
Media Manager Plus Security & Risk Analysis
wordpress.org/plugins/uber-mediaUpgrade the WordPress Media Manager and add support for Flickr, Instagram, 500px, Facebook etc.
Is Media Manager Plus Safe to Use in 2026?
Generally Safe
Score 85/100Media Manager Plus has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "uber-media" plugin v1.4.5 exhibits a mixed security posture. While it demonstrates good practices such as using prepared statements for all SQL queries and a lack of recorded vulnerabilities, several areas raise concerns. The static analysis reveals a notable attack surface with 5 AJAX handlers, of which 2 lack authentication checks. This is a significant risk, as unauthenticated AJAX endpoints can be exploited by attackers to perform unauthorized actions or exfiltrate data. Furthermore, the output escaping is only properly implemented in 38% of cases, indicating a potential for cross-site scripting (XSS) vulnerabilities in the remaining 62% of outputs. The absence of any known CVEs or past vulnerabilities is a positive sign, suggesting a generally diligent development team, but it does not negate the risks identified in the current code analysis.
Key Concerns
- Unprotected AJAX handlers
- Insufficient output escaping
- Limited capability checks
Media Manager Plus Security Vulnerabilities
Media Manager Plus Release Timeline
Media Manager Plus Code Analysis
Output Escaping
Data Flow Analysis
Media Manager Plus Attack Surface
AJAX Handlers 5
WordPress Hooks 18
Maintenance & Trust
Media Manager Plus Maintenance & Trust
Maintenance Signals
Community Trust
Media Manager Plus Alternatives
WP Copyright
wp-copyright
Enforces copyright discipline by blurring all uploaded images as long as the associated copyright info is undefined.
Instant Images – One-click Image Uploads from Unsplash, Openverse, Pixabay, Pexels, and Giphy
instant-images
One-click uploads from Unsplash, Openverse, Pixabay, Pexels, and Giphy directly to your WordPress media library.
Media Cleaner: Clean your WordPress!
media-cleaner
Clean your WordPress! Eliminate unused and broken media files. For a faster, and better website.
Media Library Assistant
media-library-assistant
Enhances the Media Library; powerful gallery and list shortcodes, full taxonomy support, IPTC/EXIF/XMP/PDF processing, bulk/quick edit.
Quick Featured Images
quick-featured-images
The time-saving solution for managing tons of featured images within minutes: Set, replace and delete in bulk and set default images for future posts.
Media Manager Plus Developer Profile
1 plugin · 100 total installs
How We Detect Media Manager Plus
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/uber-media/assets/css/uber-media.css/wp-content/plugins/uber-media/assets/js/uber-media.js/wp-content/plugins/uber-media/assets/js/uber-media.jsuber-media/assets/js/uber-media.js?ver=uber-media/assets/css/uber-media.css?ver=HTML / DOM Fingerprints
mmp-welcome<!-- @todo:delete below commented lines --><!--
<h3><?php /*_e('Introducing Extensions', 'uber-media'); */?></h3>
<?php /*$this->get_extensions(); */?>
-->data-nonceuber_media/wp-json/uber_media/v1/settings/wp-json/uber_media/v1/sources/wp-json/uber_media/v1/sources/(?P<id>[\w-]+)/connect