Simple Image Slider Security & Risk Analysis

wordpress.org/plugins/easy-javascript-post-slider

Simple Image Slide permits users to create Image Slide Show.

60 active installs v2.1 PHP + WP 3.6+ Updated Feb 8, 2023
image-rotatorimage-sliderphoto-slidersimple-slider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Image Slider Safe to Use in 2026?

Generally Safe

Score 85/100

Simple Image Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The 'easy-javascript-post-slider' v2.1 plugin exhibits a generally positive security posture based on the provided static analysis. The absence of dangerous functions, a complete reliance on prepared statements for SQL queries, and the presence of nonce and capability checks are all strong indicators of secure coding practices. Furthermore, the lack of any historical vulnerabilities or CVEs suggests a history of security awareness and effective patching. The minimal attack surface, consisting solely of one shortcode with presumed proper authorization checks (as it's not listed as unprotected), further contributes to its secure profile.

However, a significant concern arises from the output escaping analysis. With 100% of observed outputs not being properly escaped, this plugin presents a considerable risk of Cross-Site Scripting (XSS) vulnerabilities. If user-supplied data or dynamic content is directly rendered without proper sanitization, an attacker could inject malicious scripts, leading to session hijacking, defacement, or other harmful actions. While the overall code structure and vulnerability history are encouraging, this single oversight in output escaping is a critical weakness that requires immediate attention.

Key Concerns

  • All outputs are unescaped
Vulnerabilities
None known

Simple Image Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Simple Image Slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped1 total outputs
Attack Surface

Simple Image Slider Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[simple_image_slider] simple_slider.php:40
WordPress Hooks 6
actionwp_enqueue_scriptssimple_slider.php:22
actionwp_enqueue_scriptssimple_slider.php:33
actioninitsimple_slider.php:64
filtermanage_edit-slider_columnssimple_slider.php:95
actionmanage_slider_posts_custom_columnsimple_slider.php:96
actionsave_postsimple_slider.php:114
Maintenance & Trust

Simple Image Slider Maintenance & Trust

Maintenance Signals

WordPress version tested6.1.10
Last updatedFeb 8, 2023
PHP min version
Downloads20K

Community Trust

Rating100/100
Number of ratings3
Active installs60
Developer Profile

Simple Image Slider Developer Profile

Perception System System Pvt. Ltd.

3 plugins · 8K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple Image Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-javascript-post-slider/css/easy-slider.css/wp-content/plugins/easy-javascript-post-slider/js/jquery.slides.min.js/wp-content/plugins/easy-javascript-post-slider/js/slidesjs.initialize.js
Script Paths
/wp-content/plugins/easy-javascript-post-slider/js/jquery.slides.min.js/wp-content/plugins/easy-javascript-post-slider/js/slidesjs.initialize.js
Version Parameters
easy-javascript-post-slider/css/easy-slider.css?ver=easy-javascript-post-slider/js/jquery.slides.min.js?ver=easy-javascript-post-slider/js/slidesjs.initialize.js?ver=

HTML / DOM Fingerprints

CSS Classes
easy-slides
Shortcode Output
[simple_image_slider id=
FAQ

Frequently Asked Questions about Simple Image Slider