VideoGate – Video Showcase Plugin Security & Risk Analysis

wordpress.org/plugins/videogate

VideoGate is a user-friendly WordPress video plugin to showcase your videos. You can embed both youtube and vimeo videos.

0 active installs v1.0.2 PHP + WP 6.0+ Updated Unknown
video-playervideo-pluginvideo-showcasevideo-steaming
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is VideoGate – Video Showcase Plugin Safe to Use in 2026?

Generally Safe

Score 100/100

VideoGate – Video Showcase Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The videogame plugin exhibits a generally good security posture, with strong adherence to secure coding practices such as the absence of dangerous functions, 100% usage of prepared statements for SQL queries, and a high percentage of properly escaped output. The lack of any recorded vulnerabilities or CVEs is also a positive indicator. However, a notable concern arises from the presence of two AJAX handlers that lack authentication checks. This exposes a direct attack surface that could be exploited by unauthenticated users to trigger plugin functionality, potentially leading to unintended actions or information disclosure if the handlers perform sensitive operations.

The static analysis did not reveal any critical taint flows, raw SQL queries, or file operations, which are common sources of severe vulnerabilities. The plugin also has a limited attack surface with only three entry points, two of which are unprotected AJAX handlers. The absence of bundled libraries and external HTTP requests further reduces potential attack vectors. While the lack of vulnerability history is encouraging, the unprotected AJAX endpoints represent a significant weakness that should be addressed to ensure the plugin's security.

In conclusion, videogame v1.0.2 demonstrates strengths in several key security areas, particularly in data handling and output sanitization. The absence of known vulnerabilities is a strong point. Nevertheless, the unprotected AJAX handlers are a clear and present risk that overshadows these positives. Prioritizing the addition of proper authentication and authorization checks to these endpoints is crucial for mitigating potential security incidents.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

VideoGate – Video Showcase Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

VideoGate – Video Showcase Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
44 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

90% escaped49 total outputs
Attack Surface
2 unprotected

VideoGate – Video Showcase Plugin Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 2

authwp_ajax_videogate_grid_modalpublic\functions.php:13
authwp_ajax_videogate_grid_modalpublic\functions.php:14

Shortcodes 1

[videogate_videos] includes\class-videogate.php:78
WordPress Hooks 10
actionadd_meta_boxesadmin\class-videogate-metaboxes.php:11
actionsave_postadmin\class-videogate-metaboxes.php:12
actionplugins_loadedincludes\class-videogate.php:51
actionadmin_enqueue_scriptsincludes\class-videogate.php:59
actionadmin_enqueue_scriptsincludes\class-videogate.php:60
actionwp_enqueue_scriptsincludes\class-videogate.php:68
actionwp_enqueue_scriptsincludes\class-videogate.php:69
actioninitincludes\class-videogate.php:74
filtertemplate_includeincludes\functions.php:56
actionwp_footerincludes\functions.php:130
Maintenance & Trust

VideoGate – Video Showcase Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedUnknown
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

VideoGate – Video Showcase Plugin Developer Profile

servigate

2 plugins · 0 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect VideoGate – Video Showcase Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/videogate/assets/css/admin.css/wp-content/plugins/videogate/assets/js/admin.js/wp-content/plugins/videogate/assets/libs/plyr/css/plyr.css/wp-content/plugins/videogate/assets/libs/hystmodal/css/hystmodal.min.css/wp-content/plugins/videogate/assets/css/public.css/wp-content/plugins/videogate/assets/libs/plyr/js/plyr.min.js/wp-content/plugins/videogate/assets/libs/hystmodal/js/hystmodal.min.js/wp-content/plugins/videogate/assets/js/app.js
Script Paths
/wp-content/plugins/videogate/assets/js/admin.js/wp-content/plugins/videogate/assets/js/app.js
Version Parameters
videogate/assets/css/admin.css?ver=videogate/assets/js/admin.js?ver=videogate/assets/libs/plyr/css/plyr.css?ver=videogate/assets/libs/hystmodal/css/hystmodal.min.css?ver=videogate/assets/css/public.css?ver=videogate/assets/libs/plyr/js/plyr.min.js?ver=videogate/assets/libs/hystmodal/js/hystmodal.min.js?ver=videogate/assets/js/app.js?ver=

HTML / DOM Fingerprints

JS Globals
videogate_varsvideogate_plyrvars
Shortcode Output
[videogate_videos]
FAQ

Frequently Asked Questions about VideoGate – Video Showcase Plugin