
Genesis Media Project Security & Risk Analysis
wordpress.org/plugins/genesis-media-projectGenesis Media Project is the premier media plugin for Genesis. Currently the plugin adds video support to the Genesis Framework and includes a Video T …
Is Genesis Media Project Safe to Use in 2026?
Generally Safe
Score 100/100Genesis Media Project has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "genesis-media-project" plugin v0.9.0.2 exhibits a mixed security posture. While it demonstrates good practices by exclusively using prepared statements for SQL queries and having no known vulnerabilities in its history, significant concerns arise from its attack surface and code signals. The plugin has a total of 4 entry points, with a concerning 3 of these being unprotected AJAX handlers. This lack of authentication on a majority of its exposed functionalities presents a substantial risk.
The code analysis further reveals the use of dangerous functions like `create_function` and `unserialize`, which can be exploited if user-supplied data is involved. Although taint analysis did not reveal critical or high severity issues, the presence of 3 flows with unsanitized paths indicates potential avenues for attacks. The extremely low percentage of properly escaped output (4%) is another major red flag, suggesting a high likelihood of cross-site scripting (XSS) vulnerabilities.
Overall, the absence of a vulnerability history might indicate a lack of past exploitation or discovery, but the identified weaknesses in the current version, particularly the unprotected AJAX handlers and poor output escaping, necessitate urgent attention. The plugin has potential strengths in its SQL handling and lack of CVEs, but these are overshadowed by significant and readily exploitable flaws in its exposed interfaces and data handling.
Key Concerns
- Unprotected AJAX handlers
- Low output escaping percentage
- Use of dangerous function: unserialize
- Use of dangerous function: create_function
- Flows with unsanitized paths
- Limited nonce checks
Genesis Media Project Security Vulnerabilities
Genesis Media Project Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Genesis Media Project Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 45
Maintenance & Trust
Genesis Media Project Maintenance & Trust
Maintenance Signals
Community Trust
Genesis Media Project Alternatives
Genesis Simple Menus
genesis-simple-menus
With Genesis, Simple Menus allows you to select a WP menu for secondary navigation on posts, pages, categories, tags or custom taxonomies.
Genesis Nav Menu Amplified
genesis-nav-menu-amplified
Genesis Menu options with custom menu, categories, pages, and primary/secondary nav extras.
Genesis eNews Extended
genesis-enews-extended
Creates a new widget to easily add mailing lists integration to a Genesis website. Works with FeedBurner, MailChimp, AWeber, FeedBlitz, ConvertKit and …
Genesis Simple Hooks
genesis-simple-hooks
This plugin creates a new Genesis settings page that allows you to insert code (HTML, Shortcodes, and PHP), and attach it to any of the 50+ action hoo …
Genesis Connect for WooCommerce
genesis-connect-woocommerce
This plugin allows you to seamlessly integrate WooCommerce with the Genesis Framework and Genesis child themes.
Genesis Media Project Developer Profile
6 plugins · 3K total installs
How We Detect Genesis Media Project
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
gmp-video-embed<!-- Video Thumbnails Settings -->data-gmp-video-iddata-gmp-video-typegmp_post_idgmp_post_url[gmp_video_embed][gmp_video_thumbnail]