
Aparat Videos RSS Reader | GRAD Security & Risk Analysis
wordpress.org/plugins/grad-aparat-rssدریافت آر.اس.اس کانال آپارات و نمایش (به ترتیب یا تصادفی) ویدئوهای کانال آپارات، در ویجتهای وردپرس. Widgets for listing videos uploaded to Aparat.
Is Aparat Videos RSS Reader | GRAD Safe to Use in 2026?
Generally Safe
Score 85/100Aparat Videos RSS Reader | GRAD has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "grad-aparat-rss" plugin v1.2.1 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and the plugin's robust implementation of security best practices like prepared statements for SQL queries and a high percentage of properly escaped output are significant strengths. The limited attack surface, with only one shortcode and no unprotected AJAX handlers or REST API routes, further contributes to its good security standing. The presence of nonce and capability checks, albeit limited in number, indicates an awareness of security fundamentals.
However, a few areas warrant attention. The plugin makes 4 external HTTP requests, which, while not explicitly flagged as insecure, represent potential points of failure or data leakage if not handled with extreme care and proper validation of the data received from external sources. Furthermore, the lack of any taint analysis data (0 flows analyzed) suggests that this aspect of security was either not thoroughly investigated or that no potential issues were found. This absence of findings in taint analysis could be a positive indicator of clean code, but it could also mean the analysis was incomplete. The limited number of capability and nonce checks could also be a concern in more complex scenarios.
Overall, the plugin appears to be well-developed from a security perspective, with a clean vulnerability history and good adherence to many security best practices. The primary areas for potential improvement lie in ensuring the secure handling of external HTTP requests and potentially deeper taint analysis to confirm the absence of subtle vulnerabilities. The current score reflects its strong foundation while acknowledging minor points for consideration.
Key Concerns
- External HTTP requests made by the plugin
- Limited nonce checks
- Limited capability checks
- Unsanitized output detected
Aparat Videos RSS Reader | GRAD Security Vulnerabilities
Aparat Videos RSS Reader | GRAD Code Analysis
Output Escaping
Aparat Videos RSS Reader | GRAD Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Aparat Videos RSS Reader | GRAD Maintenance & Trust
Maintenance Signals
Community Trust
Aparat Videos RSS Reader | GRAD Alternatives
RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging
wp-rss-aggregator
The #1 WordPress RSS aggregator to quickly import RSS feeds, build a news aggregator, and for easy autoblogging.
RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator
feedzy-rss-feeds
The most powerful WordPress RSS aggregator, helping you curate content, autoblog, import RSS & display unlimited RSS feeds within a few minutes.
WPeMatico RSS Feed Fetcher
wpematico
WPeMatico is autoblogging in the blink of an eye! On complete autopilot, WPeMatico delivers fresh content to your site regularly!
RSS Feed Retriever
wp-rss-retriever
The fastest RSS feeds plugin for WordPress. Includes excerpt & thumbnail image. Use as a news aggregator, autoblog, or RSS parsing.
Content Pilot – Autoblogging & Affiliate Marketing Suite
wp-content-pilot
Automatically post contents, create news feeds, import and display unlimited RSS feeds from various sources in a few clicks!
Aparat Videos RSS Reader | GRAD Developer Profile
1 plugin · 70 total installs
How We Detect Aparat Videos RSS Reader | GRAD
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/grad-aparat-rss/includes/widgets/css/widget-aparat-general.css/wp-content/plugins/grad-aparat-rss/includes/widgets/css/widget-aparat-rss-list.css/wp-content/plugins/grad-aparat-rss/includes/widgets/css/widget-aparat-selected-videos-list.css/wp-content/plugins/grad-aparat-rss/includes/widgets/js/widget-aparat-general.js/wp-content/plugins/grad-aparat-rss/includes/widgets/js/widget-aparat-rss-list.js/wp-content/plugins/grad-aparat-rss/includes/widgets/js/widget-aparat-selected-videos-list.jsgrad-aparat-rss/includes/widgets/css/widget-aparat-general.css?ver=grad-aparat-rss/includes/widgets/css/widget-aparat-rss-list.css?ver=grad-aparat-rss/includes/widgets/css/widget-aparat-selected-videos-list.css?ver=grad-aparat-rss/includes/widgets/js/widget-aparat-general.js?ver=grad-aparat-rss/includes/widgets/js/widget-aparat-rss-list.js?ver=grad-aparat-rss/includes/widgets/js/widget-aparat-selected-videos-list.js?ver=HTML / DOM Fingerprints
h_iframe-aparat_embed_frameaparat-video<!-- Aparat Video Shortcode | Grad --><!-- / Aparat Video Shortcode | Grad -->heightfloatwidthdisplay_metaformatsrc+5 more