
Ybug Feedback Widget Security & Risk Analysis
wordpress.org/plugins/ybug-feedback-widgetCollect visual feedback and bug reports with screenshots from your users. This plugin allows you to easily add Ybug Feedback Widget on your website.
Is Ybug Feedback Widget Safe to Use in 2026?
Generally Safe
Score 92/100Ybug Feedback Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The ybug-feedback-widget v1.2.2 plugin exhibits a generally positive security posture based on the provided static analysis. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the code analysis indicates a complete absence of dangerous functions, raw SQL queries, and file operations, which are common vectors for exploitation. The plugin also demonstrates good practices by utilizing prepared statements for all SQL queries. However, a notable concern is the low percentage of properly escaped output (8%), suggesting a potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is directly outputted without adequate sanitization. The lack of identified taint flows and a clean vulnerability history are positive indicators, suggesting the plugin has historically been maintained with security in mind. Despite the low output escaping score, the overall security is strong due to the limited attack surface and absence of critical code signals.
Key Concerns
- Low percentage of properly escaped output
Ybug Feedback Widget Security Vulnerabilities
Ybug Feedback Widget Code Analysis
Output Escaping
Ybug Feedback Widget Attack Surface
WordPress Hooks 5
Maintenance & Trust
Ybug Feedback Widget Maintenance & Trust
Maintenance Signals
Community Trust
Ybug Feedback Widget Alternatives
Marker.io – Visual Website Feedback
marker-io
Collect visual website feedback from colleagues and clients on your WordPress site.
Feedbucket – Website Feedback Tool
feedbucket
Enable your clients and team members to submit feedback using screenshot and recordings on your WordPress site.
PageProofer
pageproofer
Allow developers, designers, clients and site visitors to easily leave feedback directly on your website.
Superflow: Markup live websites
superflow
Comment and collaborate directly on your live Wordpress website.
Gleap
gleap
All-in-one customer feedback tool for websites. Learn more at https://www.gleap.io
Ybug Feedback Widget Developer Profile
1 plugin · 200 total installs
How We Detect Ybug Feedback Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ybug-feedback-widget/includes/css/ybug-admin.css/wp-content/plugins/ybug-feedback-widget/includes/js/ybug-admin.js/wp-content/plugins/ybug-feedback-widget/public/css/ybug-widget.css/wp-content/plugins/ybug-feedback-widget/public/js/ybug-widget.js/wp-content/plugins/ybug-feedback-widget/includes/js/ybug-admin.js/wp-content/plugins/ybug-feedback-widget/public/js/ybug-widget.jsybug-feedback-widget/includes/css/ybug-admin.css?ver=ybug-feedback-widget/includes/js/ybug-admin.js?ver=ybug-feedback-widget/public/css/ybug-widget.css?ver=ybug-feedback-widget/public/js/ybug-widget.js?ver=HTML / DOM Fingerprints
ybug-roles-wrapperybug-role-namename="ybug[project]"name="ybug[restrict_access]"name="ybug[roles][]"name="ybug[visibility]"window.ybug_options