
Outdooractive Embed Security & Risk Analysis
wordpress.org/plugins/outdooractive-embedEmbed any kind of content from outdooractive.com into your WordPress site.
Is Outdooractive Embed Safe to Use in 2026?
Generally Safe
Score 91/100Outdooractive Embed has a strong security track record. Known vulnerabilities have been patched promptly.
The outdooractive-embed plugin version 1.6 presents a generally good security posture, with a lack of critical code-level vulnerabilities indicated by the static analysis. The absence of dangerous functions, raw SQL queries, and unsanitized taint flows are positive signs. The plugin also demonstrates good practice by using prepared statements for all its SQL queries and implementing capability checks on its entry points. However, a notable concern is the 71% proper output escaping rate, meaning a portion of its output is not adequately sanitized, potentially leaving it vulnerable to Cross-Site Scripting (XSS) attacks, especially given its vulnerability history. The plugin has had one previous vulnerability classified as a medium severity XSS, which aligns with the observed output escaping weakness. While there are no currently unpatched vulnerabilities, the past incident coupled with the imperfect escaping suggests a potential ongoing risk. The plugin's limited attack surface, with no unprotected entry points, is a strength, but the imperfect output escaping requires attention to fully mitigate risks.
Key Concerns
- Incomplete output escaping
- Previous medium XSS vulnerability
- No nonce checks on entry points
Outdooractive Embed Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Outdooractive Embed <= 1.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
Outdooractive Embed Code Analysis
Bundled Libraries
Output Escaping
Outdooractive Embed Attack Surface
Shortcodes 4
WordPress Hooks 12
Maintenance & Trust
Outdooractive Embed Maintenance & Trust
Maintenance Signals
Community Trust
Outdooractive Embed Alternatives
Trail Status
trail-status
Display the status of trails on your website.
Lift & Trail Status
lift-trail-status
Display the status of lifts and trails for your ski resort or adventure park on your website. Great for mountain bike, water, ropes & adventure parks.
DSGVO All in one for WP
dsgvo-all-in-one-for-wp
An All in One GDPR Plugin for everything! Responsive Cookie Notice - Imprint & Privacy Policy Generator - integrate external Services GDPR complia …
Legal Text Connector of the IT-Recht Kanzlei
legal-texts-connector-it-recht-kanzlei
Ensures that your website is always provided with warning-proof legal texts from IT-Recht Kanzlei after booking the GTC service.
WP DSGVO Tools (GDPR)
shapepress-dsgvo
WP DSGVO Tools (GDPR) by legalweb.io help you to fulfill the GDPR (DSGVO) compliance guidance (GDPR)
Outdooractive Embed Developer Profile
1 plugin · 400 total installs
How We Detect Outdooractive Embed
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/outdooractive-embed/outdooractive.css/wp-content/plugins/outdooractive-embed/Gutenberg/gutenberg.css/wp-content/plugins/outdooractive-embed/OAButton/oamenubuttonpro.js/wp-content/plugins/outdooractive-embed/OAButton/oamenubutton.js/wp-content/plugins/outdooractive-embed/Gutenberg/gutenberg.jsoutdooractive-embed/outdooractive.css?ver=outdooractive-embed/Gutenberg/gutenberg.css?ver=HTML / DOM Fingerprints
wp-block-outdooractive-embeddata-urldata-maxwidthdata-prooutdooractive_gutenberg_editor_scriptoutdooractive_gutenberg_script[oaembed <script type="text/javascript" src="https://www.outdooractive.com/part of outdooractive</a>