
Mediacore Ingest (FeedWordPress AddOn) Security & Risk Analysis
wordpress.org/plugins/mediacore-ingest-fwp-addonThis plugin works in concert with the FeedWordPress plugin to enhance syndication of content from Mediacore sites.
Is Mediacore Ingest (FeedWordPress AddOn) Safe to Use in 2026?
Generally Safe
Score 85/100Mediacore Ingest (FeedWordPress AddOn) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
This plugin, mediacore-ingest-fwp-addon v1.0, exhibits a generally positive security posture based on the provided static analysis. The absence of direct SQL queries, external HTTP requests, file operations, and the presence of capability checks are strong indicators of good development practices for a plugin of this nature. The small attack surface with no apparent unprotected entry points is also a significant strength, suggesting that most interactions with the plugin are intended to be authorized.
However, the static analysis highlights a critical concern: 100% of outputs are not properly escaped. This represents a significant risk, as it opens the door to Cross-Site Scripting (XSS) vulnerabilities if any user-supplied data is reflected in the plugin's output. While there are no reported CVEs and the taint analysis shows no immediate critical or high severity flows, the unescaped output is a fundamental security flaw that should be addressed urgently. The lack of vulnerability history also suggests either a very new plugin or one that has not yet been subject to significant security scrutiny, making the existing code signals even more important to review.
In conclusion, mediacore-ingest-fwp-addon v1.0 benefits from a limited attack surface and some robust security implementations. Nevertheless, the widespread lack of output escaping is a serious weakness that elevates the risk profile considerably. Addressing this issue should be the top priority to improve the plugin's overall security.
Key Concerns
- All outputs are unescaped
Mediacore Ingest (FeedWordPress AddOn) Security Vulnerabilities
Mediacore Ingest (FeedWordPress AddOn) Code Analysis
Output Escaping
Mediacore Ingest (FeedWordPress AddOn) Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Mediacore Ingest (FeedWordPress AddOn) Maintenance & Trust
Maintenance Signals
Community Trust
Mediacore Ingest (FeedWordPress AddOn) Alternatives
Podcast Searcher by Clarify
podcast-searcher-by-clarify
The Clarify plugin allows you to make any audio or video embedded in your posts, pages, etc searchable via the standard WordPress search box.
WP Video Lightbox
wp-video-lightbox
Very easy to use WordPress lightbox plugin to display YouTube and Vimeo videos in an elegant lightbox overlay.
Advanced Responsive Video Embedder for Rumble, Odysee, YouTube, Vimeo, Kick …
advanced-responsive-video-embedder
Level up your basic video embeds! Advanced features, privacy. Use URLs, Shortcodes or Blocks to customize videos to your needs.
Video Gallery – YouTube Playlist, Channel Gallery by YotuWP
yotuwp-easy-youtube-embed
Modern responsive YouTube video gallery helps your website getting noticed from visitors, increase the reach and stand out from the competitors.
Embeds for YouTube
youtube-embed
🎥 An incredibly fast, simple, yet powerful, method of embedding YouTube videos into your WordPress site.
Mediacore Ingest (FeedWordPress AddOn) Developer Profile
1 plugin · 10 total installs
How We Detect Mediacore Ingest (FeedWordPress AddOn)
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
[mediacore public_url="" thumb_url="" title="" width="640px" height="360px"]