
NextGenThemes jsDelivr CDN Security & Risk Analysis
wordpress.org/plugins/nextgenthemes-jsdelivr-thisFree CDN for for all assets from wordpress.org Github and NPM.
Is NextGenThemes jsDelivr CDN Safe to Use in 2026?
Generally Safe
Score 100/100NextGenThemes jsDelivr CDN has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided analysis, the "nextgenthemes-jsdelivr-this" plugin version 1.3.3 presents a strong security posture with no identified vulnerabilities in its history or critical issues flagged by static analysis. The absence of known CVEs and a clean vulnerability history indicate a well-maintained and secure plugin. Furthermore, the code analysis reveals a minimal attack surface with zero entry points, zero AJAX handlers, zero REST API routes, and zero shortcodes. The code also demonstrates good practices by using prepared statements for all SQL queries and a high percentage of properly escaped output, reducing the risk of injection and cross-site scripting vulnerabilities. The lack of dangerous functions and critical taint flows is also a positive sign.
However, there are a few areas that, while not currently indicating vulnerabilities, warrant attention for future development or auditing. The plugin has zero nonce checks and zero capability checks, meaning that any potential future entry points, if introduced, would be unprotected by standard WordPress security mechanisms. While the current attack surface is zero, the absence of these checks could become a significant risk if functionality is added without proper authorization. Additionally, the presence of file operations and external HTTP requests, while not flagged as problematic in this analysis, are always potential vectors for vulnerabilities if not handled with extreme care and proper sanitization.
Key Concerns
- No Nonce Checks Present
- No Capability Checks Present
- File Operations Present
- External HTTP Requests Present
NextGenThemes jsDelivr CDN Security Vulnerabilities
NextGenThemes jsDelivr CDN Code Analysis
Output Escaping
NextGenThemes jsDelivr CDN Attack Surface
WordPress Hooks 11
Maintenance & Trust
NextGenThemes jsDelivr CDN Maintenance & Trust
Maintenance Signals
Community Trust
NextGenThemes jsDelivr CDN Alternatives
commonWP
commonwp
Offload open source static assets to the free, public CDN.
xiaodu-jsdelivr
xiaodu-jsdelivr
Scan and serve static files from jsDelivr CDN (https://jsdelivr.com).
SOGO Add Script to Individual Pages Header Footer
oh-add-script-header-footer
Simple plugin to add script to header and footer for individual pages & posts
TC Custom JavaScript
tc-custom-javascript
Add custom JavaScript to your site from a professional editor in the WordPress admin.
Use Google Libraries
use-google-libraries
Allows your site to use common javascript libraries from Google's AJAX Libraries CDN, rather than from WordPress's own copies.
NextGenThemes jsDelivr CDN Developer Profile
7 plugins · 21K total installs
How We Detect NextGenThemes jsDelivr CDN
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nextgenthemes-jsdelivr-this/dialog.css/wp-content/plugins/nextgenthemes-jsdelivr-this/dialog.js/wp-content/plugins/nextgenthemes-jsdelivr-this/dialog.js/wp-content/plugins/nextgenthemes-jsdelivr-this/dialog.css?ver=/wp-content/plugins/nextgenthemes-jsdelivr-this/dialog.js?ver=HTML / DOM Fingerprints
ngt-jsdelivr-dialogngt-jsdelivr-dialog__headermedia-modal-closemedia-modal-iconscreen-reader-textdata-wp-el="editor"data-wp-element="editor"window.wpApiSettings