
N360Blocks Security & Risk Analysis
wordpress.org/plugins/n360blocksA modern Gutenberg block plugin for embedding YouTube and Vimeo videos with custom player controls.
Is N360Blocks Safe to Use in 2026?
Generally Safe
Score 100/100N360Blocks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "n360blocks" v1.0.3 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified CVEs, coupled with the plugin's clean code signals, suggests a diligent approach to security during development. Notably, there are no raw SQL queries, indicating the use of prepared statements, and a reasonable proportion of output escaping is in place. The limited attack surface, with zero AJAX handlers, REST API routes, shortcodes, or cron events, significantly reduces potential entry points for attackers.
However, a few areas warrant attention. The plugin lacks nonce checks and capability checks, which are crucial for verifying user permissions and preventing Cross-Site Request Forgery (CSRF) attacks, especially if any functionalities were to be added or if the plugin interacts with WordPress core in ways not immediately apparent from this analysis. The presence of one external HTTP request without further context is also a minor concern, as it could potentially be exploited if the target URL is compromised or manipulated.
Overall, "n360blocks" v1.0.3 appears to be a secure plugin with a solid foundation. The primary weakness lies in the absence of protective measures like nonce and capability checks for any implicit or future functionalities. Addressing these omissions would further bolster its security, but as it stands, the risk profile is low due to the minimal attack surface and lack of known vulnerabilities.
Key Concerns
- Missing nonce checks
- Missing capability checks
- External HTTP request without context
N360Blocks Security Vulnerabilities
N360Blocks Code Analysis
Output Escaping
N360Blocks Attack Surface
WordPress Hooks 7
Maintenance & Trust
N360Blocks Maintenance & Trust
Maintenance Signals
Community Trust
N360Blocks Alternatives
The Ultimate Video Player For WordPress – by Presto Player
presto-player
The Ultimate WordPress Video Player.
All-in-One Video Gallery
all-in-one-video-gallery
The ultimate video player & video gallery plugin for YouTubers, Video Bloggers, Course Creators, Podcasters, and anyone embedding videos on websites.
WP Video Popup – WordPress Video Lightbox for YouTube, Rumble & Vimeo
responsive-youtube-vimeo-popup
WP Video Popup lets you add a responsive YouTube, Rumble or Vimeo video lightbox to any page, post or custom post type of your website.
Automatic Featured Images from Videos
automatic-featured-images-from-videos
If a YouTube or Vimeo video embed exists near the start of a post, we'll automatically set the post's featured image to a thumbnail of the video.
Vimeo
vimeo
Bring the power of video to your WordPress site and WooCommerce product pages by easily creating, uploading, and embedding videos to boost engagement …
N360Blocks Developer Profile
1 plugin · 0 total installs
How We Detect N360Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/n360blocks/build/blocks/video/style.css/wp-content/plugins/n360blocks/build/blocks/video/view.css/wp-content/plugins/n360blocks/build/blocks/video/index.js/wp-content/plugins/n360blocks/assets/n360-video.js/wp-content/plugins/n360blocks/assets/n360-video-inline.jshttps://player.vimeo.com/api/player.jshttps://www.youtube.com/iframe_apin360-video-inline?ver=n360-video?ver=vimeo_embed_api?ver=yt_embed_api?ver=HTML / DOM Fingerprints
N360Blocksn360blocks-videon360blocks-video__inlineN360Blocks__containerN360Blocks__framesection--videovideo-itemdata-block-type="n360blocks/video"YT_videos