
Video Blogster Lite Security & Risk Analysis
wordpress.org/plugins/video-blogster-liteCreate a video blog in minutes! This plugin searches YouTube for content and automatically creates posts from the results.
Is Video Blogster Lite Safe to Use in 2026?
High Risk
Score 42/100Video Blogster Lite carries significant security risk with 2 known CVEs, 2 still unpatched. Consider switching to a maintained alternative.
The video-blogster-lite v1.2 plugin exhibits a mixed security posture. While it demonstrates some good practices, such as using prepared statements for all SQL queries, there are significant areas of concern. The lack of any identified nonce checks or capability checks on the entry points, combined with a concerning taint analysis result indicating a flow with unsanitized paths, suggests a potential for vulnerabilities, especially in the absence of a broad attack surface being exposed. The plugin's history of known vulnerabilities, including two currently unpatched medium severity issues of Cross-Site Request Forgery and Cross-Site Scripting, further amplifies the risk. These historical patterns, particularly the types of vulnerabilities, point towards potential weaknesses in input validation and output sanitization that have not been fully addressed.
Despite the positive aspects of secure SQL handling, the unpatched vulnerabilities and the findings from the static and taint analysis are substantial red flags. The 25% proper output escaping is also a weak signal. The absence of a larger attack surface is fortunate, but it does not negate the existing risks. The conclusion is that while the plugin has some secure foundations, the unpatched vulnerabilities and the identified code analysis concerns create a notable risk that requires immediate attention.
Key Concerns
- Unpatched medium severity CVEs (2)
- No nonce checks found
- No capability checks found
- Taint flow with unsanitized paths
- Low percentage of properly escaped output
Video Blogster Lite Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Video Blogster Lite <= 1.2 - Cross-Site Request Forgery
Video Blogster Lite <= 1.2 - Reflected Cross-Site Scripting
Video Blogster Lite Code Analysis
Output Escaping
Data Flow Analysis
Video Blogster Lite Attack Surface
WordPress Hooks 2
Maintenance & Trust
Video Blogster Lite Maintenance & Trust
Maintenance Signals
Community Trust
Video Blogster Lite Alternatives
Hide Related Video Youtube
hide-related-video-youtube
Hide related video youtube is a plugin remove related video other chanel when you use YouTube oEmbed.
YouTube widget
youtube-widget
This widget will display a YouTube video in the sidebar. Just enter the URL of the video, and it’ll show in the sidebar. You can change the width and …
YouTube Subscribe widget
youtube-subscribe-widget
Add a widget to display YouTube subscribe box in the sidebar.
Better Core Video Embeds
better-core-video-embeds
A plugin which enhances the core embed block for Youtube, Daily Motion and Vimeo videos by not loading unnecessary scripts until they are needed.
Responsive oEmbed
responsive-oembed
Makes oEmbed elements with fixed aspect ratio (like YouTube, Vimeo or SoundCloud) scale responsively.
Video Blogster Lite Developer Profile
2 plugins · 810 total installs
How We Detect Video Blogster Lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/video-blogster-lite/video-blogster-lite.cssvideo-blogster-lite/video-blogster-lite.css?ver=