
Advanced Testimonial Carousel For Elementor Security & Risk Analysis
wordpress.org/plugins/advanced-testimonial-carousel-for-elementorAdvanced Testimonial Carousel For Elementor. You can add image, name, describes, title, added Unlimited slider.
Is Advanced Testimonial Carousel For Elementor Safe to Use in 2026?
Generally Safe
Score 100/100Advanced Testimonial Carousel For Elementor has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The plugin "advanced-testimonial-carousel-for-elementor" v3.1.2 presents a mixed security posture. While it demonstrates good practices in areas like SQL query sanitization and output escaping, with 100% of SQL queries using prepared statements and 98% of outputs properly escaped, significant concerns remain due to its attack surface. The plugin exposes two AJAX handlers, both of which lack authentication checks, presenting a clear risk of unauthorized actions being performed. The vulnerability history, while showing no currently unpatched vulnerabilities, includes one past medium severity vulnerability related to missing authorization, which aligns with the identified AJAX handler issues and suggests a recurring pattern of authorization flaws.
The lack of authentication on AJAX endpoints is the most critical finding from the static analysis. This creates a direct pathway for unauthenticated users to potentially trigger sensitive functionality within the plugin. Although taint analysis and code signals indicate no dangerous functions or file operations, and external HTTP requests are absent, the unprotected AJAX endpoints represent a tangible and exploitable risk. The presence of nonces and capability checks on some entry points is a positive indicator, but it is insufficient when other entry points are entirely unprotected. In conclusion, while the plugin has made progress in secure coding practices for certain areas, the critical oversight of unauthenticated AJAX handlers significantly weakens its overall security.
Key Concerns
- Unprotected AJAX handlers
- Past medium severity vulnerability (missing authorization)
Advanced Testimonial Carousel For Elementor Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Advanced Testimonial Carousel for Elementor <= 3.0.0 - Missing Authorization
Advanced Testimonial Carousel For Elementor Release Timeline
Advanced Testimonial Carousel For Elementor Code Analysis
Output Escaping
Advanced Testimonial Carousel For Elementor Attack Surface
AJAX Handlers 2
WordPress Hooks 14
Maintenance & Trust
Advanced Testimonial Carousel For Elementor Maintenance & Trust
Maintenance Signals
Community Trust
Advanced Testimonial Carousel For Elementor Alternatives
Stax Addons for Elementor
stax-addons-for-elementor
20+ lightweight widgets and enhancements for Elementor. Modular, fast, and zero bloat — assets load only when used.
Webdevez Testimonials Slider for Elementor
webdevez-testimonials-slider-for-elementor
A powerful and customizable testimonial slider for Elementor, supporting both text and video testimonials with 4 unique layouts.
Testimonial Carousel For Elementor
testimonials-carousel-elementor
The compact Testimonial Carousel for Elementor lets you show long text reviews in Pop-Up of Carousel Slider.
Responsive Owl Carousel for Elementor
responsive-owl-carousel-elementor
A highly customizable, powerful & responsive carousel plugin for Elementor page builder that is based on the Owl Carousel jQuery plugin.
Magical Posts Display – Elementor Advanced Posts widgets
magical-posts-display
Show your site posts, Pages and Custom Post Types with many different styles by Elementor Widgets.
Advanced Testimonial Carousel For Elementor Developer Profile
5 plugins · 3K total installs
How We Detect Advanced Testimonial Carousel For Elementor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/advanced-testimonial-carousel-for-elementor/assets/css/atc-testimonial.css/wp-content/plugins/advanced-testimonial-carousel-for-elementor/assets/css/atc-editor.css/wp-content/plugins/advanced-testimonial-carousel-for-elementor/assets/js/atc-testimonial.jsassets/js/atc-testimonial.jsadvanced-testimonial-carousel-for-elementor/assets/css/atc-testimonial.css?ver=advanced-testimonial-carousel-for-elementor/assets/css/atc-editor.css?ver=advanced-testimonial-carousel-for-elementor/assets/js/atc-testimonial.js?ver=HTML / DOM Fingerprints
atc-testimonial-carousel-wrapperatc-single-itematc-testimonial-itematc-testimonial-contentatc-testimonial-author-imageatc-testimonial-author-nameatc-testimonial-author-designationatc-testimonial-rating-stars+5 more<!-- START Advanced Testimonial Carousel --><!-- END Advanced Testimonial Carousel --><!-- Advanced Testimonial Carousel For Elementor -->data-atc-nav-nextdata-atc-nav-prevdata-atc-paginationdata-atc-loopdata-atc-autoplaydata-atc-items+2 moreatcSwiperVar[advanced_testimonial_carousel