
Awesome Youtube Subscribe Security & Risk Analysis
wordpress.org/plugins/awsome-youtube-subscribeHere is a short description of the plugin. This should be no more than 150 characters. No markup here.
Is Awesome Youtube Subscribe Safe to Use in 2026?
Generally Safe
Score 85/100Awesome Youtube Subscribe has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'awsome-youtube-subscribe' v2.0 exhibits a mixed security posture. On the positive side, it has no known vulnerabilities, does not perform file operations or external HTTP requests, and all identified SQL queries utilize prepared statements. The attack surface is also relatively small, with only one shortcode identified and no AJAX handlers or REST API routes that appear unprotected. The absence of any critical or high severity taint analysis findings is also a good sign.
However, there are significant areas of concern. The most prominent is the low percentage of properly escaped output (29%), indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. Coupled with the complete absence of nonce checks and capability checks, any user-supplied data that makes its way into output without proper sanitization could be exploited. The lack of capability checks is particularly worrying as it implies that any user, regardless of their role, could potentially trigger functionality that might lead to unintended consequences if XSS is achievable.
Given the clean vulnerability history, it might suggest that the plugin has historically been well-maintained or that the limited scope of its functionality has not attracted attacks. However, the current code analysis reveals potential weaknesses that could be exploited. The strengths lie in the absence of direct SQL injection risks and external dependencies, but the weakness in output escaping and lack of authentication/authorization checks on entry points are substantial risks that need immediate attention.
Key Concerns
- Low output escaping percentage
- Missing nonce checks
- Missing capability checks
Awesome Youtube Subscribe Security Vulnerabilities
Awesome Youtube Subscribe Code Analysis
Output Escaping
Awesome Youtube Subscribe Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Awesome Youtube Subscribe Maintenance & Trust
Maintenance Signals
Community Trust
Awesome Youtube Subscribe Alternatives
Another Mailchimp Widget
another-mailchimp-widget
Simple Mailchimp subscription form to your lists and groups.
Easy Subscribe Button Widget
widget-youtube-subscribtion
This is widget of showing youtube subscribe button. Previously Youtube Subscribe Button Widget.
YouTube Subscribe widget
youtube-subscribe-widget
Add a widget to display YouTube subscribe box in the sidebar.
Auto Last Youtube Video
auto-last-youtube-video
This plugin provides both Widget and Shortcode to show latest videos from any public Youtube channel.
TechGasp Tube Master
youtube-master
TechGasp Tube Master displays Youtube Playlists or Single Videos with optional Youtube Subscribe Channel button and Google Hangouts.
Awesome Youtube Subscribe Developer Profile
13 plugins · 370 total installs
How We Detect Awesome Youtube Subscribe
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
g-ytsubscribedata-channeliddata-layoutdata-themedata-count[Awesome-youtube-subscribe]