WPKuaiYun Security & Risk Analysis

wordpress.org/plugins/wpkuaiyun

WordPress景安快云对象存储插件(WPKuaiYun),基于景安快云对象存储与WordPress实现静态资源到静态存储。

10 active installs v2.3 PHP 7.4+ WP 4.5.0+ Updated Feb 9, 2026
%e7%bd%91%e7%ab%99%e9%99%84%e4%bb%b6%e5%ad%98%e5%82%a8%e5%bf%ab%e4%ba%91%e5%ad%98%e5%82%a8%e6%99%af%e5%ae%89%e5%bf%ab%e4%ba%91%e5%af%b9%e8%b1%a1%e5%ad%98%e5%82%a8
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WPKuaiYun Safe to Use in 2026?

Generally Safe

Score 100/100

WPKuaiYun has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "wpkuaiyun" v2.3 plugin exhibits a strong security posture based on the provided static analysis. The plugin demonstrates good development practices by having no unprotected entry points, all SQL queries utilizing prepared statements, and all output properly escaped. This suggests a conscious effort to prevent common web vulnerabilities like SQL injection and cross-site scripting (XSS). The absence of dangerous functions and the limited number of file operations and external HTTP requests further contribute to a low-risk profile.

The vulnerability history, showing zero known CVEs and no recorded vulnerabilities, is a significant positive indicator. This suggests a stable and well-maintained plugin, free from known exploitable flaws. The lack of common vulnerability types in its history reinforces this. However, the presence of a nonce check and a capability check, while generally good practice, could indicate areas where potential privilege escalation or CSRF vulnerabilities might be mitigated. The limited data on taint analysis with no unsanitized flows further supports the low-risk assessment.

Overall, the plugin appears to be very secure with no obvious vulnerabilities identified in the static analysis or historical data. The strengths lie in its robust input handling and output sanitization, coupled with a clean vulnerability history. The only minor point of interest, though not a direct risk based on the data, would be to ensure the nonce and capability checks are correctly implemented to provide effective protection.

Vulnerabilities
None known

WPKuaiYun Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

WPKuaiYun Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
22 escaped
Nonce Checks
1
Capability Checks
1
File Operations
2
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped22 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
wpkuaiyun_setting_page (wpkuaiyun_setting_page.php:8)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

WPKuaiYun Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
filterwp_handle_uploadwpkuaiyun.php:28
filterwp_generate_attachment_metadatawpkuaiyun.php:29
actiondelete_attachmentwpkuaiyun.php:33
actionadmin_menuwpkuaiyun.php:36
Maintenance & Trust

WPKuaiYun Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedFeb 9, 2026
PHP min version7.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Alternatives

WPKuaiYun Alternatives

No alternatives data available yet.

Developer Profile

WPKuaiYun Developer Profile

老蒋和他的小伙伴

12 plugins · 4K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WPKuaiYun

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wpkuaiyun/css/wpkuaiyun.css/wp-content/plugins/wpkuaiyun/js/wpkuaiyun.js
Script Paths
/wp-content/plugins/wpkuaiyun/js/wpkuaiyun.js
Version Parameters
wpkuaiyun/css/wpkuaiyun.css?ver=wpkuaiyun/js/wpkuaiyun.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about WPKuaiYun