FA Lite – WP responsive slider plugin Security & Risk Analysis

wordpress.org/plugins/featured-articles-lite

WordPress slider plugin for Featured Content that can create responsive, video enabled sliders from your existing WordPress content.

600 active installs v3.1.10 PHP 7.4+ WP 5.5+ Updated Apr 2, 2024
custom-post-sliderresponsive-sliderwordpress-sliderwordpress-slider-plugin
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is FA Lite – WP responsive slider plugin Safe to Use in 2026?

Generally Safe

Score 85/100

FA Lite – WP responsive slider plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "featured-articles-lite" v3.1.10 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of known CVEs and a clean vulnerability history across all severity levels is a significant positive indicator, suggesting a well-maintained and secure codebase. The plugin also demonstrates good practices by utilizing prepared statements for all SQL queries, which effectively mitigates SQL injection risks. The presence of capability checks further enhances its security by ensuring that actions are performed by authorized users.

However, a notable concern arises from the output escaping analysis, where only 39% of outputs are properly escaped. This indicates a significant potential for cross-site scripting (XSS) vulnerabilities, as unsanitized output can be leveraged by attackers to inject malicious scripts into web pages. While the attack surface appears to be zero in terms of direct entry points like AJAX handlers, REST API routes, and shortcodes, the lack of comprehensive output escaping remains a critical weakness. The plugin's reliance on bundled libraries, specifically TinyMCE, while common, should also be monitored for potential vulnerabilities in the library itself, although no specific issues are indicated here.

In conclusion, the plugin's strength lies in its lack of known historical vulnerabilities and secure database interaction. Nevertheless, the low percentage of properly escaped output presents a significant and actionable risk that requires immediate attention. Addressing this output escaping issue should be the primary focus for improving the plugin's security.

Key Concerns

  • Low percentage of properly escaped output
Vulnerabilities
None known

FA Lite – WP responsive slider plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

FA Lite – WP responsive slider plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
3 prepared
Unescaped Output
138
87 escaped
Nonce Checks
0
Capability Checks
8
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

TinyMCE

SQL Query Safety

100% prepared3 total queries

Output Escaping

39% escaped225 total outputs
Attack Surface

FA Lite – WP responsive slider plugin Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 20
filter_fa_slider_posts_query_argsincludes\compatibility.php:55
filter_fa_slider_mixed_content_query_argsincludes\compatibility.php:56
action_fa_posts_table_viewsincludes\compatibility.php:72
action_fa_taxonomies_table_viewsincludes\compatibility.php:88
action_fa_slide_panelincludes\compatibility.php:111
filterthe_fa_contentincludes\functions.php:334
filterthe_fa_contentincludes\functions.php:335
filterthe_fa_contentincludes\functions.php:336
filterthe_fa_contentincludes\functions.php:337
filterthe_fa_contentincludes\functions.php:338
actionadmin_noticesindex.php:26
actioninitindex.php:57
actionrest_api_initindex.php:58
filterwp_get_attachment_urlindex.php:62
actionwp_enqueue_scriptsindex.php:64
filterloop_startindex.php:66
filterfa_display_sliderindex.php:68
actionwidgets_initindex.php:70
actionset_current_userindex.php:256
filterfa_extra_slider_optionsthemes\simple\functions.php:15
Maintenance & Trust

FA Lite – WP responsive slider plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedApr 2, 2024
PHP min version7.4
Downloads174K

Community Trust

Rating74/100
Number of ratings13
Active installs600
Developer Profile

FA Lite – WP responsive slider plugin Developer Profile

Constantin Boiangiu

3 plugins · 3K total installs

71
trust score
Avg Security Score
89/100
Avg Patch Time
102 days
View full developer profile
Detection Fingerprints

How We Detect FA Lite – WP responsive slider plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/featured-articles-lite/assets/admin/css/admin-custom-fields.css/wp-content/plugins/featured-articles-lite/assets/admin/css/admin-general-settings.css/wp-content/plugins/featured-articles-lite/assets/admin/css/admin-sliders.css/wp-content/plugins/featured-articles-lite/assets/admin/js/admin-custom-fields.js/wp-content/plugins/featured-articles-lite/assets/admin/js/admin-general-settings.js/wp-content/plugins/featured-articles-lite/assets/admin/js/admin-sliders.js/wp-content/plugins/featured-articles-lite/assets/front/css/default.css/wp-content/plugins/featured-articles-lite/assets/front/css/fa-slideshow.css+4 more
Script Paths
/wp-content/plugins/featured-articles-lite/assets/front/js/fa-slideshow.js
Version Parameters
featured-articles-lite/assets/admin/css/admin-custom-fields.css?ver=featured-articles-lite/assets/admin/css/admin-general-settings.css?ver=featured-articles-lite/assets/admin/css/admin-sliders.css?ver=featured-articles-lite/assets/admin/js/admin-custom-fields.js?ver=featured-articles-lite/assets/admin/js/admin-general-settings.js?ver=featured-articles-lite/assets/admin/js/admin-sliders.js?ver=featured-articles-lite/assets/front/css/default.css?ver=featured-articles-lite/assets/front/css/fa-slideshow.css?ver=featured-articles-lite/assets/front/js/fa-slideshow.js?ver=

HTML / DOM Fingerprints

CSS Classes
fa-slideshowslides-wrapperslides-wrapper-innerslide-itemslider-loading
HTML Comments
<!-- IMPORTANT: if you have both PRO and Lite installed, deactivate Lite -->
Data Attributes
data-slider-iddata-slideshow-typedata-slideshow-speeddata-slideshow-transitiondata-slideshow-transition-speeddata-slideshow-autoplay+8 more
JS Globals
FA_LITE_OPTIONSFA_SLIDESHOW_SETTINGS
REST Endpoints
/wp-json/featured-articles-lite/v1/sliders
Shortcode Output
[featured_articles_lite
FAQ

Frequently Asked Questions about FA Lite – WP responsive slider plugin