
Feslider – Featured Slider Security & Risk Analysis
wordpress.org/plugins/fesliderImage slider that act like featured image, its featured slider!
Is Feslider – Featured Slider Safe to Use in 2026?
Generally Safe
Score 85/100Feslider – Featured Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The feslider plugin v1.3 exhibits a generally good security posture based on the static analysis. The absence of known CVEs and the presence of nonce and capability checks are positive indicators. The plugin also demonstrates good practice by exclusively using prepared statements for SQL queries and not performing file operations or external HTTP requests, further limiting potential attack vectors.
However, a significant concern arises from the output escaping. With 40 total outputs and only 5% properly escaped, there is a high likelihood of Cross-Site Scripting (XSS) vulnerabilities. This means that user-supplied data or dynamically generated content, if not handled carefully, could be injected and executed in the browser of other users. The lack of any taint analysis flows being reported might be due to the nature of the static analysis tool used or the specific code structure, but it doesn't negate the observed output escaping deficiency.
Despite the limited entry points and absence of critical security signals like dangerous functions or unsanitized taint flows, the poor output escaping represents a tangible and common security risk. The plugin's history of zero vulnerabilities might suggest diligent development or a lack of prior scrutiny, but the current code analysis reveals a weakness that needs immediate attention. A balanced conclusion is that while the plugin avoids many common pitfalls, the prevalent lack of output escaping creates a significant security concern that could be exploited.
Key Concerns
- Low percentage of properly escaped output
Feslider – Featured Slider Security Vulnerabilities
Feslider – Featured Slider Code Analysis
Bundled Libraries
Output Escaping
Feslider – Featured Slider Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
Feslider – Featured Slider Maintenance & Trust
Maintenance Signals
Community Trust
Feslider – Featured Slider Alternatives
Auto Featured Image (Auto Post Thumbnail)
auto-post-thumbnail
Automatically generate, assign, and manage featured images in bulk so every post on your site has a featured image.
Quick Featured Images
quick-featured-images
The time-saving solution for managing tons of featured images within minutes: Set, replace and delete in bulk and set default images for future posts.
Conditionally display featured image on singular posts and pages
conditionally-display-featured-image-on-singular-pages
Easily control whether the featured image appears in the single post or page view (doesn't hide it in archive/list view).
Ditty – Responsive News Tickers, Sliders, and Lists
ditty-news-ticker
Ditty offers a range of content display options, including its signature news ticker and customizable layouts.
Ultimate Responsive Image Slider
ultimate-responsive-image-slider
Create stunning responsive sliders in minutes. Drag-and-drop builder, unlimited sliders, mobile-friendly & SEO optimized!
Feslider – Featured Slider Developer Profile
4 plugins · 130 total installs
How We Detect Feslider – Featured Slider
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/feslider/lib/style-admin.css/wp-content/plugins/feslider/lib/slider-pro/css/slider-pro.min.css/wp-content/plugins/feslider/lib/style-frontend.css/wp-content/plugins/feslider/lib/slider-pro/js/jquery.sliderPro.min.js/wp-content/plugins/feslider/lib/select2/select2.min.css/wp-content/plugins/feslider/lib/select2/select2.min.js/wp-content/plugins/feslider/lib/slider-pro/js/jquery.sliderPro.min.jsfeslider/lib/slider-pro/js/jquery.sliderPro.min.js?ver=1.6.0HTML / DOM Fingerprints
feslider-sliderfeslider-image-wrap<!-- Feslider - Featured Slider --><!-- Use nonce for verification -->data-id="feslider_image_id"data-url="feslider_image_url"data-thumb="feslider_image_thumb"feslider[feslider]