Clean Filenames Security & Risk Analysis

wordpress.org/plugins/sanitize-spanish-filenames

Removes or replace international or special characters that can make your filenames not compliant with some servers or services.

3K active installs v1.2.4 PHP 5.6+ WP 4.9+ Updated Apr 14, 2025
filenameinternational-characterssanitizeuploadutf-8
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Clean Filenames Safe to Use in 2026?

Generally Safe

Score 100/100

Clean Filenames has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "sanitize-spanish-filenames" plugin v1.2.4 exhibits an excellent security posture. The code analysis reveals no identified attack surface, dangerous functions, unsanitized outputs, or insecure file operations. Notably, all SQL queries, if any existed, are prepared, and there are no external HTTP requests or bundled libraries that could introduce vulnerabilities. The absence of any recorded CVEs, either historical or currently unpatched, further reinforces this positive assessment. The lack of taint flows with unsanitized paths or critical/high severity issues suggests robust input validation and sanitization practices within the plugin's code. The plugin also appears to be designed with security best practices in mind, as indicated by the complete absence of unprotected entry points across AJAX handlers, REST API routes, shortcodes, and cron events. The plugin's strength lies in its minimal attack surface and clean code, with no detected security weaknesses. Therefore, the overall risk associated with this plugin is very low.

Vulnerabilities
None known

Clean Filenames Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Clean Filenames Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Clean Filenames Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
filtersanitize_file_namesanitize-spanish-filenames.php:26
actiongform_pre_processsanitize-spanish-filenames.php:321
Maintenance & Trust

Clean Filenames Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedApr 14, 2025
PHP min version5.6
Downloads29K

Community Trust

Rating92/100
Number of ratings8
Active installs3K
Developer Profile

Clean Filenames Developer Profile

Samuel Aguilera

14 plugins · 98K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Clean Filenames

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Clean Filenames