
Content text slider on post Security & Risk Analysis
wordpress.org/plugins/content-text-slider-on-postUse this plugin to scroll the content vertically in the posts and pages.
Is Content text slider on post Safe to Use in 2026?
Generally Safe
Score 85/100Content text slider on post has a strong security track record. Known vulnerabilities have been patched promptly.
The 'content-text-slider-on-post' plugin version 8.2 exhibits a mixed security posture. On the positive side, it demonstrates good practices with a high percentage of SQL queries using prepared statements and the presence of nonce checks. The attack surface is also limited to a single shortcode, with no unprotected entry points identified in the static analysis. However, there are significant concerns regarding output escaping, with only 48% of outputs properly escaped. This is a considerable weakness, as it leaves the plugin susceptible to Cross-Site Scripting (XSS) vulnerabilities. The taint analysis also reveals one flow with an unsanitized path, which, while not classified as critical or high severity, still warrants attention as it indicates a potential vector for malicious input to reach sensitive parts of the code. The plugin's vulnerability history is also a concern; it has a past CVE for XSS, and the last vulnerability was in 2015. While there are currently no unpatched vulnerabilities, the nature of the past vulnerability (XSS) aligns with the identified output escaping issues. The lack of capability checks, while not directly flagged as an issue in the static analysis, is a common area where vulnerabilities are introduced if entry points are not properly restricted by user roles. Overall, the plugin has some solid security foundations but is hampered by a significant output escaping deficiency and a history of XSS vulnerabilities, making it a moderate risk, particularly if the unsanitized path leads to exploitable XSS.
Key Concerns
- Significant portion of outputs not properly escaped
- Taint analysis: flow with unsanitized path
- Past CVE for XSS (improper input neutralization)
- No capability checks on entry points
Content text slider on post Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Content text slider on post < 6.9 - Cross-Site Scripting
Content text slider on post Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Content text slider on post Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Content text slider on post Maintenance & Trust
Maintenance Signals
Community Trust
Content text slider on post Alternatives
Logo Slider – Logo Showcase, Logo Carousel, Logo Gallery and Client Logo Presentation
gs-logo-slider
Logo Slider: The best responsive plugin for Logo Showcase, Logo Carousel, and displaying clients' logos. Includes shortcode generator with preview!
WP Dummy Content Generator
wp-dummy-content-generator
Generate realistic dummy content for WordPress quickly. Ideal for developers and designers to populate sites for testing and development.
Video Slider – Slider Carousel
slider-video
SLIDER plugin was created and specially designed for YouTube, Vimeo, Vevo and MP4 video to show in slider.
Team Members Showcase
wps-team
WordPress Team Members Showcase plugin – display staff or team profiles in grids, sliders, tables, or lists with filters, popups, drawers & panels.
Slider Carousel – Image Slider
slider-images
Slider Image plugin is fully responsive. Your photos with our slider effects will be perfectly. Slider modes Slider Navigation, Content Slider, Fashio …
Content text slider on post Developer Profile
8 plugins · 1K total installs
How We Detect Content text slider on post
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/content-text-slider-on-post/content-text-slider-on-post.js/wp-content/plugins/content-text-slider-on-post/content-text-slider-on-post.jsHTML / DOM Fingerprints
data-settingdata-groupdata-scrollheightdata-sametimedisplaydata-textlengthdata-speed+1 morecontent_text_slider_on_post[content-text-slider