
NR Image Gallery Security & Risk Analysis
wordpress.org/plugins/nr-image-galleryNR Image Gallery is a Simple responsive image gallery.
Is NR Image Gallery Safe to Use in 2026?
Generally Safe
Score 85/100NR Image Gallery has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'nr-image-gallery' plugin v1.0 exhibits a generally good security posture with a small attack surface and a lack of known vulnerabilities. The static analysis reveals no critical or high severity issues in taint flows, indicating that user-supplied input is likely handled with care regarding path traversal. Furthermore, the presence of 11 nonce checks suggests an effort to prevent Cross-Site Request Forgery. The plugin also avoids making external HTTP requests, which can be a vector for certain attacks.
However, there are areas for improvement. The plugin has 24 SQL queries with only 8% using prepared statements, representing a significant risk of SQL injection vulnerabilities if user input is not strictly validated and sanitized before being included in queries. Additionally, while 70% of output is properly escaped, the remaining 30% could lead to Cross-Site Scripting (XSS) vulnerabilities. The absence of capability checks on any entry points is a concern, as it implies that unauthorized users might be able to trigger plugin functionality. The vulnerability history being entirely clean is a positive sign, but it doesn't negate the potential risks identified in the static analysis.
In conclusion, 'nr-image-gallery' v1.0 benefits from a minimal attack surface and no known past vulnerabilities. However, the high percentage of non-prepared SQL queries and the lack of capability checks on entry points represent substantial security risks that should be addressed to ensure a robust security profile.
Key Concerns
- SQL queries without prepared statements
- Unescaped output in 30% of cases
- No capability checks on entry points
NR Image Gallery Security Vulnerabilities
NR Image Gallery Release Timeline
NR Image Gallery Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
NR Image Gallery Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
NR Image Gallery Maintenance & Trust
Maintenance Signals
Community Trust
NR Image Gallery Alternatives
Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery
nextgen-gallery
The most popular gallery plugin that lets you create galleries and albums in seconds.
Photo Gallery by 10Web – Mobile-Friendly Image Gallery
photo-gallery
Photo Gallery is a powerful image gallery plugin with a list of advanced options for creating responsive image galleries with beautiful lightbox.
Envira Gallery – Image Photo Gallery, Albums, Video Gallery, Slideshows & More
envira-gallery-lite
Envira Gallery is a fast, easy and powerful gallery builder with lightbox, masonry and grid layouts, albums, videos, and responsive displays and more
Gallery by FooGallery
foogallery
Photo Gallery, Image Gallery by FooGallery — fast, responsive, SEO-optimized, and packed with beautiful layouts.
Robo Gallery – Photo & Image Slider
robo-gallery
Robo Gallery is a powerful image gallery and photo gallery plugin with advanced features to create responsive galleries with a beautiful lightbox
NR Image Gallery Developer Profile
2 plugins · 110 total installs
How We Detect NR Image Gallery
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nr-image-gallery/css/bjqs.css/wp-content/plugins/nr-image-gallery/css/nr-image-gallery.css/wp-content/plugins/nr-image-gallery/js/bjqs-1.3.min.js/wp-content/plugins/nr-image-gallery/js/nr-image-gallery.js/wp-content/plugins/nr-image-gallery/js/bjqs-1.3.min.js/wp-content/plugins/nr-image-gallery/js/nr-image-gallery.js/wp-content/plugins/nr-image-gallery/js/image-uploader.js/wp-content/plugins/nr-image-gallery/js/nr-image-gallery-admin.jsbjqs-1.3.min.js?ver=nr-image-gallery.js?ver=image-uploader.js?ver=nr-image-gallery-admin.js?ver=bjqs.css?ver=nr-image-gallery.css?ver=nr-image-gallery-admin.css?ver=HTML / DOM Fingerprints
nr-image-gallery-custom-styleNRIGALLERY_PLUGIN_BASENAMENRIGALLERY_PLUGIN_NAMENRIGALLERY_PLUGIN_DIR