Sample Content for ACF Security & Risk Analysis

wordpress.org/plugins/sample-content-for-acf

Gives you the power to instantly populate fields with lorem ipsum text, placeholder images and more.

0 active installs v1.0.3 PHP 5.6+ WP 5.9+ Updated Jun 10, 2024
acfcontentcustom-fieldslorem-ipsumplaceholder
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Sample Content for ACF Safe to Use in 2026?

Generally Safe

Score 92/100

Sample Content for ACF has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "sample-content-for-acf" v1.0.3 exhibits a generally good security posture with several positive attributes. The code analysis indicates a strong adherence to secure coding practices, with all SQL queries utilizing prepared statements and a high percentage of output being properly escaped. The absence of dangerous functions, file operations, and external HTTP requests further contributes to its security. The plugin also demonstrates awareness of security mechanisms with a nonce check present.

However, there is a significant concern regarding the plugin's attack surface. It possesses three AJAX handlers, with one of them lacking proper authentication checks. This unprotected entry point presents a potential risk, as it could be exploited by unauthenticated users to trigger unintended actions within the plugin. While there's a nonce check in place, its scope and effectiveness on this specific AJAX handler are not detailed, leaving room for potential issues if not correctly implemented. The lack of recorded vulnerabilities in its history is a positive sign, suggesting a history of secure development, but it doesn't negate the immediate risk identified in the static analysis.

In conclusion, "sample-content-for-acf" v1.0.3 is largely well-developed from a security perspective. The strengths lie in its robust SQL handling and output escaping. The primary weakness is the presence of an unprotected AJAX endpoint, which warrants immediate attention. If this AJAX handler can be accessed and manipulated by unauthenticated users, it could lead to security vulnerabilities. The absence of past CVEs is encouraging, but the current code analysis highlights a specific, actionable risk.

Key Concerns

  • Unprotected AJAX handler
  • Missing capability checks
Vulnerabilities
None known

Sample Content for ACF Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Sample Content for ACF Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
20 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

91% escaped22 total outputs
Attack Surface
1 unprotected

Sample Content for ACF Attack Surface

Entry Points3
Unprotected1

AJAX Handlers 3

authwp_ajax_acfscTestQueryacfsc.php:106
authwp_ajax_acfscImageImportacfsc.php:149
authwp_ajax_acfscVideoImportacfsc.php:150
WordPress Hooks 7
actionadmin_noticesacfsc.php:20
actionadmin_noticesacfsc.php:42
actionacf/settings/load_jsonacfsc.php:53
actionadmin_enqueue_scriptsacfsc.php:58
actionacf/initacfsc.php:95
actionadmin_noticesacfsc.php:317
filteracf/location/rule_values/options_pageacfsc.php:340
Maintenance & Trust

Sample Content for ACF Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedJun 10, 2024
PHP min version5.6
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Sample Content for ACF Developer Profile

phillmill

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Sample Content for ACF

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sample-content-for-acf/css/acfsc.css/wp-content/plugins/sample-content-for-acf/js/classes/SampleContentGenerator.js/wp-content/plugins/sample-content-for-acf/js/classes/ACFSampleContentPopulator.js/wp-content/plugins/sample-content-for-acf/js/acfsc-options.js/wp-content/plugins/sample-content-for-acf/js/ACFSCInterface.js
Script Paths
/wp-content/plugins/sample-content-for-acf/js/classes/SampleContentGenerator.js/wp-content/plugins/sample-content-for-acf/js/classes/ACFSampleContentPopulator.js/wp-content/plugins/sample-content-for-acf/js/acfsc-options.js/wp-content/plugins/sample-content-for-acf/js/ACFSCInterface.js
Version Parameters
sample-content-for-acf/css/acfsc.css?ver=sample-content-for-acf/js/classes/SampleContentGenerator.js?ver=sample-content-for-acf/js/classes/ACFSampleContentPopulator.js?ver=sample-content-for-acf/js/acfsc-options.js?ver=sample-content-for-acf/js/ACFSCInterface.js?ver=

HTML / DOM Fingerprints

JS Globals
acfscConfig
REST Endpoints
/wp-json/acf/v3/
FAQ

Frequently Asked Questions about Sample Content for ACF