
Media Library File Size Security & Risk Analysis
wordpress.org/plugins/media-library-file-sizeNew in 2026: 'Analyze' feature to find largest files by visual pie chart. Displays the Media Library file sizes, including collective varian …
Is Media Library File Size Safe to Use in 2026?
Generally Safe
Score 99/100Media Library File Size has a strong security track record. Known vulnerabilities have been patched promptly.
The media-library-file-size plugin v1.7 exhibits a generally strong security posture. The static analysis reveals a well-protected attack surface, with all identified AJAX handlers possessing authentication checks. The absence of dangerous functions, file operations, and external HTTP requests further contributes to its security. Code signals are mostly positive, with a good percentage of SQL queries using prepared statements and a reasonable rate of output escaping. Nonce and capability checks are also present on all entry points.
However, there are minor areas for improvement. While no critical or high severity taint flows were detected, and the majority of SQL queries are prepared, there's a minority (40%) that are not. Similarly, while most outputs are escaped, 36% are not, which could potentially lead to cross-site scripting vulnerabilities if they handle user-supplied data. The plugin has a history of one medium severity vulnerability, which was related to missing authorization. This suggests a historical tendency towards authorization issues, although the current version appears to have addressed this.
Overall, the plugin is in good standing. The developers have implemented several robust security practices, and the current version seems to have mitigated past authorization issues. The minor concerns around unprepared SQL queries and unescaped output are not critical but warrant attention for further hardening. The vulnerability history, while present, is not a current major threat as it's patched.
Key Concerns
- SQL queries not using prepared statements
- Unescaped output
- Past medium vulnerability (Missing Authorization)
Media Library File Size Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Media Library File Size <= 1.6.7 - Missing Authorization
Media Library File Size Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Media Library File Size Attack Surface
AJAX Handlers 6
WordPress Hooks 18
Maintenance & Trust
Media Library File Size Maintenance & Trust
Maintenance Signals
Community Trust
Media Library File Size Alternatives
SMNTCS Image Dimensions
smntcs-image-dimensions
Shows the image dimension and the image file size in the media library.
Simple Upload Weight Limit
simple-upload-weight-limit
Keep your server lean. Set a strict maximum file size for all user uploads except administrators.
TWG Media File Size Column
twg-media-file-size-column
Adds a column displaying the file size of media files in the WordPress media library.
WP Prevent Generating Extra Image Sizes
wp-prevent-generating-extra-image-sizes
License: GPLv2 or later WordPress plugin to prevent extra image sizes from being generated.
FileBird – WordPress Media Library Folders & File Manager
filebird
Organize thousands of WordPress media files in folders / categories with ease.
Media Library File Size Developer Profile
6 plugins · 18K total installs
How We Detect Media Library File Size
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/media-library-file-size/assets/js/media.js/wp-content/plugins/media-library-file-size/assets/css/media.css/wp-content/plugins/media-library-file-size/assets/js/noty.js/wp-content/plugins/media-library-file-size/assets/css/noty.css/wp-content/plugins/media-library-file-size/assets/js/media.js/wp-content/plugins/media-library-file-size/assets/js/noty.jsmedia-library-file-size/assets/js/media.js?ver=media-library-file-size/assets/css/media.css?ver=media-library-file-size/assets/js/noty.js?ver=media-library-file-size/assets/css/noty.css?ver=HTML / DOM Fingerprints
misc-pub-ss88mlfsvss88MLFS_VV_metaboxss88MLFS_VV_boxmisc-pub-filesizedata-ss88mlfs-idss88MLFSss88/wp-json/ss88mlfs/v1/attachment-details