Total Findings
205
Security Grade
Active Installs
600K+
Coding Score
100/100
The Enable Media Replace plugin contains several critical security vulnerabilities that could lead to unauthorized file uploads, privilege escalation, and remote code execution. The most severe issues include missing nonce verification on AJAX handlers, insufficient capability checks, unvalidated file uploads, and direct superglobal usage without proper sanitization. The plugin appears to contain AI-generated code patterns with typical security oversights.
Show your audit status in your README or website.
<a href="https://wphealthkit.com/directory/enable-media-replace"><img src="https://wphealthkit.com/api/badge/enable-media-replace" alt="Enable Media Replace security audit by WP HealthKit" /></a>
Claim this listing to get a Verified badge, control public audits, and get automatic re-scans.
Claim This PluginGet a comprehensive security audit for your WordPress plugin or theme. Upload your zip and get results in minutes.
Start Free AuditProduction Ready
Not ReadyWP.org Ready
NoCompliance
Non-CompliantCoding Standards
100/100