
Filmstrip Carousel Security & Risk Analysis
wordpress.org/plugins/filmstrip-carouselA responsive 3D filmstrip/coverflow carousel for images and video. Built with Three.js & WebGL. Lightweight, fast, and customizable.
Is Filmstrip Carousel Safe to Use in 2026?
Generally Safe
Score 100/100Filmstrip Carousel has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The filmstrip-carousel plugin v1.0 exhibits a generally good security posture with several key strengths. Notably, 100% of its SQL queries utilize prepared statements and all output is properly escaped, mitigating significant risks of SQL injection and cross-site scripting (XSS). The absence of file operations and external HTTP requests further reduces the attack surface. Furthermore, the plugin demonstrates good practice by incorporating nonce checks on four occasions and a capability check, indicating an awareness of WordPress security mechanisms.
However, a single "dangerous function" (preg_replace(/e)) identified in the static analysis warrants attention. While the taint analysis shows no actual flows with unsanitized paths, this specific function, when used with the /e modifier, can be a vector for remote code execution if not handled with extreme care and proper sanitization of its input. The absence of any recorded vulnerabilities in its history is a positive indicator, suggesting a mature development process or a low profile that hasn't attracted malicious attention. Despite the absence of critical findings in the taint analysis, the presence of a potentially dangerous function, even if currently unexploited, represents a theoretical weakness that could be leveraged under specific circumstances.
In conclusion, filmstrip-carousel v1.0 is built on a foundation of solid security practices regarding data handling and output. The lack of known vulnerabilities is a strong positive. The primary area for improvement lies in a thorough review and potential refactoring of the `preg_replace(/e)` usage to ensure absolute safety against potential code injection, even if no current exploit is evident. The overall risk is assessed as low, but this specific code signal suggests a need for continued vigilance.
Key Concerns
- Presence of dangerous function (preg_replace(/e))
Filmstrip Carousel Security Vulnerabilities
Filmstrip Carousel Code Analysis
Dangerous Functions Found
Output Escaping
Filmstrip Carousel Attack Surface
AJAX Handlers 8
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
Filmstrip Carousel Maintenance & Trust
Maintenance Signals
Community Trust
Filmstrip Carousel Alternatives
Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider
ml-slider
Slider, gallery, carousel plugin for WordPress. Build your image slider, video slider, post slider, YouTube slider, or WooCommerce product slider.
Smart Slider 3
smart-slider-3
Responsive slider plugin to create sliders in visual editor easily. Build beautiful image slider, layer slider, video slider, post slider, and more.
Yoo Slider – Image Slider & Video Slider
yoo-slider
Craft a slider effortlessly with our WordPress plugin! Design image slider, video slider, carousel or even coverflow slider in seconds.
Gulri Slider
gulri-slider
An elegant slider with multiple transitions and effects.
Rainbow Slider
rainbow-slider
Turn any Elementor template into a fully responsive Swiper Slider. Supports Sections, Flexbox Containers, and CSS Grid.
Filmstrip Carousel Developer Profile
7 plugins · 80 total installs
How We Detect Filmstrip Carousel
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/filmstrip-carousel/css/fwdfsc-dialog.css/wp-content/plugins/filmstrip-carousel/css/fwdfsc_gallery.css/wp-content/plugins/filmstrip-carousel/css/fwdfsc_tooltip.css/wp-content/plugins/filmstrip-carousel/css/fwdfsc_header.css/wp-content/plugins/filmstrip-carousel/js/fwdfsc-dialog.js/wp-content/plugins/filmstrip-carousel/js/fwdfsc-gallery.js/wp-content/plugins/filmstrip-carousel/js/fwdfsc-tooltip.js/wp-content/plugins/filmstrip-carousel/js/fwdfsc-shortcode.js+4 more/wp-content/plugins/filmstrip-carousel/js/fwdfsc-dialog.js/wp-content/plugins/filmstrip-carousel/js/fwdfsc-gallery.js/wp-content/plugins/filmstrip-carousel/js/fwdfsc-tooltip.js/wp-content/plugins/filmstrip-carousel/js/fwdfsc-shortcode.js/wp-content/plugins/filmstrip-carousel/js/fwdfsc-util.js/wp-content/plugins/filmstrip-carousel/js/fwdfsc-gallery-manager.js+2 morefwdfsc-dialog.css?ver=fwdfsc_gallery.css?ver=fwdfsc_tooltip.css?ver=fwdfsc_header.css?ver=fwdfsc-dialog.js?ver=fwdfsc-gallery.js?ver=fwdfsc-tooltip.js?ver=fwdfsc-shortcode.js?ver=fwdfsc-util.js?ver=fwdfsc-gallery-manager.js?ver=fwdfsc-presets-manager.js?ver=fwdfsc-colorpicker.js?ver=HTML / DOM Fingerprints
fwdfsc-gallery-itemfwdfsc-gallery-item-wrapperfwdfsc-dialog-formfwdfsc-dialog-titlefwdfsc-button-action<!-- Plugin Name: Filmstrip Carousel --><!-- Plugin URI: https://fwdapps.net/p/fsc/ --><!-- Description: This is the WordPress plugin with a CMS menu for the installation and configuration of the Filmstrip Carousel. --><!-- Author: FWD -->+77 moredata-namedata-iddata-presetsdata-galleriesdata-gallery-iddata-gallery-namefwdfscPresetsArfwdfscGalleriesNamesArfwdfscGalleries_arfwdfsc_admin_initfwdfsc_init_pluginFWDFSC+29 more/wp-json/fwdfsc/v1/get_css/wp-json/fwdfsc/v1/set_css/wp-json/fwdfsc/v1/update_presets/wp-json/fwdfsc/v1/update_galleries[fwdfsc preset_name="gallery_name="