
Product Feature Video and Gallery Security & Risk Analysis
wordpress.org/plugins/product-feature-video-and-galleryThis plugin enables to add feature video to product.
Is Product Feature Video and Gallery Safe to Use in 2026?
Generally Safe
Score 100/100Product Feature Video and Gallery has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "product-feature-video-and-gallery" v1.0.2 exhibits a generally positive security posture, with several good practices in place. Notably, all SQL queries are prepared, and a high percentage of output is properly escaped, indicating an effort to prevent common web vulnerabilities. The plugin also demonstrates a low attack surface with only one shortcode entry point and no AJAX handlers or REST API routes, further reducing potential exposure. Furthermore, the absence of any recorded CVEs or past vulnerabilities suggests a history of secure development.
However, the presence of three instances of the `unserialize` function is a significant concern. While taint analysis shows no immediate unsanitized flows, `unserialize` is inherently risky as it can lead to remote code execution if used with untrusted data. The lack of explicit capability checks on the identified shortcode is also a weakness, as it means any user, regardless of their role, could potentially trigger its functionality. The plugin also makes external HTTP requests, which could be a vector for attacks if not handled carefully, although the static analysis does not provide details on how these requests are made.
In conclusion, while the plugin has strong foundations in SQL and output sanitization and a clean vulnerability history, the identified use of `unserialize` and the potential for the shortcode to be accessible without proper authorization introduce notable risks. Addressing these specific areas would significantly strengthen the plugin's security.
Key Concerns
- Dangerous function: unserialize used
- Capability checks missing
- External HTTP requests made
Product Feature Video and Gallery Security Vulnerabilities
Product Feature Video and Gallery Release Timeline
Product Feature Video and Gallery Code Analysis
Dangerous Functions Found
Output Escaping
Product Feature Video and Gallery Attack Surface
Shortcodes 1
WordPress Hooks 16
Maintenance & Trust
Product Feature Video and Gallery Maintenance & Trust
Maintenance Signals
Community Trust
Product Feature Video and Gallery Alternatives
Product Image and Video Gallery Slider for WooCommerce
product-gallery-slider-for-wc
Beautiful image and video gallery slider for WooCommerce products.
Modula Image Gallery – Photo Grid & Video Gallery
modula-best-grid-gallery
Create responsive image galleries with drag-and-drop grid builder. Custom layouts, video support, AI optimization. Works with any theme.
Mixed Media Gallery Blocks
simply-gallery-block
Create mixed media galleries with images, HTML5 video, YouTube, Vimeo, and VideoPress — all in one gallery by Simply Gallery.
All-in-One Video Gallery
all-in-one-video-gallery
The ultimate video player & video gallery plugin for YouTubers, Video Bloggers, Course Creators, Podcasters, and anyone embedding videos on websites.
Portfolio Filter Gallery
portfolio-filter-gallery
A WordPress plugin designed for creating filterable portfolio galleries. Supports images and videos with masonry routing.
Product Feature Video and Gallery Developer Profile
4 plugins · 21K total installs
How We Detect Product Feature Video and Gallery
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/product-feature-video-and-gallery/assets/css/owl.carousel.min.css/wp-content/plugins/product-feature-video-and-gallery/assets/css/videoshop-style.css/wp-content/plugins/product-feature-video-and-gallery/assets/js/videoshop.js/wp-content/plugins/product-feature-video-and-gallery/assets/js/owl.carousel.min.js/wp-content/plugins/product-feature-video-and-gallery/assets/js/fancybox.min.js/wp-content/plugins/product-feature-video-and-gallery/assets/js/videoshop.js/wp-content/plugins/product-feature-video-and-gallery/assets/css/videoshop-style.css?ver=/wp-content/plugins/product-feature-video-and-gallery/assets/js/videoshop.js?ver=/wp-content/plugins/product-feature-video-and-gallery/assets/js/owl.carousel.min.js?ver=/wp-content/plugins/product-feature-video-and-gallery/assets/js/fancybox.min.js?ver=HTML / DOM Fingerprints
wc-videoshop-titlewc_videoshop_ariavideoshop_tabsvideoshop_shortcodevideoshop_slider_layoutvideoshop_slider_responsivevideoshop_slider_layoutvideoshop_slider_responsivevideoshop_shortcode<span id="videoshop_shortcode">