The best way to

Allow SVG Uploads in WordPress

30 day money back guarantee.
Includes one year of support and updates.

screencapture-plugins-dev-wp-admin-upload-php-1488533026124

Features

Sanitised SVGs

Don't open up security holes in your WordPress site by allowing uploads of unsanitised files.

SVGO Optimisation

You'll have the option to run your SVGs through our SVGO server on upload to save you space.

View SVGs in the Media Library

Gone are the days of guessing which SVG is the correct one, we'll enable SVG previews in the WordPress media library.

Choose Who Can Upload

Restrict SVG uploads to certain users on your WordPress site or allow them to all.

Why Choose WP SVG?

Why should you choose WP SVG over any of the free plugins out there and isn't it just a line of code to allow SVG uploads?

SVGs are inherently insecure, this is because contrary to what a lot of people believe, SVG is not an image format. SVG is actually document format, more specifically a standalone XML application. For example, SVG files allows JavaScript to be embedded and SVG readers, i.e. your browser, are expected to execute it.

Because SVG is also an XML based format, when you allow SVG uploads you also open up your server to XML based attacks. These attacks affect not only your website but also the server it resides on.

Security researcher Mario Heiderich wrote a talk on SVG security that shows how JavaScript embedded within an SVG managed to call him on Skype.

Now you now a little about SVG security, why should you use WP SVG over the other options out there?

WP SVG has a sanitisation library built in to it. This library is built and maintained by myself separately to the WP SVG plugin, meaning that we can get more eyes on the sanitiser to potentially help fix any bugs that are found. If sanitisation wasn't enough, WP SVG also gives you the option to restrict the ability to upload SVGs to WordPress to certain users.

I also have a free version available in the WordPress Plugin directory. This free plugin utilises the same sanitisation library as WP SVG so please at least use that!

30 day money back guarantee. Includes one year of support and updates.