Ngx Image Resizer Security & Risk Analysis

wordpress.org/plugins/ngx-image-resizer

Requires at least: 4.4 Tested up to: 4.9 Stable tag: 1.0.0 License: GNU General Public License v2 or later License URI: http://www.gnu.

0 active installs v1.0.0 PHP + WP + Updated Aug 24, 2018
external-featured-imagesfeatured-imagesimageresize
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Ngx Image Resizer Safe to Use in 2026?

Generally Safe

Score 85/100

Ngx Image Resizer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The ngx-image-resizer v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. It demonstrates good development practices by having no identified dangerous functions, no raw SQL queries, and a high percentage of properly escaped output. The absence of file operations and external HTTP requests further minimizes potential attack vectors. Crucially, the plugin features a very limited attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events that are unprotected. The presence of nonce and capability checks indicates an effort to secure its entry points, though the limited attack surface makes this less critical in practice.

The taint analysis reveals no identified flows with unsanitized paths, suggesting that data flowing through the plugin is handled securely. The vulnerability history is also exceptionally clean, with zero known CVEs, indicating a history of secure development or a lack of past security scrutiny. This combination of clean static analysis and historical data points to a plugin that is likely very secure in its current version. However, the plugin's minimal functionality as suggested by the zero entry points might contribute to its clean record. A more complex plugin with a larger attack surface would require more extensive testing to reach similar conclusions.

Overall, ngx-image-resizer v1.0.0 appears to be a well-secured plugin. The lack of vulnerabilities in its history and the positive indicators in the static analysis are significant strengths. The minimal attack surface is also a positive sign, as it limits the opportunities for attackers to exploit potential weaknesses. While the static analysis and history are reassuring, it's always prudent for any software, especially in a security-sensitive environment, to undergo regular security audits and stay updated.

Vulnerabilities
None known

Ngx Image Resizer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Ngx Image Resizer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
16 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

94% escaped17 total outputs
Attack Surface

Ngx Image Resizer Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
filteradmin_post_thumbnail_htmlclass-nginx-image-resizer-admin.php:35
actionsave_postclass-nginx-image-resizer-admin.php:36
actionadmin_initclass-nginx-image-resizer-admin.php:39
actioninitclass-nginx-image-resizer.php:54
filterintermediate_image_sizes_advancedclass-nginx-image-resizer.php:72
filterimage_downsizeclass-nginx-image-resizer.php:75
filterthe_contentclass-nginx-image-resizer.php:78
filterget_post_galleriesclass-nginx-image-resizer.php:79
filterwp_calculate_image_srcsetclass-nginx-image-resizer.php:82
filterwp_calculate_image_sizesclass-nginx-image-resizer.php:83
Maintenance & Trust

Ngx Image Resizer Maintenance & Trust

Maintenance Signals

WordPress version tested
Last updatedAug 24, 2018
PHP min version
Downloads994

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Ngx Image Resizer Developer Profile

toannth

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Ngx Image Resizer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ngx-image-resizer/css/ngx-image-resizer.css
Script Paths
/wp-content/plugins/ngx-image-resizer/js/ngx-image-resizer.js
Version Parameters
ngx-image-resizer/css/ngx-image-resizer.css?ver=ngx-image-resizer/js/ngx-image-resizer.js?ver=

HTML / DOM Fingerprints

JS Globals
ngx_image_resizer_params
FAQ

Frequently Asked Questions about Ngx Image Resizer