Getty ‘Ghetto’ Slider Security & Risk Analysis

wordpress.org/plugins/getty-ghetto-slider

Getty 'Ghetto' Slider is a jQuery slider that allows you to use clickable html content as a slide

10 active installs v1 PHP + WP 3.8.1+ Updated Unknown
getty-embedgetty-imageshtml-sliderjquery-sliderslider
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Getty ‘Ghetto’ Slider Safe to Use in 2026?

Generally Safe

Score 100/100

Getty ‘Ghetto’ Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "getty-ghetto-slider" v1 plugin presents a mixed security posture. On the positive side, there are no known vulnerabilities in its history and the static analysis shows no dangerous functions, file operations, external HTTP requests, or SQL queries that do not use prepared statements. Furthermore, the attack surface, while containing one shortcode, has no identified unprotected entry points.

However, significant concerns arise from the complete lack of output escaping. With 15 total outputs and 0% properly escaped, this plugin is highly vulnerable to Cross-Site Scripting (XSS) attacks. Any data rendered by the slider, especially if it originates from user input or external sources, could be manipulated to inject malicious scripts. Additionally, the absence of nonce checks and capability checks for its entry points, while currently not exploitable due to no unprotected entry points, indicates a potential weakness if the attack surface were to expand or change in future versions without proper security controls being implemented.

In conclusion, while the plugin has a clean vulnerability history and avoids some common pitfalls like raw SQL and dangerous functions, the critical oversight in output escaping creates a substantial XSS risk. The lack of nonce and capability checks is a missed opportunity for robust security, though it doesn't translate to immediate risk given the current attack surface analysis. Future development should prioritize proper output sanitization and consider implementing authorization checks for its shortcode.

Key Concerns

  • 0% output escaping
  • 0 nonce checks
  • 0 capability checks
Vulnerabilities
None known

Getty ‘Ghetto’ Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Getty ‘Ghetto’ Slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
15
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped15 total outputs
Attack Surface

Getty ‘Ghetto’ Slider Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[ghetto_slider] getty-slider.php:81
WordPress Hooks 6
actionadmin_initgetty-slider.php:19
actionadmin_menugetty-slider.php:22
actionwp_enqueue_scriptsgetty-slider.php:73
actioninitgetty-slider.php:77
actionwp_footergetty-slider.php:102
actionwp_headgetty-slider.php:126
Maintenance & Trust

Getty ‘Ghetto’ Slider Maintenance & Trust

Maintenance Signals

WordPress version tested3.7.41
Last updatedUnknown
PHP min version
Downloads2K

Community Trust

Rating20/100
Number of ratings1
Active installs10
Developer Profile

Getty ‘Ghetto’ Slider Developer Profile

UIUX Lab

14 plugins · 740 total installs

82
trust score
Avg Security Score
92/100
Avg Patch Time
32 days
View full developer profile
Detection Fingerprints

How We Detect Getty ‘Ghetto’ Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/getty-ghetto-slider/css/swiper.css/wp-content/plugins/getty-ghetto-slider/js/swiper.js
Script Paths
/wp-content/plugins/getty-ghetto-slider/js/swiper.js
Version Parameters
getty-ghetto-slider/css/swiper.css?ver=getty-ghetto-slider/js/swiper.js?ver=

HTML / DOM Fingerprints

CSS Classes
ghetto-slide-containerghetto-clickghetto-caption
Data Attributes
id="ghetto-slide-class="ghetto-slide-container"class="ghetto-click"class="ghetto-caption"class="ghetto-slide-iframe"
JS Globals
ghettoSwiper
Shortcode Output
<div class="swiper-container"><div class="swiper-wrapper"><div class="swiper-slide"><div class="ghetto-slide-container">
FAQ

Frequently Asked Questions about Getty ‘Ghetto’ Slider