video carousel slider with lightbox Security & Risk Analysis

wordpress.org/plugins/wp-responsive-video-gallery-with-lightbox

This is a beautiful responsive video carousel slider with responsive lightbox for WordPress blogs and sites. Admin can manage any number of videos int …

1K active installs v1.0.25 PHP + WP 3.5+ Updated Dec 19, 2025
video-carouselvideo-galleryvideo-thumbnail-slidervimeo-slideryoutube-slider
98
A · Safe
CVEs total3
Unpatched0
Last CVESep 10, 2024
Safety Verdict

Is video carousel slider with lightbox Safe to Use in 2026?

Generally Safe

Score 98/100

video carousel slider with lightbox has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.

3 known CVEsLast CVE: Sep 10, 2024Updated 4mo ago
Risk Assessment

The "wp-responsive-video-gallery-with-lightbox" plugin, version 1.0.25, presents a mixed security posture. While it demonstrates good practices in its use of prepared statements for all SQL queries and a commendable number of capability checks and nonce checks, significant concerns remain regarding output sanitization. The static analysis revealed a very low percentage (14%) of properly escaped outputs, indicating a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. This is further supported by the historical vulnerability data, which shows past issues including SQL Injection, CSRF, and XSS. Although no critical or high-severity vulnerabilities are currently unpatched, the pattern of past vulnerabilities, especially XSS, coupled with the current low output escaping rate, suggests a persistent risk. The presence of two flows with unsanitized paths, though not rated as critical or high severity, also warrants attention as it can lead to unexpected behavior or potential exploits in certain scenarios. The plugin's attack surface is relatively small and appears to be protected by authentication for its AJAX endpoints, which is a positive sign.

Key Concerns

  • Low output escaping rate
  • Past XSS vulnerabilities
  • Unsanitized paths in taint flows
  • Past SQL injection vulnerabilities
  • Past CSRF vulnerabilities
Vulnerabilities
3 published

video carousel slider with lightbox Security Vulnerabilities

CVEs by Year

2 CVEs in 2023
2023
1 CVE in 2024
2024
Patched Has unpatched

Severity Breakdown

Medium
3

3 total CVEs

CVE-2019-25212medium · 4.9Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

video carousel slider with lightbox <= 1.0.6 - Authenticated (Admin+) SQL Injection

Sep 10, 2024 Patched in 1.0.7 (39d)
CVE-2023-5945medium · 4.3Cross-Site Request Forgery (CSRF)

video carousel slider with lightbox 1.0 - Cross-Site Request Forgery

Nov 2, 2023 Patched in 1.0.1 (82d)
CVE-2023-2710medium · 6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

video carousel slider with lightbox <= 1.0.22 - Reflected Cross-Site Scripting

May 15, 2023 Patched in 1.0.23 (253d)
Version History

video carousel slider with lightbox Release Timeline

v1.0.25Current
v1.0.24
v1.0.23
v1.0.221 CVE
v1.0.211 CVE
v1.0.201 CVE
v1.0.191 CVE
v1.0.181 CVE
v1.0.171 CVE
v1.0.161 CVE
v1.0.151 CVE
v1.0.141 CVE
v1.0.131 CVE
v1.0.121 CVE
v1.0.111 CVE
v1.0.101 CVE
v1.0.91 CVE
v1.0.81 CVE
v1.0.71 CVE
Code Analysis
Analyzed Mar 16, 2026

video carousel slider with lightbox Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
12 prepared
Unescaped Output
299
48 escaped
Nonce Checks
6
Capability Checks
10
File Operations
13
External Requests
3
Bundled Libraries
0

SQL Query Safety

100% prepared12 total queries

Output Escaping

14% escaped347 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

4 flows2 with unsanitized paths
responsive_video_gallery_with_lightbox_video_management_func (wp-responsive-video-gallery-with-lightbox.php:948)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

video carousel slider with lightbox Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 2

authwp_ajax_check_file_existwp-responsive-video-gallery-with-lightbox.php:22
authwp_ajax_get_youtube_infowp-responsive-video-gallery-with-lightbox.php:23

Shortcodes 1

[print_responsive_video_gallery_plus_lightbox] wp-responsive-video-gallery-with-lightbox.php:19
WordPress Hooks 10
filterwidget_textwp-responsive-video-gallery-with-lightbox.php:13
actionadmin_menuwp-responsive-video-gallery-with-lightbox.php:14
actionwp_enqueue_scriptswp-responsive-video-gallery-with-lightbox.php:18
actionadmin_noticeswp-responsive-video-gallery-with-lightbox.php:20
actionplugins_loadedwp-responsive-video-gallery-with-lightbox.php:24
filteruser_has_capwp-responsive-video-gallery-with-lightbox.php:25
filtermap_meta_capwp-responsive-video-gallery-with-lightbox.php:30
filterwidget_text_contentwp-responsive-video-gallery-with-lightbox.php:3816
filterthe_contentwp-responsive-video-gallery-with-lightbox.php:3817
filterrender_blockwp-responsive-video-gallery-with-lightbox.php:3828
Maintenance & Trust

video carousel slider with lightbox Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 19, 2025
PHP min version
Downloads54K

Community Trust

Rating88/100
Number of ratings7
Active installs1K
Developer Profile

video carousel slider with lightbox Developer Profile

Nks

19 plugins · 23K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
350 days
View full developer profile
Detection Fingerprints

How We Detect video carousel slider with lightbox

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-responsive-video-gallery-with-lightbox/public/css/responsive-video-gallery-with-lightbox.css/wp-content/plugins/wp-responsive-video-gallery-with-lightbox/public/js/responsive-video-gallery-with-lightbox.js
Script Paths
/wp-content/plugins/wp-responsive-video-gallery-with-lightbox/public/js/responsive-video-gallery-with-lightbox.js
Version Parameters
wp-responsive-video-gallery-with-lightbox/public/css/responsive-video-gallery-with-lightbox.css?ver=wp-responsive-video-gallery-with-lightbox/public/js/responsive-video-gallery-with-lightbox.js?ver=

HTML / DOM Fingerprints

CSS Classes
rvg-gallery-itemrvg-video-thumbrvg-play-buttonrvg-video-titlervg-captionrvg-responsive-gallery
HTML Comments
<!-- Responsive Video Gallery with Lightbox --><!-- End Responsive Video Gallery with Lightbox -->
Data Attributes
data-video-iddata-video-type
JS Globals
responsiveVideoGalleryLightboxrvg_gallery_data
REST Endpoints
/wp-json/rvg-responsive-video-gallery-with-lightbox/v1/settings
Shortcode Output
[print_responsive_video_gallery_plus_lightbox]
FAQ

Frequently Asked Questions about video carousel slider with lightbox