
Custom Post Slider Security & Risk Analysis
wordpress.org/plugins/custom-post-sliderCustom Post Slider Plugin Display Post with Owl Slider order by date, title, random... Developer can override HTML or create new layout in their theme …
Is Custom Post Slider Safe to Use in 2026?
Generally Safe
Score 85/100Custom Post Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "custom-post-slider" v1.0.0 plugin presents a generally good security posture with no known vulnerabilities or critical taint flows. The static analysis reveals strong practices in areas like SQL query sanitization, with 75% using prepared statements. The presence of nonce and capability checks, along with the absence of external HTTP requests or file operations, further contributes to its security. However, there are notable areas of concern. The high number of total outputs (110) with a low percentage (35%) of proper escaping indicates a significant risk of Cross-Site Scripting (XSS) vulnerabilities, especially as the attack surface is relatively small and all entry points are protected. Additionally, the use of the `unserialize` function, while not flagged as a critical issue in the taint analysis, is inherently risky and could lead to deserialization vulnerabilities if not handled with extreme care and input validation. The plugin's history of zero vulnerabilities is positive but doesn't entirely negate the risks identified in the static analysis, particularly the output escaping issues and the use of `unserialize`.
Key Concerns
- Low percentage of properly escaped output
- Use of dangerous function (unserialize)
Custom Post Slider Security Vulnerabilities
Custom Post Slider Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Custom Post Slider Attack Surface
AJAX Handlers 5
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
Custom Post Slider Maintenance & Trust
Maintenance Signals
Community Trust
Custom Post Slider Alternatives
Depicter — Popup & Slider Builder
depicter
Build Stunning Slider and Popup. Exit intent Popup, Image slider carousel, video slider carousel, post slider carousel, product slider, promote popup
Ditty – Responsive News Tickers, Sliders, and Lists
ditty-news-ticker
Ditty offers a range of content display options, including its signature news ticker and customizable layouts.
Slider Pro
sliderpro
Slider Pro is a responsive slider plugin that offers Premium features for FREE, including animated layers, post content, full width layout and more.
Testimonial Slider
testimonial-slider
Display your happy customers' Testimonials in a neat Responsive Slider
Slider Pro
slider-pro-wp
A modular, responsive and touch-enabled jQuery slider plugin that enables you to create elegant and professionally looking sliders
Custom Post Slider Developer Profile
7 plugins · 1K total installs
How We Detect Custom Post Slider
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/custom-post-slider/tzcustom-style.css/wp-content/plugins/custom-post-slider/css/owl.carousel.css/wp-content/plugins/custom-post-slider/css/owl.theme.css/wp-content/plugins/custom-post-slider/css/owl.transitions.css/wp-content/plugins/custom-post-slider/js/tzcustom.frnt.script.js/wp-content/plugins/custom-post-slider/js/tzcustom.script.js/wp-content/plugins/custom-post-slider/css/tzcustom_slider_admin.csswp-content/plugins/custom-post-slider/js/tzcustom.frnt.script.jswp-content/plugins/custom-post-slider/js/tzcustom.script.jscustom-post-slider/tzcustom-style.css?ver=custom-post-slider/css/owl.carousel.css?ver=custom-post-slider/css/owl.theme.css?ver=custom-post-slider/css/owl.transitions.css?ver=custom-post-slider/js/tzcustom.frnt.script.js?ver=custom-post-slider/js/tzcustom.script.js?ver=custom-post-slider/css/tzcustom_slider_admin.css?ver=HTML / DOM Fingerprints
tzcustom-slideshowdata-tzcustom-optionstzcustomajxtzcustom_url