
WP Latest Video Widget Security & Risk Analysis
wordpress.org/plugins/wp-latest-video-widgetWP Latest Video Widget is a sidebar widget that displays latest video from a custom set category. Based on custom fields.
Is WP Latest Video Widget Safe to Use in 2026?
Generally Safe
Score 85/100WP Latest Video Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-latest-video-widget plugin, version 1.70, exhibits a mixed security posture. On the positive side, the plugin shows excellent practices regarding SQL queries, with 100% using prepared statements, and has no known vulnerabilities (CVEs) in its history. The absence of file operations and external HTTP requests also reduces potential attack vectors. However, significant concerns arise from the code analysis. The presence of the `create_function` function is a strong indicator of potential security risks, as it is deprecated and can lead to execution vulnerabilities if not handled with extreme care. Furthermore, a very low percentage (2%) of outputs are properly escaped, creating a high likelihood of cross-site scripting (XSS) vulnerabilities. The lack of nonce checks and capability checks, combined with the absence of any identifiable attack surface, is peculiar and could indicate that the plugin doesn't expose functionality requiring such checks, or that these checks are entirely missing from its limited functionality.
Key Concerns
- Use of dangerous function create_function
- Low output escaping (2%)
- No nonce checks implemented
- No capability checks implemented
WP Latest Video Widget Security Vulnerabilities
WP Latest Video Widget Release Timeline
WP Latest Video Widget Code Analysis
Dangerous Functions Found
Output Escaping
WP Latest Video Widget Attack Surface
WordPress Hooks 1
Maintenance & Trust
WP Latest Video Widget Maintenance & Trust
Maintenance Signals
Community Trust
WP Latest Video Widget Alternatives
YouTube Sidebar
youtube-sidebar
YouTube Sidebar displays videos on a per post basis. To make good use of a single space it allows ads to be displayed when no video present
Wonder Video Embed
wonderplugin-video-embed
Embed MP4, Youtube, Vimeo, Wistia videos to the sidebar widget, WordPress posts and pages.
My YouTube Channel
youtube-channel
Show video thumbnails or playable video block of recent YouTube Playlist, Channel (User Uploads) videos.
Auto Last Youtube Video
auto-last-youtube-video
This plugin provides both Widget and Shortcode to show latest videos from any public Youtube channel.
TechGasp Tube Master
youtube-master
TechGasp Tube Master displays Youtube Playlists or Single Videos with optional Youtube Subscribe Channel button and Google Hangouts.
WP Latest Video Widget Developer Profile
1 plugin · 20 total installs
How We Detect WP Latest Video Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-latest-video-widget/wp_latest_video.phpHTML / DOM Fingerprints
specimen_widget_videodata-youtube_video_iddata-vimeo_video_iddata-apropo_video_iddata-apropo_video_keydata-widthdata-height