
My YouTube Channel Security & Risk Analysis
wordpress.org/plugins/youtube-channelShow video thumbnails or playable video block of recent YouTube Playlist, Channel (User Uploads) videos.
Is My YouTube Channel Safe to Use in 2026?
Generally Safe
Score 91/100My YouTube Channel has a strong security track record. Known vulnerabilities have been patched promptly.
The 'youtube-channel' plugin v3.25.2 exhibits a generally strong security posture based on static analysis. The plugin demonstrates good practices with a high percentage of properly escaped output and the use of prepared statements for all SQL queries. Crucially, there are no identified dangerous functions, and all identified entry points (AJAX handlers, shortcodes) appear to have some form of authentication or capability checks, which is a significant strength. Taint analysis revealed no concerning flows, indicating that user input is likely handled safely within the analyzed code paths.
However, a notable concern arises from the plugin's vulnerability history. With a total of 4 known CVEs, all of which are currently unpatched and categorized as medium severity, this indicates a recurring pattern of security weaknesses. The common types of past vulnerabilities, including CSRF, XSS, and missing authorization, suggest potential issues with input validation, output encoding, and permission handling in previous versions. While no critical or high vulnerabilities are currently listed, the historical prevalence of medium vulnerabilities warrants careful consideration.
In conclusion, the 'youtube-channel' plugin v3.25.2 has a solid foundation in terms of current code practices, with strong output escaping, secure SQL handling, and protected entry points. The absence of critical taint flows and dangerous functions is also positive. The primary weakness lies in its past vulnerability history, which, despite being currently unpatched, indicates a need for ongoing vigilance and potential for latent issues to be re-introduced. The presence of bundled libraries, while common, could also be a minor area for review.
Key Concerns
- 4 unpatched medium CVEs
- Bundled library (TinyMCE)
My YouTube Channel Security Vulnerabilities
CVEs by Year
Severity Breakdown
4 total CVEs
My YouTube Channel <= 3.23.3 - Cross-Site Request Forgery to Cache Deletion
YouTube Channel < 3.0.12.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
My YouTube Channel <= 3.0.12.1 - Missing Authorization
My YouTube Channel <= 3.0.12.1 - Authenticated (Administrator+) Stored Cross-Site Scripting
My YouTube Channel Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
My YouTube Channel Attack Surface
AJAX Handlers 1
Shortcodes 2
WordPress Hooks 12
Maintenance & Trust
My YouTube Channel Maintenance & Trust
Maintenance Signals
Community Trust
My YouTube Channel Alternatives
Video Gallery – YouTube Playlist, Channel Gallery by YotuWP
yotuwp-easy-youtube-embed
Modern responsive YouTube video gallery helps your website getting noticed from visitors, increase the reach and stand out from the competitors.
Meks Video Importer
meks-video-importer
Easily import YouTube and Vimeo videos in bulk to your posts, pages or any custom post type.
Video Gallery – YouTube Gallery & Responsive Video Playlist
youtube-showcase
Responsive video gallery and YouTube gallery for WordPress. Create a video grid or YouTube playlist visually in the block editor. No shortcodes!
GS YouTube Gallery – Video Feed, Channel Playlist & YouTube Slider
gs-youtube-gallery
Create a Stunning & Responsive Video Gallery for Channel or Playlist Videos.
Modus YouTube Channel
modus-youtube-channel
This nice plugin will display your YouTube Channel, Playlist, or both in responsive rows and columns which you set, you can also modify the amount of …
My YouTube Channel Developer Profile
8 plugins · 108K total installs
How We Detect My YouTube Channel
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/youtube-channel/assets/css/ytc-public.css/wp-content/plugins/youtube-channel/assets/js/ytc-public.js/wp-content/plugins/youtube-channel/assets/css/ytc-editor.css/wp-content/plugins/youtube-channel/assets/js/ytc-editor.js/wp-content/plugins/youtube-channel/assets/js/ytc-backend.js/wp-content/plugins/youtube-channel/assets/css/ytc-backend.css/wp-content/plugins/youtube-channel/assets/js/ytc-admin.js/wp-content/plugins/youtube-channel/assets/js/ytc-widget.js+2 more/wp-content/plugins/youtube-channel/assets/js/ytc-public.js/wp-content/plugins/youtube-channel/assets/js/ytc-editor.js/wp-content/plugins/youtube-channel/assets/js/ytc-backend.js/wp-content/plugins/youtube-channel/assets/js/ytc-admin.js/wp-content/plugins/youtube-channel/assets/js/ytc-widget.js/wp-content/plugins/youtube-channel/assets/js/ytc-video-player.js+1 moreyoutube-channel/assets/css/ytc-public.css?ver=youtube-channel/assets/js/ytc-public.js?ver=youtube-channel/assets/css/ytc-editor.css?ver=youtube-channel/assets/js/ytc-editor.js?ver=youtube-channel/assets/js/ytc-backend.js?ver=youtube-channel/assets/css/ytc-backend.css?ver=youtube-channel/assets/js/ytc-admin.js?ver=youtube-channel/assets/js/ytc-widget.js?ver=youtube-channel/assets/js/ytc-video-player.js?ver=youtube-channel/assets/js/ytc-tinymce-addon.js?ver=HTML / DOM Fingerprints
ytc-youtube-channelytc-videosytc-channel-wrapytc-video-itemytc-video-thumbnailytc-video-titleytc-video-descriptionytc-channel-link+6 more<!-- Plugin: My YouTube Channel --><!-- My YouTube Channel Settings Page --><!-- YTC Clear Cache Button --><!-- YTC Widget -->+1 moredata-ytc-channel-iddata-ytc-playlist-iddata-ytc-handledata-ytc-vanitydata-ytc-fetchdata-ytc-num+24 moreYTC_PUBLIC_VARSytc_script_varswpau_my_youtube_channel_settings/wp-json/youtube-channel/v1/videos/wp-json/youtube-channel/v1/channel-info/wp-json/youtube-channel/v1/playlist-info[youtube_channel][ytc]