
Automatic YouTube Gallery Security & Risk Analysis
wordpress.org/plugins/automatic-youtube-galleryBuild dynamic video galleries by simply adding a YouTube USERNAME, CHANNEL, PLAYLIST, SEARCH KEYWORDS, or a custom list of video URLs.
Is Automatic YouTube Gallery Safe to Use in 2026?
Generally Safe
Score 100/100Automatic YouTube Gallery has a strong security track record. Known vulnerabilities have been patched promptly.
The "automatic-youtube-gallery" v2.7.1 plugin exhibits a mixed security posture. While it demonstrates good practices in output escaping and SQL query preparation, significant concerns arise from its attack surface. A substantial number of AJAX handlers (6 out of 6) lack proper authentication checks, presenting a direct avenue for unauthorized actions if exploited. The presence of the `unserialize` function, though not explicitly shown to be vulnerable in the provided taint analysis, is a known risk factor that should be carefully managed with input validation. The plugin's vulnerability history shows one medium-severity CVE in the past, which is currently patched. However, the pattern of past vulnerabilities, including "Missing Authorization," reinforces the concern regarding the unprotected AJAX endpoints. The bundled Freemius library also needs to be monitored for its version and potential vulnerabilities. Overall, while some security fundamentals are present, the high number of unprotected entry points, particularly AJAX handlers, represents a significant security weakness that requires immediate attention.
Key Concerns
- Unprotected AJAX handlers
- Dangerous function unserialize present
- Bundled library Freemius v1.0
- Medium vulnerability in history
Automatic YouTube Gallery Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Automatic YouTube Gallery <= 2.3.3 - Missing Authorization via AJAX actions
Automatic YouTube Gallery Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Automatic YouTube Gallery Attack Surface
AJAX Handlers 6
Shortcodes 1
WordPress Hooks 25
Scheduled Events 1
Maintenance & Trust
Automatic YouTube Gallery Maintenance & Trust
Maintenance Signals
Community Trust
Automatic YouTube Gallery Alternatives
Video Gallery – YouTube Playlist, Channel Gallery by YotuWP
yotuwp-easy-youtube-embed
Modern responsive YouTube video gallery helps your website getting noticed from visitors, increase the reach and stand out from the competitors.
Bubuku Disable Related Videos
bubuku-disable-related-videos
Plugin to disable related YouTube videos that appear at the end of the video when you embed it in Gutenberg
Embed Plus for YouTube Gallery, Livestream and Lazy Loading with Facades
youtube-embed-plus
A multi-featured plugin to embed YouTube in WordPress. Embed a video, YouTube channel gallery, playlist, or YouTube livestream. Defer JavaScript too!
StreamWeasels YouTube Integration
streamweasels-youtube-integration
Embed YouTube content on your WordPress site. Easily embed a YouTube channel, shorts, gallery, feed, or live on your website.
GS YouTube Gallery – Video Feed, Channel Playlist & YouTube Slider
gs-youtube-gallery
Create a Stunning & Responsive Video Gallery for Channel or Playlist Videos.
Automatic YouTube Gallery Developer Profile
3 plugins · 29K total installs
How We Detect Automatic YouTube Gallery
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/automatic-youtube-gallery/assets/css/responsive-gallery.css/wp-content/plugins/automatic-youtube-gallery/assets/css/admin-style.css/wp-content/plugins/automatic-youtube-gallery/assets/js/jquery.isotope.min.js/wp-content/plugins/automatic-youtube-gallery/assets/js/isotope.min.js/wp-content/plugins/automatic-youtube-gallery/assets/js/custom.js/wp-content/plugins/automatic-youtube-gallery/assets/js/admin.js/wp-content/plugins/automatic-youtube-gallery/vendor/freemius/assets/js/freemius-sdk.min.jsvendor/freemius/assets/js/freemius-sdk.min.jsautomatic-youtube-gallery/assets/css/responsive-gallery.css?ver=automatic-youtube-gallery/assets/css/admin-style.css?ver=automatic-youtube-gallery/assets/js/jquery.isotope.min.js?ver=automatic-youtube-gallery/assets/js/isotope.min.js?ver=automatic-youtube-gallery/assets/js/custom.js?ver=automatic-youtube-gallery/assets/js/admin.js?ver=vendor/freemius/assets/js/freemius-sdk.min.js?ver=HTML / DOM Fingerprints
ayg-gallery-containerayg-gallery-itemayg-video-wrapperayg-video-thumbnailayg-video-titleayg-load-more-buttonayg-gallery-settingsayg-admin-wrap+2 more<!-- Exit if accessed directly --><!-- The code that runs during plugin activation. --><!-- The code that runs during plugin deactivation. --><!-- Begins execution of the plugin. -->+22 moredata-gallery-iddata-youtube-iddata-playlist-iddata-channel-iddata-search-keywordsdata-ayg-settingsayg_custom_scriptayg_ajax_object<div class="ayg-gallery-container"<div class="ayg-gallery-item"<div class="ayg-video-wrapper"<div class="ayg-video-thumbnail"