
Aklamator – Float Video on your blog Security & Risk Analysis
wordpress.org/plugins/aklamator-float-video-on-your-blogAdd Float Video widget to your wordpress and promote your YouTube video, channel or playlist (with e.g. new campaign). Additionally Aklamator service …
Is Aklamator – Float Video on your blog Safe to Use in 2026?
Generally Safe
Score 85/100Aklamator – Float Video on your blog has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'aklamator-float-video-on-your-blog' plugin v2.0.2 presents a mixed security posture. On the positive side, the static analysis reveals no identified attack surface through common WordPress entry points like AJAX, REST API, shortcodes, or cron events. Furthermore, there are no recorded CVEs, indicating a historically clean security record. The plugin also exclusively uses prepared statements for SQL queries and performs no file operations, which are strong security practices.
However, there are significant concerns. The most glaring issue is that 100% of its 35 output operations are not properly escaped. This is a critical vulnerability that could allow for cross-site scripting (XSS) attacks if any of the data being output originates from user input or external sources. The absence of nonce and capability checks on all identified entry points, coupled with the lack of taint analysis data, further amplifies this risk. While the number of entry points is zero, the potential for XSS in the output still represents a serious threat.
In conclusion, while the plugin avoids common attack vectors and has a clean vulnerability history, the complete lack of output escaping is a severe weakness. This oversight could lead to critical security flaws. The zero-day nature of potential XSS vulnerabilities means they are not yet covered by historical CVEs, making proactive attention to output sanitization crucial for mitigating risks.
Key Concerns
- All outputs are unescaped
- No nonce checks on identified entry points
- No capability checks on identified entry points
- Bundled outdated library (DataTables v1.9.3)
Aklamator – Float Video on your blog Security Vulnerabilities
Aklamator – Float Video on your blog Release Timeline
Aklamator – Float Video on your blog Code Analysis
Bundled Libraries
Output Escaping
Aklamator – Float Video on your blog Attack Surface
WordPress Hooks 4
Maintenance & Trust
Aklamator – Float Video on your blog Maintenance & Trust
Maintenance Signals
Community Trust
Aklamator – Float Video on your blog Alternatives
Video Gallery – YouTube Playlist, Channel Gallery by YotuWP
yotuwp-easy-youtube-embed
Modern responsive YouTube video gallery helps your website getting noticed from visitors, increase the reach and stand out from the competitors.
Video Gallery – YouTube Gallery & Responsive Video Playlist
youtube-showcase
Responsive video gallery and YouTube gallery for WordPress. Create a video grid or YouTube playlist visually in the block editor. No shortcodes!
Arrow Video Feed, Custom Video Channel Feed
add-youtube-feed
Stable tag: 1.1.1 License: GPLv2 or later License URI: http://www.gnu.org/licenses/gpl-2.0.html YouTube Plugin is the best YouTube Feed Plugin to Di …
GS YouTube Gallery – Video Feed, Channel Playlist & YouTube Slider
gs-youtube-gallery
Create a Stunning & Responsive Video Gallery for Channel or Playlist Videos.
Modus YouTube Channel
modus-youtube-channel
This nice plugin will display your YouTube Channel, Playlist, or both in responsive rows and columns which you set, you can also modify the amount of …
Aklamator – Float Video on your blog Developer Profile
7 plugins · 50 total installs
How We Detect Aklamator – Float Video on your blog
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/aklamator-float-video-on-your-blog/aklamator-float-video.css/wp-content/plugins/aklamator-float-video-on-your-blog/aklamator-float-video.js/wp-content/plugins/aklamator-float-video-on-your-blog/images/aklamator-icon.png/wp-content/plugins/aklamator-float-video-on-your-blog/aklamator-float-video.jsHTML / DOM Fingerprints
aklamator-float-video-widgetaklamator-float-video-close-button created 2data-aklamator-app-iddata-aklamator-intro-urldata-aklamator-powered-bydata-aklamator-photo-urldata-aklamator-widget-idaklamator_fv_data