skiv video embedding

skiv video embedding has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it is fixed as of September 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.

The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).

The one issue recorded for skiv video embedding has a vendor fix available, so running the current release closes it.

All of these findings were reported by Gilang - DJ. skiv video embedding is installed on roughly 20 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.8.8.

Strategic Overview

Avg CVSSMedium
6.4/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all skiv video embedding vulnerabilities before they are exploited.

Highest severity on recordCVSS 6.4CVE-2025-6262

muse.ai video embedding <= 0.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via muse-ai Shortcode

Read the full analysis

Vulnerability Records

1 records
skiv video embedding banner
Latestv0.6.0

skiv video embedding

muse.ai is now skiv.com

Author

muse.ai is now skiv.com

0.0(0)
0/100
Last Updated
2026-03-08 (6mo ago)
Active Installs
20+
Downloads
3,208
Requires WP
4.7+
Requires PHP
0+
Tested up to
WP 6.8.8
Created
2021-09-02 (5y ago)

This plugin simplifies the embedding of videos hosted on skiv.com platform. It does three things: – whitelists skiv.com as an oEmbed provider (which lets you embed videos simply by pasting links), – adds shortcodes as an alternative method of embedding that gives you a bit more control, – adds an Elementor widget for embedding skiv.com videos. The shortcodes are essentially a wrapper around skiv.com embed library. To embed videos using oEmbed, simply paste a video link into a separate line in your post or page. For example: https://skiv.com/v/VBdrD8v If you would like more control, you can use shortcodes. For example: [muse-ai id="VBdrD8v" width="100%" title="0" logo="https://tinyurl.com/yourLogoPNG"]

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C