Widgets for Youtube Video Feed Security & Risk Analysis

wordpress.org/plugins/widgets-for-youtube-video-feed

Youtube Feed Widgets. Display your Youtube feed on your website to increase engagement, sales and SEO.

50 active installs v1.7.9 PHP 7.0+ WP 6.2+ Updated Feb 26, 2026
feedgalleryvideowidgetyoutube
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Widgets for Youtube Video Feed Safe to Use in 2026?

Generally Safe

Score 100/100

Widgets for Youtube Video Feed has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The 'widgets-for-youtube-video-feed' v1.7.9 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, fully prepared SQL queries, and 100% properly escaped output are significant strengths. Furthermore, the plugin demonstrates good practices by incorporating nonce checks and capability checks, indicating an effort to protect against common WordPress attack vectors. The lack of any recorded vulnerabilities in its history also contributes to a positive security assessment.

However, the static analysis did identify two flows with unsanitized paths. While no critical or high severity taint flows were detected, and the overall attack surface appears to be zero, these unsanitized paths represent a potential entry point for attackers if they can be manipulated. The plugin also makes six external HTTP requests, which, while not inherently a vulnerability, could become a vector for supply chain attacks or information disclosure if not handled securely. The absence of critical vulnerabilities and a clean history are commendable, but the presence of unsanitized paths warrants attention.

Key Concerns

  • Flows with unsanitized paths found
  • External HTTP requests made
Vulnerabilities
None known

Widgets for Youtube Video Feed Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Widgets for Youtube Video Feed Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
458 escaped
Nonce Checks
15
Capability Checks
4
File Operations
0
External Requests
6
Bundled Libraries
0

Output Escaping

100% escaped460 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

5 flows2 with unsanitized paths
<admin> (include\admin.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Widgets for Youtube Video Feed Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 27
filterrocket_minify_excluded_external_jsinclude\cache-plugin-filters.php:13
filterrocket_exclude_jsinclude\cache-plugin-filters.php:14
filterrocket_delay_js_exclusionsinclude\cache-plugin-filters.php:15
filterlitespeed_optimize_js_excludesinclude\cache-plugin-filters.php:16
filtersgo_javascript_combine_excluded_external_pathsinclude\cache-plugin-filters.php:17
filtersgo_css_combine_excludeinclude\cache-plugin-filters.php:18
filterrocket_rucss_safelistinclude\cache-plugin-filters.php:58
filterscript_loader_taginclude\cache-plugin-filters.php:63
filterstyle_loader_taginclude\cache-plugin-filters.php:78
actionwp_footertrustindex-feed-plugin.class.php:4817
actionadmin_footertrustindex-feed-plugin.class.php:4818
filterfilesystem_methodtrustindex-feed-plugin.class.php:4902
actionadmin_noticestrustindex-feed-plugin.class.php:4927
actionplugins_loadedwidgets-for-youtube-video-feed.php:34
actionadmin_menuwidgets-for-youtube-video-feed.php:35
filterplugin_action_linkswidgets-for-youtube-video-feed.php:36
filterplugin_row_metawidgets-for-youtube-video-feed.php:37
actioninitwidgets-for-youtube-video-feed.php:38
actionadmin_enqueue_scriptswidgets-for-youtube-video-feed.php:39
actioninitwidgets-for-youtube-video-feed.php:41
actioninitwidgets-for-youtube-video-feed.php:57
filterscript_loader_tagwidgets-for-youtube-video-feed.php:58
actionrest_api_initwidgets-for-youtube-video-feed.php:64
actionadmin_noticeswidgets-for-youtube-video-feed.php:105
actionelementor/widgets/widgets_registeredwidgets-for-youtube-video-feed.php:147
actionelementor/elements/categories_registeredwidgets-for-youtube-video-feed.php:151
actionwp_enqueue_scriptswidgets-for-youtube-video-feed.php:160
Maintenance & Trust

Widgets for Youtube Video Feed Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 26, 2026
PHP min version7.0
Downloads3K

Community Trust

Rating20/100
Number of ratings1
Active installs50
Developer Profile

Widgets for Youtube Video Feed Developer Profile

Trustindex

32 plugins · 976K total installs

87
trust score
Avg Security Score
98/100
Avg Patch Time
78 days
View full developer profile
Detection Fingerprints

How We Detect Widgets for Youtube Video Feed

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/widgets-for-youtube-video-feed/assets/css/frontend-notifictions.css/wp-content/plugins/widgets-for-youtube-video-feed/assets/js/frontend-notifictions.js
Version Parameters
widgets-for-youtube-video-feed/assets/js/frontend-notifictions.js?ver=widgets-for-youtube-video-feed/assets/css/frontend-notifictions.css?ver=

HTML / DOM Fingerprints

CSS Classes
trustindex-notification-rowtrustindex-star-rowti-close-notificationti-button-primaryti-remind-laterti-hide-notificationtrustindex-noticetrustindex-notice-dismiss
HTML Comments
Copyright 2019 Trustindex Kft (email: support@trustindex.io)
Data Attributes
data-close-urldata-redirect-url
REST Endpoints
/wp-json/widgets-for-youtube-video-feed/v1/get-token/wp-json/widgets-for-youtube-video-feed/v1/troubleshooting/wp-json/widgets-for-youtube-video-feed/v1/refresh-data
FAQ

Frequently Asked Questions about Widgets for Youtube Video Feed