WPaigen AI Generator Security & Risk Analysis

wordpress.org/plugins/wpaigen-ai-generator

WPaigen AI Generator: AI-powered plugin for generating high-quality, SEO-optimized articles and content directly in your WP dashboard.

0 active installs v4.0.0 PHP 7.4+ WP 5.8+ Updated Dec 13, 2025
aiarticle-generatorcontent-creationcontent-generatorseo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WPaigen AI Generator Safe to Use in 2026?

Generally Safe

Score 100/100

WPaigen AI Generator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "wpaigen-ai-generator" plugin v4.0.0 exhibits a generally strong security posture with excellent adherence to best practices such as 100% output escaping and significant use of prepared statements for SQL queries. The complete absence of known CVEs and a lack of recorded vulnerabilities in its history further bolster this positive impression, suggesting diligent development and maintenance. However, the static analysis reveals two critical taint flows with unsanitized paths. While the exact nature of these flows is not detailed, unsanitized paths can often lead to path traversal vulnerabilities, allowing attackers to access or manipulate files outside of the intended directory. This is a significant concern that warrants immediate investigation and remediation, despite the otherwise robust security measures in place.

Key Concerns

  • Critical taint flow with unsanitized paths
  • High severity taint flow with unsanitized paths
Vulnerabilities
None known

WPaigen AI Generator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

WPaigen AI Generator Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
14 prepared
Unescaped Output
0
57 escaped
Nonce Checks
12
Capability Checks
2
File Operations
0
External Requests
3
Bundled Libraries
0

SQL Query Safety

82% prepared17 total queries

Output Escaping

100% escaped57 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

4 flows2 with unsanitized paths
ajax_validate_license (includes\class-wpaigen-admin.php:149)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

WPaigen AI Generator Attack Surface

Entry Points10
Unprotected0

AJAX Handlers 10

authwp_ajax_wpaigen_validate_licenseincludes\class-wpaigen-admin.php:19
authwp_ajax_wpaigen_generate_articleincludes\class-wpaigen-admin.php:20
authwp_ajax_wpaigen_create_transactionincludes\class-wpaigen-admin.php:21
authwp_ajax_wpaigen_get_google_trendsincludes\class-wpaigen-admin.php:22
authwp_ajax_wpaigen_schedule_articleincludes\class-wpaigen-admin.php:23
authwp_ajax_wpaigen_get_scheduled_postsincludes\class-wpaigen-admin.php:24
authwp_ajax_wpaigen_delete_scheduleincludes\class-wpaigen-admin.php:25
authwp_ajax_wpaigen_get_product_priceincludes\class-wpaigen-admin.php:26
authwp_ajax_wpaigen_create_paypal_orderincludes\class-wpaigen-admin.php:27
authwp_ajax_wpaigen_capture_paypal_paymentincludes\class-wpaigen-admin.php:28
WordPress Hooks 7
actionadmin_menuincludes\class-wpaigen-admin.php:17
actionadmin_enqueue_scriptsincludes\class-wpaigen-admin.php:18
actionadmin_initincludes\class-wpaigen-admin.php:30
actioninitincludes\class-wpaigen-scheduler.php:11
actionwpaigen_process_scheduled_postsincludes\class-wpaigen-scheduler.php:12
filtercron_schedulesincludes\class-wpaigen-scheduler.php:15
actionplugins_loadedwpaigen-ai-generator.php:45

Scheduled Events 1

wpaigen_process_scheduled_posts
Maintenance & Trust

WPaigen AI Generator Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedDec 13, 2025
PHP min version7.4
Downloads492

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

WPaigen AI Generator Developer Profile

taruna97

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WPaigen AI Generator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wpaigen-ai-generator/admin/css/wpaigen-admin.css/wp-content/plugins/wpaigen-ai-generator/admin/js/wpaigen-admin.js
Version Parameters
wpaigen-ai-generator/admin/css/wpaigen-admin.css?ver=wpaigen-ai-generator/admin/js/wpaigen-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
wpaigen-dashboard-wrapwpaigen-generate-wrapwpaigen-schedule-wrapwpaigen-license-wrap
JS Globals
wpaigen_ajax_object
REST Endpoints
/wp-json/wpaigen/v1/validate-license/wp-json/wpaigen/v1/generate-article/wp-json/wpaigen/v1/create-transaction/wp-json/wpaigen/v1/get-google-trends/wp-json/wpaigen/v1/schedule-article/wp-json/wpaigen/v1/get-scheduled-posts/wp-json/wpaigen/v1/delete-schedule/wp-json/wpaigen/v1/get-product-price/wp-json/wpaigen/v1/create-paypal-order/wp-json/wpaigen/v1/capture-paypal-payment
FAQ

Frequently Asked Questions about WPaigen AI Generator