ytSubscribe – Youtube Subscribe Button Security & Risk Analysis

wordpress.org/plugins/ytsubscribe

Automatically Add Youtube Subscribe Button Below each Video WordPress Plugin

50 active installs v2016.10.2.3 PHP + WP 3.1+ Updated Oct 2, 2016
postpost-formatvideoyoutubeyoutube-video
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is ytSubscribe – Youtube Subscribe Button Safe to Use in 2026?

Generally Safe

Score 85/100

ytSubscribe – Youtube Subscribe Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "ytsubscribe" plugin v2016.10.2.3 exhibits a generally strong security posture. The absence of any identified attack surface points, dangerous functions, raw SQL queries, file operations, external HTTP requests, and vulnerability history suggests a well-developed and secure plugin. The taint analysis also reported no critical or high severity flows, further bolstering confidence in its safety.

However, there are a few areas that warrant attention. The plugin has 0 nonces and 0 capability checks, which, combined with no recorded authentication checks on the identified entry points (though there are none), means that if any entry points were to be introduced in future updates or were somehow missed in this analysis, they would be unprotected. Furthermore, while 76% of output is properly escaped, the remaining 24% (approximately 4 out of 17 outputs) could potentially be vulnerable to cross-site scripting (XSS) if the data being output is user-controlled and not properly sanitized at the input stage. This is a minor concern given the overall clean bill of health, but it is a risk that should ideally be addressed.

In conclusion, this version of the "ytsubscribe" plugin appears to be very secure with no known vulnerabilities or exploitable code patterns detected. The lack of a significant attack surface is a major strength. The only areas for improvement are ensuring all output is properly escaped and that robust authentication and authorization mechanisms are in place if new entry points are ever added.

Key Concerns

  • Unescaped output (24%)
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

ytSubscribe – Youtube Subscribe Button Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

ytSubscribe – Youtube Subscribe Button Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
13 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

76% escaped17 total outputs
Attack Surface

ytSubscribe – Youtube Subscribe Button Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuadmin\index.php:3
actionadmin_initadmin\index.php:16
actionwp_headindex.php:54
actionwp_enqueue_scriptsindex.php:55
Maintenance & Trust

ytSubscribe – Youtube Subscribe Button Maintenance & Trust

Maintenance Signals

WordPress version tested4.6.30
Last updatedOct 2, 2016
PHP min version
Downloads10K

Community Trust

Rating100/100
Number of ratings1
Active installs50
Developer Profile

ytSubscribe – Youtube Subscribe Button Developer Profile

My Coding Tricks

2 plugins · 60 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ytSubscribe – Youtube Subscribe Button

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ytsubscribe/ytSubscribe.js
Script Paths
/wp-content/plugins/ytsubscribe/ytSubscribe.js
Version Parameters
ytsubscribe/ytSubscribe.js?ver=2016.10.2.3

HTML / DOM Fingerprints

CSS Classes
ytSubscribe-innerytSubscribe-btn
Data Attributes
data-channeldata-themedata-countdata-layout
Shortcode Output
<script>jQuery(document).ready(function($){ $('body').ytSubscribe({ button: { channel: '', theme: '', count: '', layout: '
FAQ

Frequently Asked Questions about ytSubscribe – Youtube Subscribe Button