exovia YouTube DSGVO Security & Risk Analysis

wordpress.org/plugins/exovia-youtube-dsgvo

exovia YouTube DSGVO enables you to integrate YouTube Videos in a privacy compliant manner that respects the privacy of your visitors.

70 active installs v1.1.0 PHP 7.0+ WP 5.8+ Updated Nov 1, 2025
dsgvogdpryoutubeyoutube-pluginyoutube-video
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is exovia YouTube DSGVO Safe to Use in 2026?

Generally Safe

Score 100/100

exovia YouTube DSGVO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The exovia-youtube-dsgvo plugin version 1.1.0 demonstrates a generally good security posture based on the provided static analysis. The absence of dangerous functions, file operations, external HTTP requests, and the use of prepared statements for all SQL queries are positive indicators. Taint analysis revealing no unsanitized paths or critical/high severity flows further strengthens this impression, suggesting that the plugin is likely resistant to common injection-based attacks.

However, there are areas for improvement. The plugin lacks any nonce checks and capability checks, which are crucial for preventing CSRF and unauthorized actions, especially given that there is at least one shortcode which represents an entry point. While the current number of output operations is relatively small and a high percentage is escaped, the 22% that are not properly escaped could still pose a risk for XSS vulnerabilities if the unescaped data is user-controlled or sensitive.

The plugin's vulnerability history is clean, with zero known CVEs. This indicates a strong track record, but it's important to note that a clean history does not guarantee future immunity. The overall assessment is positive due to the absence of critical vulnerabilities and the implementation of secure coding practices for sensitive operations. Nevertheless, the identified lack of authorization checks and potential for unescaped output are weaknesses that should be addressed to further harden the plugin's security.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Unescaped output detected
Vulnerabilities
None known

exovia YouTube DSGVO Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

exovia YouTube DSGVO Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
19
67 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

78% escaped86 total outputs
Attack Surface

exovia YouTube DSGVO Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[exovia-dsgvo-youtube-video] includes\exovid-shortcode.php:28
WordPress Hooks 5
actionadmin_enqueue_scriptsadmin\exovid-admin.php:33
actionadmin_initadmin\settings.php:13
actionadmin_menuadmin\settings.php:38
actioninitincludes\exovid-i18n.php:20
actionwp_enqueue_scriptspublic\exovid-public.php:16
Maintenance & Trust

exovia YouTube DSGVO Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 1, 2025
PHP min version7.0
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs70
Developer Profile

exovia YouTube DSGVO Developer Profile

Team exovia

1 plugin · 70 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect exovia YouTube DSGVO

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/exovia-youtube-dsgvo/dist/js/backend.js/wp-content/plugins/exovia-youtube-dsgvo/dist/css/backend.css/wp-content/plugins/exovia-youtube-dsgvo/public/exovid-public.js/wp-content/plugins/exovia-youtube-dsgvo/public/exovid-public.css
Script Paths
/wp-content/plugins/exovia-youtube-dsgvo/dist/js/backend.js/wp-content/plugins/exovia-youtube-dsgvo/public/exovid-public.js
Version Parameters
exovia-youtube-dsgvo/dist/js/backend.js?ver=exovia-youtube-dsgvo/dist/css/backend.css?ver=exovia-youtube-dsgvo/public/exovid-public.js?ver=exovia-youtube-dsgvo/public/exovid-public.css?ver=

HTML / DOM Fingerprints

CSS Classes
exovid-wrapperis-style-wideexovid-maskexovid-mask-contentexovid-captionexovid-btnexovid-load-oneexovid-load-all+8 more
Data Attributes
data-src
Shortcode Output
<div class="exovid-wrapper is-style-wide"<div class="exovid-mask"<p class="exovid-caption"><button class="exovid-btn exovid-load-one"
FAQ

Frequently Asked Questions about exovia YouTube DSGVO