Recently Scanned Upload WordPress Plugins

35 indexed plugins

Plugins

35

Active Installs

375k+

Average Score

71

Audited

35

RankPluginScoreErrorsWarningsInstallsAddedUpdatedTop Issue
#1Shared Files – File Upload & Download Manager3951844k+Nonce verification recommended
#2WP GIF Uploader33117441k+Text Domain Mismatch
#3Make Filename Lowercase98311k+Missing direct file access protection
#4Canvas Image Resize751911k+Output is not escaped
#5Upload SVG84381k+Non-prefixed global variable
#6Post Lists View Custom334621502k+Missing Arg Domain
#7WP Upload Restriction8659162k+Text Domain Mismatch
#8Upload Url and Path Enabler831012k+Missing Arg Domain
#9Thumbnail Crop Position644312k+Output is not escaped
#10Pro Mime Types – Manage file media types8055982k+Non-prefixed global variable
#11Microsoft Azure Storage for WordPress8625262k+Missing Translators Comment
#12Enable vCard Upload97312k+outdated tested upto header
#13Bulk Change Media Author4225202k+Unsafe printing function
#14Add From Server Reloaded99212k+Missing direct file access protection
#15Allow ePUB and MOBI formats upload98222k+Missing direct file access protection
#16Clean Filenames94243k+Missing nonce verification
#17WEN Featured Image761183k+Input is not validated
#18Plus WebP or AVIF98245k+Non-prefixed global variable
#19Custom Upload Dir556375k+Missing Arg Domain
#20Drag and Drop Multiple File Upload for WooCommerce49114295k+Text Domain Mismatch
#21WP Original Media Path693536k+Non Singular String Literal Domain
#22GD bbPress Attachments352106k+wp redirect wp redirect
#23Enable virtual card upload – vcf,vcard98227k+mismatched plugin name
#24Max upload filesize83389k+Input is not validated
#25Media Deduper3660999k+Missing Arg Domain
#26Filenames to latin98219k+Missing direct file access protection
#27Disable Real MIME Check983010k+Missing direct file access protection
#28Iptanus File Upload245091,32510k+Non-prefixed function
#29Disable "BIG Image" Threshold983110k+Missing direct file access protection
#30Auto Upload Images40621320k+Unsafe printing function
#31Clean Image Filenames826130k+Output is not escaped
#32File Upload Types by WPForms982930k+Non-prefixed function
#33WP Extra File Types43112640k+Request data is not unslashed
#34Drag and Drop Multiple File Upload for Contact Form 736823660k+wp function not compatible with requires wp
#35Easy Theme and Plugin Upgrades94292070k+Discouraged PHP function