
Workbox Video from Vimeo & Youtube Plugin Security & Risk Analysis
wordpress.org/plugins/workbox-video-from-vimeo-youtube-pluginQuick and easy way to add and manage videos on your site or blog. Supports Vimeo, Wistia, YouTube.
Is Workbox Video from Vimeo & Youtube Plugin Safe to Use in 2026?
Use With Caution
Score 63/100Workbox Video from Vimeo & Youtube Plugin has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The 'workbox-video-from-vimeo-youtube-plugin' v3.2.2 exhibits a mixed security posture. While the plugin demonstrates good practices such as using prepared statements for all SQL queries and having a limited attack surface, significant concerns are present. The presence of an unprotected AJAX handler is a critical flaw, allowing unauthenticated users to potentially trigger actions within the plugin. The high percentage of unsanitized taint flows, particularly those with paths, suggests a risk of file path manipulation or directory traversal vulnerabilities, even though no critical or high severity taint flows were explicitly identified in this analysis. The plugin's vulnerability history, including a recent medium-severity Cross-Site Scripting (XSS) vulnerability that remains unpatched, indicates a pattern of security weaknesses that could be exploited. This unpatched vulnerability is a significant immediate risk. Overall, the plugin has strengths in its database interaction security but weaknesses in input validation and overall vulnerability management.
Key Concerns
- Unprotected AJAX handler
- Unsanitized taint flows with paths
- Unpatched medium severity CVE
- Lack of capability checks
- Low output escaping coverage
Workbox Video from Vimeo & Youtube Plugin Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Workbox Video from Vimeo & Youtube <= 3.2.2 - Reflected Cross-Site Scripting
Workbox Video from Vimeo & Youtube Plugin Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Workbox Video from Vimeo & Youtube Plugin Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 12
Maintenance & Trust
Workbox Video from Vimeo & Youtube Plugin Maintenance & Trust
Maintenance Signals
Community Trust
Workbox Video from Vimeo & Youtube Plugin Alternatives
All-in-One Video Gallery
all-in-one-video-gallery
The ultimate video player & video gallery plugin for YouTubers, Video Bloggers, Course Creators, Podcasters, and anyone embedding videos on websites.
Video Gallery Block – Display your videos as a gallery in a professional way
video-gallery-block
Video Gallery Block lets you create responsive YouTube, Vimeo, and HTML5 video galleries with grid layouts, filters, and lightbox in Gutenberg.
Video gallery and Player
html5-videogallery-plus-player
Easy to add and display your HTML5, YouTube, Vimeo vedio gallery with Magnific Popup to your website. Also work with Gutenberg shortcode block.
Video Gallery by Huzzaz
huzzaz-video-gallery
Create a beautiful video gallery with YouTube, Vimeo, Facebook, and Twitch videos. It looks great on mobile, tablet, or desktop screens and it support …
Video Gallery YouTube Vimeo
new-video-gallery
Create responsive YouTube and Vimeo video galleries with custom layouts, lightbox display, and easy shortcode embedding.
Workbox Video from Vimeo & Youtube Plugin Developer Profile
3 plugins · 410 total installs
How We Detect Workbox Video from Vimeo & Youtube Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/css/style.css/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/js/admin.js/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/js/script.js/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/css/wb-video-styles.css/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/js/jquery-sortable.js/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/js/admin.js/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/js/script.js/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/js/jquery-sortable.jsworkbox-video-from-vimeo-youtube-plugin/css/style.css?ver=workbox-video-from-vimeo-youtube-plugin/js/admin.js?ver=workbox-video-from-vimeo-youtube-plugin/js/script.js?ver=workbox-video-from-vimeo-youtube-plugin/css/wb-video-styles.css?ver=workbox-video-from-vimeo-youtube-plugin/js/jquery-sortable.js?ver=HTML / DOM Fingerprints
wb-video-pagerwb-video-pager-awb-video-containerwb-video-itemwb-video-list-titlewb-video-list-descriptiondata-wb-video-VY-page-lendata-class-wb-video-pagerdata-class-wb-video-pager-adata-class-wb-video-containerdata-class-wb-video-itemwb_video_VY_page_lenclass_wb_video_pagerclass_wb_video_pager_aclass_wb_video_containerclass_wb_video_itemwbsortdata[workbox_video_YV_list