1 CVE in 2026
2026
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2026-24569medium · 4.3Missing Authorization

Media Library File Size <= 1.6.7 - Missing Authorization

Jan 21, 2026 Patched in 1.6.8 (8d)
Code Analysis
Analyzed Mar 16, 2026

Media Library File Size Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
3 prepared
Unescaped Output
18
32 escaped
Nonce Checks
6
Capability Checks
9
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

60% prepared5 total queries

Output Escaping

64% escaped50 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
analyzeList (analyze.php:174)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Media Library File Size Attack Surface

Entry Points6
Unprotected0

AJAX Handlers 6

authwp_ajax_SS88MLFS_analyzeSummaryanalyze.php:22
authwp_ajax_SS88MLFS_analyzeListanalyze.php:23
authwp_ajax_SS88MLFS_analyzeDeleteanalyze.php:24
authwp_ajax_SS88MLFS_indexss88-media-library-file-size.php:54
authwp_ajax_SS88MLFS_indexCountss88-media-library-file-size.php:55
authwp_ajax_SS88MLFS_attachmentDetailsss88-media-library-file-size.php:56
WordPress Hooks 18
actionadmin_menuanalyze.php:20
actionadmin_enqueue_scriptsanalyze.php:21
actionplugins_loadedanalyze.php:470
filtermanage_media_custom_columnss88-media-library-file-size.php:35
filtermanage_media_columnsss88-media-library-file-size.php:36
actionmanage_upload_sortable_columnsss88-media-library-file-size.php:37
actionpre_get_postsss88-media-library-file-size.php:38
actionadmin_enqueue_scriptsss88-media-library-file-size.php:39
actionadmin_footerss88-media-library-file-size.php:40
actionadd_meta_boxes_attachmentss88-media-library-file-size.php:45
actionadmin_enqueue_scriptsss88-media-library-file-size.php:46
actionattachment_submitbox_misc_actionsss88-media-library-file-size.php:47
actionadmin_footerss88-media-library-file-size.php:48
filterwp_generate_attachment_metadatass88-media-library-file-size.php:60
filterwp_update_attachment_metadatass88-media-library-file-size.php:61
filterplugin_row_metass88-media-library-file-size.php:63
actionactivated_pluginss88-media-library-file-size.php:65
actionplugins_loadedss88-media-library-file-size.php:551
Maintenance & Trust

Media Library File Size Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 6, 2026
PHP min version5.6
Downloads44K

Community Trust

Rating90/100
Number of ratings4
Active installs5K
Developer Profile

Media Library File Size Developer Profile

Sully

6 plugins · 18K total installs

99
trust score
Avg Security Score
98/100
Avg Patch Time
5 days
View full developer profile
Detection Fingerprints

How We Detect Media Library File Size

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/media-library-file-size/assets/js/media.js/wp-content/plugins/media-library-file-size/assets/css/media.css/wp-content/plugins/media-library-file-size/assets/js/noty.js/wp-content/plugins/media-library-file-size/assets/css/noty.css
Script Paths
/wp-content/plugins/media-library-file-size/assets/js/media.js/wp-content/plugins/media-library-file-size/assets/js/noty.js
Version Parameters
media-library-file-size/assets/js/media.js?ver=media-library-file-size/assets/css/media.css?ver=media-library-file-size/assets/js/noty.js?ver=media-library-file-size/assets/css/noty.css?ver=

HTML / DOM Fingerprints

CSS Classes
misc-pub-ss88mlfsvss88MLFS_VV_metaboxss88MLFS_VV_boxmisc-pub-filesize
Data Attributes
data-ss88mlfs-id
JS Globals
ss88MLFSss88
REST Endpoints
/wp-json/ss88mlfs/v1/attachment-details
FAQ

Frequently Asked Questions about Media Library File Size