
Ultimate Before After Image Slider & Gallery – BEAF Security & Risk Analysis
wordpress.org/plugins/beaf-before-and-after-galleryNeed a Before After Image Comparison slider? Create your before and after slider with BEAF. Addon for Elementor Before and After Slider is included.
Is Ultimate Before After Image Slider & Gallery – BEAF Safe to Use in 2026?
Generally Safe
Score 97/100Ultimate Before After Image Slider & Gallery – BEAF has a strong security track record. Known vulnerabilities have been patched promptly.
The 'beaf-before-and-after-gallery' plugin version 4.7.14 exhibits a mixed security posture. While it demonstrates good practices by using prepared statements for all SQL queries and a high percentage of properly escaped output, there are significant concerns regarding its attack surface and historical vulnerabilities.
The static analysis reveals a notable attack surface with 6 AJAX handlers, and critically, 3 of these lack authentication checks, presenting a direct pathway for potential exploitation if these handlers are susceptible to unauthorized actions. The presence of the `unserialize` function is a known risky function, although no critical or high-severity taint flows were identified in the limited analysis. The plugin also bundles the Select2 library, which could potentially be an outdated or vulnerable component depending on its specific version.
Historically, the plugin has a track record of security issues, with 2 known CVEs. Although none are currently unpatched, the previous vulnerabilities included 'Unrestricted Upload of File with Dangerous Type' and 'Cross-Site Request Forgery (CSRF)', indicating a pattern of weaknesses that could resurface. The last vulnerability was recorded relatively recently, suggesting ongoing security challenges. Despite good internal coding practices in areas like SQL, the external factors of attack surface and historical issues warrant caution.
Key Concerns
- 3 AJAX handlers without auth checks
- Presence of 'unserialize' function
- 2 known CVEs in vulnerability history
- Bundled library (Select2) may be outdated
Ultimate Before After Image Slider & Gallery – BEAF Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
BEAF <= 4.6.10 - Authenticated (Admin+) Arbitrary File Upload
BEAF <= 4.5.4 - Cross-Site Request Forgery to Notice Dismissal
Ultimate Before After Image Slider & Gallery – BEAF Code Analysis
Dangerous Functions Found
Bundled Libraries
Output Escaping
Data Flow Analysis
Ultimate Before After Image Slider & Gallery – BEAF Attack Surface
AJAX Handlers 6
Shortcodes 3
WordPress Hooks 86
Scheduled Events 1
Maintenance & Trust
Ultimate Before After Image Slider & Gallery – BEAF Maintenance & Trust
Maintenance Signals
Community Trust
Ultimate Before After Image Slider & Gallery – BEAF Alternatives
Twenty20 Image Before-After
twenty20
Professional before & after image comparison slider for WordPress. Create engaging visual comparisons with an intuitive drag & drop interface.
Before After Image Comparison Slider for Elementor
before-after-image-comparison-slider-for-elementor
Before After Image Comparison Slider for Elementor is an image comparison slider plugin for Elementor Page Builder. This plugin allows you to create t …
Before After Image Comparison Slider for WPBakery Page Builder
before-after-image-comparison-slider-for-visual-composer
Before After Image Comparison Slider for WPBakery is an image comparison slider plugin for WPBakery Page Builder. This plugin allows you to create the …
Image Before After Addon for Elementor – WPTD
wptd-image-compare
WPTD Image Before After is advanced elementor image compare plugin. You can easily compare two images by selection. Also we Provide here horizontal an …
Before After Slider for WooCommerce – eBEAF
before-after-for-woocommerce
Want to show comparison of two images on your WooCommerce Store? Easily create before and after image slider for WooCommerce and add it on your single …
Ultimate Before After Image Slider & Gallery – BEAF Developer Profile
11 plugins · 97K total installs
How We Detect Ultimate Before After Image Slider & Gallery – BEAF
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/beaf-before-and-after-gallery/assets/css/beaf-admin-options.css/wp-content/plugins/beaf-before-and-after-gallery/assets/js/beaf-options.js/wp-content/plugins/beaf-before-and-after-gallery/assets/libs/notyf/notyf.min.css/wp-content/plugins/beaf-before-and-after-gallery/assets/css/bafg-admin-style.css/wp-content/plugins/beaf-before-and-after-gallery/assets/js/wp-color-picker-alpha.min.js/wp-content/plugins/beaf-before-and-after-gallery/assets/libs/notyf/notyf.min.js/wp-content/plugins/beaf-before-and-after-gallery/assets/js/bafg-script.js/wp-content/plugins/beaf-before-and-after-gallery/assets/js/beaf-options.js/wp-content/plugins/beaf-before-and-after-gallery/assets/js/wp-color-picker-alpha.min.js/wp-content/plugins/beaf-before-and-after-gallery/assets/libs/notyf/notyf.min.js/wp-content/plugins/beaf-before-and-after-gallery/assets/js/bafg-script.jsbeaf-admin-options.css?ver=beaf-options.js?ver=notyf.min.css?ver=bafg-admin-style.css?ver=wp-color-picker-alpha.min.js?ver=notyf.min.js?ver=bafg-script.js?ver=HTML / DOM Fingerprints
bafg_copybafg_before_after_methodbafg_before_after_imagebafg_first_imagebafg_before_imagebeaf_metabeaf_optionsbeaf_admin_data[bafg