
Post Media Manager: Image & Video Security & Risk Analysis
wordpress.org/plugins/post-media-manager-image-videoAdd a featured video to any custom post. Includes a layout designer and shortcode display options.
Is Post Media Manager: Image & Video Safe to Use in 2026?
Generally Safe
Score 100/100Post Media Manager: Image & Video has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "post-media-manager-image-video" v1.0.0 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of dangerous functions, unsanitized taint flows, raw SQL queries, and file operations is highly commendable. All SQL queries utilize prepared statements, and output escaping is consistently applied, mitigating common risks like SQL injection and cross-site scripting.
However, the presence of two shortcodes as entry points, despite the analysis indicating none are unprotected, warrants careful consideration. While the code signals show a nonce check and a capability check are present, the specific implementation and coverage of these checks on the shortcode hooks are not detailed. A lack of comprehensive authentication and authorization checks on all entry points, even if currently reporting as zero unprotected, could become a concern if the plugin evolves.
The plugin's vulnerability history is exceptionally clean, with no recorded CVEs. This suggests a well-maintained codebase and a proactive approach to security by the developers. Overall, the plugin appears to be secure, with its primary strength lying in its clean codebase and robust handling of core security practices. The main area for vigilance would be ensuring the shortcode implementations are strictly secured against any potential future vulnerabilities.
Key Concerns
- Shortcodes as entry points
Post Media Manager: Image & Video Security Vulnerabilities
Post Media Manager: Image & Video Code Analysis
Output Escaping
Data Flow Analysis
Post Media Manager: Image & Video Attack Surface
Shortcodes 2
WordPress Hooks 14
Maintenance & Trust
Post Media Manager: Image & Video Maintenance & Trust
Maintenance Signals
Community Trust
Post Media Manager: Image & Video Alternatives
Video Metabox AOC
video-metabox-aoc
Video Metabox AOC allows you to upload a video as a post meta.
Product Gallery Slider, Additional Variation Images, Product Video, Product Image Zoom and Lightbox for WooCommerce – WooGallery
gallery-slider-for-woocommerce
🔥 All-in-One WooCommerce Product Image and Video Gallery Solution to Enhance Your Customers' Shopping Experience and Boost Sales Instantly! 🚀
Really Simple Featured Video – Featured video support for Posts, Pages & WooCommerce Products
really-simple-featured-video
Really Simple Featured Video enables featured video support for WordPress posts, pages, CPTs (with featured images) & WooCommerce Products.
YITH WooCommerce Featured Video
yith-woocommerce-featured-video
YITH WooCommerce Featured Video allows you to place a video in the product detail page instead of the featured image.
Featured Video for WordPress – VideographyWP
videographywp
WordPress featured video plugin that allows you to create video posts from YouTube videos.
Post Media Manager: Image & Video Developer Profile
3 plugins · 10 total installs
How We Detect Post Media Manager: Image & Video
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-media-manager-image-video/css/postmema-admin.css/wp-content/plugins/post-media-manager-image-video/js/postmema-admin.js/wp-content/plugins/post-media-manager-image-video/css/postmema-frontend.css/wp-content/plugins/post-media-manager-image-video/js/postmema-admin.jsHTML / DOM Fingerprints
postmema-post-layoutpostmema-post-itempostmema-videopostmema-titlepostmema-excerptpostmema-readmorepostmema-upload-btnpostmema-remove-btnid="postmema-preview"id="postmema_video_id"name="postmema_video_id"id="postmema_video_meta_box"name="postmema_video_nonce"postmema_options<div class="postmema-post-layout"><div class="postmema-post-item"><div class="postmema-video"><video controls src