
Rocket Galleries Security & Risk Analysis
wordpress.org/plugins/rocket-galleriesRocket Galleries is the gallery manager WordPress never had. Easily create and manage galleries from one intuitive panel.
Is Rocket Galleries Safe to Use in 2026?
Generally Safe
Score 85/100Rocket Galleries has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "rocket-galleries" v0.2.0.2 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for SQL queries and appears to have no known historical vulnerabilities. The attack surface is small, with only one shortcode identified as an entry point, and it doesn't perform external HTTP requests. However, significant concerns arise from the static analysis. The presence of five instances of `create_function` is a critical red flag, as this function is deprecated and can be a source of serious security vulnerabilities, including code injection. Furthermore, a concerning 52% of output escaping is not properly handled, which could lead to cross-site scripting (XSS) vulnerabilities. The taint analysis reveals three high-severity flows with unsanitized paths, indicating potential risks for attackers to manipulate file operations or data that could lead to unauthorized access or execution. The complete absence of capability checks on its entry points, coupled with the taint analysis findings, suggests that sensitive operations might be exploitable by unauthenticated users.
Key Concerns
- Use of deprecated and dangerous `create_function`
- High percentage of unescaped output (potential XSS)
- High severity taint flows with unsanitized paths
- No capability checks on entry points
- File operations found in code
Rocket Galleries Security Vulnerabilities
Rocket Galleries Release Timeline
Rocket Galleries Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Rocket Galleries Attack Surface
Shortcodes 1
WordPress Hooks 33
Maintenance & Trust
Rocket Galleries Maintenance & Trust
Maintenance Signals
Community Trust
Rocket Galleries Alternatives
weGallery
we-gallery
The missing gallery of WordPress. Simple, yet the effective gallery plugin!
Responsive Lightbox & Gallery
responsive-lightbox
The most popular lightbox plugin and responsive gallery builder for WordPress.
ACF Galerie 4
acf-galerie-4
Enhance your WordPress website with ACF Galerie 4, a powerful and customizable gallery plugin.
Polaroid Gallery
polaroid-gallery
Polaroid Gallery is a CSS3 & jQuery Image Gallery plugin for WordPress Media Library.
Image Wall
image-wall
Browse posts/pages by their images, displayed randomly on an infinitely scrollable page. The images link back to where they are attached.
Rocket Galleries Developer Profile
2 plugins · 1K total installs
How We Detect Rocket Galleries
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rocket-galleries/css/admin.css/wp-content/plugins/rocket-galleries/css/frontend.css/wp-content/plugins/rocket-galleries/css/thickbox.css/wp-content/plugins/rocket-galleries/js/admin.js/wp-content/plugins/rocket-galleries/js/frontend.js/wp-content/plugins/rocket-galleries/js/galleries.js/wp-content/plugins/rocket-galleries/js/thickbox.js/wp-content/plugins/rocket-galleries/js/admin.js/wp-content/plugins/rocket-galleries/js/frontend.js/wp-content/plugins/rocket-galleries/js/galleries.js/wp-content/plugins/rocket-galleries/js/thickbox.jsrocket-galleries/css/admin.css?ver=rocket-galleries/css/frontend.css?ver=rocket-galleries/css/thickbox.css?ver=rocket-galleries/js/admin.js?ver=rocket-galleries/js/frontend.js?ver=rocket-galleries/js/galleries.js?ver=rocket-galleries/js/thickbox.js?ver=HTML / DOM Fingerprints
rocket-gallery-wrapperrg-gallery-containerrg-slideshow-controlsrg-prev-buttonrg-next-buttonrg-caption-containerrg-loading-indicator<!-- Rocket Galleries Admin Styles --><!-- Rocket Galleries Frontend Styles --><!-- Rocket Galleries Thickbox Styles --><!-- Rocket Galleries Admin Scripts -->+3 moredata-rocket-gallery-iddata-rg-transitiondata-rg-intervalRocketGalleriesrg_admin_paramsrg_frontend_params/wp-json/rocketgalleries/v1/gallery//wp-json/rocketgalleries/v1/settings/[rocketgalleries<div class="rocket-gallery-wrapper">