
Gallery Stacked Slideshow Security & Risk Analysis
wordpress.org/plugins/gallery-stacked-slideshowAbsolutely NO javascript.stacked styleshow For Post and pages
Is Gallery Stacked Slideshow Safe to Use in 2026?
Generally Safe
Score 85/100Gallery Stacked Slideshow has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The gallery-stacked-slideshow plugin v2.0 exhibits a mixed security posture. On the positive side, it has a small attack surface with no known CVEs in its history and no direct file operations or external HTTP requests. The use of capability checks (4 instances) is also a good practice. However, significant concerns arise from the static code analysis. A notable weakness is the lack of nonce checks, which is a critical security mechanism for AJAX handlers. Furthermore, the output escaping is poor, with only 29% of outputs being properly escaped, leaving the plugin vulnerable to cross-site scripting (XSS) attacks. The taint analysis reveals a high number of flows with unsanitized paths, with 3 classified as high severity, indicating potential for sensitive data exposure or manipulation.
The absence of any recorded vulnerabilities in the plugin's history might suggest a lack of diligent auditing or that previous versions were not widely used or targeted. Nevertheless, the current analysis points to potential security weaknesses that could be exploited. The combination of unescaped outputs and high-severity taint flows represents the most immediate risks. While the attack surface is small and largely protected by capability checks, the lack of nonces on AJAX handlers and the identified unsanitized paths are significant oversights that require attention to improve the plugin's overall security.
Key Concerns
- High severity taint flows with unsanitized paths
- Low percentage of properly escaped outputs
- 0 Nonce checks for AJAX handlers
- SQL queries not fully using prepared statements
Gallery Stacked Slideshow Security Vulnerabilities
Gallery Stacked Slideshow Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Gallery Stacked Slideshow Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
Gallery Stacked Slideshow Maintenance & Trust
Maintenance Signals
Community Trust
Gallery Stacked Slideshow Alternatives
Recent Posts Widget With Thumbnails
recent-posts-widget-with-thumbnails
List the most recent posts with post titles, thumbnails, excerpts, authors, categories, dates and more!
Newpost Catch
newpost-catch
Thumbnails in new articles setting widget.
Superb Recent Posts With Thumbnail Images
superb-recent-posts-with-thumbnail-images
Responsive Recent Posts Widget With Images for WordPress. Lightweight & SEO Optimized Code. Free.
Redirect
simple-redirect
Easily redirect any post or page to another page with a dropdown menu or by manually typing in a URL. Check out the screenshots.
WP Image Borders
wp-image-borders
WP Image Borders makes it easy to add decorative image borders to pictures in your blog posts.
Gallery Stacked Slideshow Developer Profile
2 plugins · 60 total installs
How We Detect Gallery Stacked Slideshow
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gallery-stacked-slideshow/css/gss-style.css/wp-content/plugins/gallery-stacked-slideshow/js/gss-media-script.jsgallery-stacked-slideshow/css/gss-style.css?ver=HTML / DOM Fingerprints
gallery_stacked_slideshow<!-- Gallery Stacked Slideshow-->[gss-gallery]