
Feeds for TikTok – Display Video Feeds in Grid Layouts Security & Risk Analysis
wordpress.org/plugins/b-tiktok-feedEmbed Tiktok feed in your website
Is Feeds for TikTok – Display Video Feeds in Grid Layouts Safe to Use in 2026?
Generally Safe
Score 98/100Feeds for TikTok – Display Video Feeds in Grid Layouts has a strong security track record. Known vulnerabilities have been patched promptly.
The b-tiktok-feed plugin v1.0.25 demonstrates a generally good security posture with several positive indicators. The code analysis reveals no critical or high-severity issues in taint flows, and the plugin uses prepared statements for all SQL queries. A high percentage of output is properly escaped, and crucial security mechanisms like nonce and capability checks are present. However, the presence of 5 external HTTP requests without clear sanitization or authentication context in the static analysis is a point of concern, as these could potentially be leveraged for various attacks if not handled securely.
The vulnerability history, while showing no currently unpatched CVEs, indicates a pattern of past medium-severity vulnerabilities, specifically related to missing authorization. The fact that there have been two such historical vulnerabilities suggests a potential recurring weakness in how authorization is handled, even though the current static analysis shows no unprotected entry points. This warrants careful consideration and ongoing vigilance.
In conclusion, while the plugin has implemented many security best practices, the past vulnerability trend and the presence of external HTTP requests require attention. The plugin is not inherently insecure, but the historical context and potential for unexamined external interactions suggest a moderate level of risk that could be mitigated with further scrutiny and potentially more robust input validation and authorization checks on external requests.
Key Concerns
- Historical medium severity vulnerabilities exist
- External HTTP requests present
Feeds for TikTok – Display Video Feeds in Grid Layouts Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Tiktok Feed <= 1.0.23 - Missing Authorization
Tiktok Feed <= 1.0.21 - Missing Authorization
Feeds for TikTok – Display Video Feeds in Grid Layouts Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Feeds for TikTok – Display Video Feeds in Grid Layouts Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 20
Maintenance & Trust
Feeds for TikTok – Display Video Feeds in Grid Layouts Maintenance & Trust
Maintenance Signals
Community Trust
Feeds for TikTok – Display Video Feeds in Grid Layouts Alternatives
Custom Feed for TikTok – Social Post Feed Plugin for TikTok
custom-feed-for-tiktok
Explore the power of Custom Feed for TikTok, the top-notch plugin for displaying your videos with user-friendly and up-to-date features
QuadLayers TikTok Feed
wp-tiktok-feed
Display beautiful and responsive galleries on your website from your TikTok feed account.
Feed for TikTok
feed-for-tiktok
Displays the feed of any user on TikTok plus account information. Available for Elementor and shortcode.
My Social Feeds – Social Feeds Embedder Plugin for WordPress
my-social-feeds
Embed Instagram, TikTok, Pinterest, and Twitter feeds easily using Gutenberg blocks.
Gallery Feed for TikTok – Show TikTok Videos in Grid, Masonry, or Slideshow
ws-tiktok-feed
Embed TikTok videos and feeds in WordPress. Show likes, views, comments, shares & user info with Grid, Blog, Masonry, or Slideshow layouts.
Feeds for TikTok – Display Video Feeds in Grid Layouts Developer Profile
120 plugins · 738K total installs
How We Detect Feeds for TikTok – Display Video Feeds in Grid Layouts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/b-tiktok-feed/assets/css/fancyapps.min.css/wp-content/plugins/b-tiktok-feed/assets/js/fancyapps.min.js/wp-content/plugins/b-tiktok-feed/assets/css/admin.css/wp-content/plugins/b-tiktok-feed/assets/js/admin.jsb-tiktok-feed/assets/css/fancyapps.min.css?ver=b-tiktok-feed/assets/js/fancyapps.min.js?ver=b-tiktok-feed/assets/css/admin.css?ver=b-tiktok-feed/assets/js/admin.js?ver=HTML / DOM Fingerprints
fs_notice_boarddata-noncedata-slugdatadata-noticettpDatattpPattersfs_lite/wp-json/data/v1/accept-data/wp-json/wp/v2/posts