
Genki Youtube Comments Security & Risk Analysis
wordpress.org/plugins/genki-youtube-commentsGrab YouTube video comments and insert into your blog post
Is Genki Youtube Comments Safe to Use in 2026?
Generally Safe
Score 85/100Genki Youtube Comments has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "genki-youtube-comments" v2.0 plugin presents a concerning security posture despite a clean vulnerability history. The static analysis reveals significant issues, particularly with SQL query handling and output escaping. All 7 SQL queries are executed without prepared statements, posing a high risk of SQL injection vulnerabilities. Similarly, 100% of the 6 identified output operations are not properly escaped, creating a strong possibility of cross-site scripting (XSS) flaws. The presence of file operations and external HTTP requests, without accompanying capability checks or nonce verification on potential entry points (though none were identified as unprotected), adds to the overall risk profile. The taint analysis, while not flagging critical or high severity flows, did identify 2 flows with unsanitized paths, which, when combined with the lack of robust input validation and output sanitization, could be exploited. The plugin's vulnerability history being clear is a positive indicator, suggesting past security diligence or perhaps less widespread usage, but it does not negate the current code-level risks that require immediate attention.
Key Concerns
- SQL queries without prepared statements
- Output escaping not properly handled
- No nonce checks
- No capability checks
- Flows with unsanitized paths
Genki Youtube Comments Security Vulnerabilities
Genki Youtube Comments Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Genki Youtube Comments Attack Surface
WordPress Hooks 3
Scheduled Events 3
Maintenance & Trust
Genki Youtube Comments Maintenance & Trust
Maintenance Signals
Community Trust
Genki Youtube Comments Alternatives
Live Video Annotation
live-video-annotation
The Live Video Annotation plugin allows you to add timed footnotes to a YouTube video. Visitors can see these notes later while watching the video.
VideoNab
videonab
VideoNab is the best way to add videos to WordPress. Furthermore, VideoNab adds a fully responsive video stream to your website.
YouTube Comments
youtube-comments
This plugin finds YouTube links in post content and imports the video comments.
Akismet Anti-spam: Spam Protection
akismet
The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam solution for WordPress and WooCommerce.
Disable Comments – Remove Comments & Stop Spam [Multi-Site Support]
disable-comments
Allows administrators to globally disable comments on their site. Comments can be disabled according to post type. Multisite friendly.
Genki Youtube Comments Developer Profile
2 plugins · 50 total installs
How We Detect Genki Youtube Comments
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/genki-youtube-comments/screenshot-2.gifHTML / DOM Fingerprints
wrapoptionsupdatedfade<!-- ... -->id="message"class="updated fade"id="skipspam"name="skipspam"value="yes"value="no"+11 more