Best Images slider Security & Risk Analysis

wordpress.org/plugins/best-images-slider

A quick, easy way to add an Responsive header best image slider OR Responsive Best Images slider inside wordpress page OR Template.

10 active installs v1.0 PHP + WP 3.5+ Updated Jan 18, 2016
banner-slidergallery-sliderheader-banner-sliderimage-sliderresponsive-banner-slider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Best Images slider Safe to Use in 2026?

Generally Safe

Score 85/100

Best Images slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "best-images-slider" plugin v1.0 exhibits a generally good security posture, with no known vulnerabilities and a clean vulnerability history. The code analysis reveals a limited attack surface, with only one shortcode entry point and no unprotected AJAX handlers or REST API routes. The use of prepared statements for all SQL queries is a strong indicator of secure database interaction. The presence of nonce and capability checks further bolsters its security, suggesting developers have implemented some fundamental security measures.

However, a significant concern arises from the very low percentage of properly escaped output (18%). This indicates a high likelihood of Cross-Site Scripting (XSS) vulnerabilities, where user-supplied input might be directly reflected in the output without proper sanitization. While no specific XSS issues were flagged in the static analysis, this widespread lack of proper escaping represents a critical weakness. The absence of any identified taint flows is somewhat contradictory to the poor output escaping, and might suggest the scope of the taint analysis was limited or that the dangerous inputs are not being used in a way that triggers the taint analysis engine.

In conclusion, while the plugin has a clean slate regarding known vulnerabilities and demonstrates good practices in areas like SQL sanitization and authentication checks, the severely underdeveloped output escaping is a major security flaw that needs immediate attention. This weakness overshadows the plugin's strengths and makes it susceptible to XSS attacks.

Key Concerns

  • Insufficient output escaping
Vulnerabilities
None known

Best Images slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Best Images slider Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Best Images slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
2 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

18% escaped11 total outputs
Attack Surface

Best Images slider Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[sp_best.images.slider] best-images-slider.php:38
WordPress Hooks 10
actioninitbest-images-slider.php:22
actionwp_enqueue_scriptsbest-images-slider.php:25
actioninitbest-images-slider.php:28
actionadd_meta_boxesbest-images-slider.php:29
actionsave_postbest-images-slider.php:30
filtermanage_responsive_best_slider-category_custom_columnbest-images-slider.php:35
filtermanage_edit-responsive_best_slider-category_columnsbest-images-slider.php:36
actionplugins_loadedbest-images-slider.php:352
actionadmin_menubis_gallery_admin_settings_center.php:2
actionadmin_headbis_gallery_admin_settings_center.php:43
Maintenance & Trust

Best Images slider Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedJan 18, 2016
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Best Images slider Developer Profile

smit jon

16 plugins · 160 total installs

84
trust score
Avg Security Score
86/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Best Images slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/best-images-slider/css/responsiveimgslider.css/wp-content/plugins/best-images-slider/css/sprout-slide.css/wp-content/plugins/best-images-slider/css/bis_best-images-slider.css/wp-content/plugins/best-images-slider/js/sprout-slide.js/wp-content/plugins/best-images-slider/js/slider.touchSwipe.js
Script Paths
/wp-content/plugins/best-images-slider/js/sprout-slide.js/wp-content/plugins/best-images-slider/js/slider.touchSwipe.js

HTML / DOM Fingerprints

Data Attributes
data-slide-link
Shortcode Output
[sp_best.images.slider]
FAQ

Frequently Asked Questions about Best Images slider