Awesome WordPress Slider Security & Risk Analysis

wordpress.org/plugins/awesome-wp-slider

Awesome Wordpress Slider is the most powerful and intuitive WordPress plugin to create sliders which was never possible before.

10 active installs v1.0.0 PHP + WP 3.9+ Updated Sep 9, 2018
owl-carouselowl-carousel-slidersliderslider-carouselwordpress-slider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Awesome WordPress Slider Safe to Use in 2026?

Generally Safe

Score 85/100

Awesome WordPress Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "awesome-wp-slider" v1.0.0 plugin exhibits a mixed security posture. On the positive side, it shows a good practice by using prepared statements for all its SQL queries and has no recorded vulnerability history. This suggests a generally well-developed and secure codebase historically. However, significant concerns arise from the static analysis. The plugin exposes two AJAX handlers without any authentication checks, creating a substantial attack surface for unauthorized actions. Furthermore, the presence of the `unserialize` function, a known dangerous function, without clear sanitization or context suggests a potential for deserialization vulnerabilities if user-controlled data is passed to it. The low percentage of properly escaped output (17%) is also a serious red flag, indicating a high likelihood of Cross-Site Scripting (XSS) vulnerabilities across the plugin's outputs.

Key Concerns

  • AJAX handlers without authentication checks
  • Presence of dangerous function (unserialize)
  • Low percentage of properly escaped output
  • No capability checks on entry points
Vulnerabilities
None known

Awesome WordPress Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Awesome WordPress Slider Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Awesome WordPress Slider Code Analysis

Dangerous Functions
1
Raw SQL Queries
0
0 prepared
Unescaped Output
153
32 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Dangerous Functions Found

unserializereturn unserialize( gzuncompress( stripslashes( call_user_func( 'base'. '64' .'_decode', rtrim( strtinc\cs-framework\functions\helpers.php:84

Output Escaping

17% escaped185 total outputs
Attack Surface
2 unprotected

Awesome WordPress Slider Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 2

authwp_ajax_cs-get-iconsinc\cs-framework\functions\actions.php:44
authwp_ajax_cs-export-optionsinc\cs-framework\functions\actions.php:68

Shortcodes 1

[aws_slides] theme-shortcodes\theme-slide.php:163
WordPress Hooks 24
filterwidget_textawesome-wordpress-slider.php:25
actionplugin_loadedawesome-wordpress-slider.php:42
actionwp_enqueue_scriptsawesome-wordpress-slider.php:54
actioninitinc\cs-framework\cs-framework.php:81
actionadmin_footerinc\cs-framework\functions\actions.php:88
actioncustomize_controls_print_footer_scriptsinc\cs-framework\functions\actions.php:89
actionadmin_enqueue_scriptsinc\cs-framework\functions\enqueue.php:39
filtercs_sanitize_textinc\cs-framework\functions\sanitize.php:14
filtercs_sanitize_textareainc\cs-framework\functions\sanitize.php:32
filtercs_sanitize_checkboxinc\cs-framework\functions\sanitize.php:58
filtercs_sanitize_switcherinc\cs-framework\functions\sanitize.php:59
filtercs_sanitize_image_selectinc\cs-framework\functions\sanitize.php:88
filtercs_sanitize_groupinc\cs-framework\functions\sanitize.php:104
filtercs_sanitize_titleinc\cs-framework\functions\sanitize.php:119
filtercs_sanitize_cleaninc\cs-framework\functions\sanitize.php:134
filtercs_validate_emailinc\cs-framework\functions\validate.php:18
filtercs_validate_numericinc\cs-framework\functions\validate.php:37
filtercs_validate_requiredinc\cs-framework\functions\validate.php:54
filtercs_customize_optionsinc\metabox-and-option.php:7
filtercs_shortcode_optionsinc\metabox-and-option.php:112
filtercs_framework_optionsinc\metabox-and-option.php:119
filtercs_metabox_optionsinc\metabox-and-option.php:296
actioninitinc\slider-toolkit-post-type.php:30
filterpost_updated_messagesinc\slider-toolkit-post-type.php:58
Maintenance & Trust

Awesome WordPress Slider Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedSep 9, 2018
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Awesome WordPress Slider Developer Profile

jewel1994

4 plugins · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Awesome WordPress Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/awesome-wp-slider/assets/css/animate.min.css/wp-content/plugins/awesome-wp-slider/assets/css/owl.theme.default.css/wp-content/plugins/awesome-wp-slider/assets/css/owl.carousel.css/wp-content/plugins/awesome-wp-slider/assets/css/slider-toolkit.css/wp-content/plugins/awesome-wp-slider/assets/js/owl.carousel.min.js/wp-content/plugins/awesome-wp-slider/assets/js/wow.min.js/wp-content/plugins/awesome-wp-slider/assets/js/active.js
Script Paths
/wp-content/plugins/awesome-wp-slider/assets/js/owl.carousel.min.js/wp-content/plugins/awesome-wp-slider/assets/js/wow.min.js/wp-content/plugins/awesome-wp-slider/assets/js/active.js
Version Parameters
awesome-wp-slider/assets/css/animate.min.css?ver=awesome-wp-slider/assets/css/owl.theme.default.css?ver=awesome-wp-slider/assets/css/owl.carousel.css?ver=awesome-wp-slider/assets/css/slider-toolkit.css?ver=awesome-wp-slider/assets/js/owl.carousel.min.js?ver=awesome-wp-slider/assets/js/wow.min.js?ver=awesome-wp-slider/assets/js/active.js?ver=

HTML / DOM Fingerprints

CSS Classes
aws-slider-toolkit
HTML Comments
<!-- Load plugin textdomain. --><!-- Register Toolkit Files --><!-- Exit if accessed directly -->
Data Attributes
data-wow-durationdata-wow-delaydata-wow-iteration
JS Globals
WOWjQuery
Shortcode Output
<div class="aws-slider-toolkit owl-carousel owl-theme">
FAQ

Frequently Asked Questions about Awesome WordPress Slider