
Viddeo – Hochformat Videoplayer Security & Risk Analysis
wordpress.org/plugins/viddeo-hochformat-videoplayerMit diesem Plugin kannst du ganz einfach Hochformat-Videos von Viddeo.de per Shortcode auf deiner Website einbetten – flexibel und unkompliziert!
Is Viddeo – Hochformat Videoplayer Safe to Use in 2026?
Generally Safe
Score 92/100Viddeo – Hochformat Videoplayer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "viddeo-hochformat-videoplayer" v1.0.0 plugin demonstrates a generally strong security posture based on the static analysis. The absence of dangerous functions, file operations, external HTTP requests, and a high rate of properly escaped output are positive indicators. Furthermore, the consistent use of prepared statements for all SQL queries and the presence of capability checks suggest good development practices for input validation and authorization.
However, the analysis reveals some potential areas for concern. The lack of nonce checks, while not directly tied to an identified vulnerable entry point in this static analysis, is a missed opportunity to prevent CSRF attacks, especially if the single shortcode were to evolve to perform sensitive actions. The zero taint analysis results, while good, are based on zero flows analyzed, which could mean the analysis was incomplete or that the code simply doesn't present complex data flow scenarios.
Given the plugin's history of zero known CVEs and no recorded vulnerabilities, it suggests a mature and stable codebase. This, combined with the good static analysis findings, points to a low overall risk. The primary weakness lies in the absence of nonces for its single entry point, which is a common security measure that could further harden the plugin.
Key Concerns
- Missing nonce checks on shortcode
Viddeo – Hochformat Videoplayer Security Vulnerabilities
Viddeo – Hochformat Videoplayer Code Analysis
Output Escaping
Viddeo – Hochformat Videoplayer Attack Surface
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
Viddeo – Hochformat Videoplayer Maintenance & Trust
Maintenance Signals
Community Trust
Viddeo – Hochformat Videoplayer Alternatives
Simple Video Embed
simple-video-embed
A simple plugin to embed responsive video and video playlist to posts or articles with nice features.
Videojs HTML5 Player
videojs-html5-player
Embed video file beautifully in WordPress using Video.js HTML5 Player. Embed HTML5 compatible responsive video in your post/page with Video.js.
Wonder Video Embed
wonderplugin-video-embed
Embed MP4, Youtube, Vimeo, Wistia videos to the sidebar widget, WordPress posts and pages.
Simple YouTube Responsive
simple-youtube-responsive
Easily embed responsive YouTube videos using a simple shortcode. Lazy load included.
SmartVideo – Fast Video Player, Unlimited CDN, Vimeo Alternative
smartvideo
The fastest video player with unlimited CDN hosting. 12x faster start times, 8x fewer stalls. Perfect Vimeo replacement.
Viddeo – Hochformat Videoplayer Developer Profile
1 plugin · 10 total installs
How We Detect Viddeo – Hochformat Videoplayer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/viddeo-hochformat-videoplayer/assets/css/viddeo-hfvp-frontend.css/wp-content/plugins/viddeo-hochformat-videoplayer/assets/js/viddeo-hfvp-frontend.jsviddeo-hochformat-videoplayerviddeo-hochformat-videoplayer/assets/css/viddeo-hfvp-frontend.css?ver=viddeo-hochformat-videoplayer/assets/js/viddeo-hfvp-frontend.js?ver=HTML / DOM Fingerprints
viddeo-player-containerviddeo-hochformat-videoplayer shortcode output startviddeo-hochformat-videoplayer shortcode output enddata-viddeo-iddata-viddeo-widthdata-viddeo-heightdata-viddeo-playlistviddeo_hfvp_params<div class="viddeo-player-container" data-viddeo-id="" data-viddeo-width="" data-viddeo-height="" data-viddeo-playlist="