
Great Caroussel Security & Risk Analysis
wordpress.org/plugins/great-carousselCreate beautiful carrousel, with any contents (image, text, video...)
Is Great Caroussel Safe to Use in 2026?
Generally Safe
Score 100/100Great Caroussel has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "great-caroussel" plugin v1.08 demonstrates a generally strong security posture based on the provided static analysis. The absence of critical or high-severity issues in taint analysis, coupled with a high percentage of prepared statements for SQL queries and properly escaped output, indicates good development practices. Furthermore, the plugin's vulnerability history is clean, with no recorded CVEs, suggesting a track record of security consciousness.
However, there are areas that warrant attention. The static analysis reveals a total of 6 entry points, none of which are unprotected. While this is positive, the absence of capability checks on all entry points is a concern. This means that while nonces might be present on AJAX handlers, the underlying user permissions to execute these actions are not explicitly verified, potentially allowing privileged actions by unauthorized users if other security layers are bypassed or misconfigured. The presence of 7 nonce checks is positive, but their universal application across all AJAX handlers is not explicitly stated and the lack of capability checks is a more significant oversight.
In conclusion, the plugin is well-developed with good core security practices in place. The main weakness lies in the apparent lack of explicit capability checks on its AJAX handlers, which could present a security risk if not handled by other plugin or WordPress-level security measures. The clean vulnerability history is a significant strength, but this single deduction regarding capability checks should be addressed to further harden the plugin.
Key Concerns
- Missing capability checks on entry points
Great Caroussel Security Vulnerabilities
Great Caroussel Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Great Caroussel Attack Surface
AJAX Handlers 5
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Great Caroussel Maintenance & Trust
Maintenance Signals
Community Trust
Great Caroussel Alternatives
mPress Banners
mpress-banners
Easily create slide-up or slide-down banners on your site with a simple shortcode.
Smart Slider 3
smart-slider-3
Responsive slider plugin to create sliders in visual editor easily. Build beautiful image slider, layer slider, video slider, post slider, and more.
Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider
ml-slider
Slider, gallery, carousel plugin for WordPress. Build your image slider, video slider, post slider, YouTube slider, or WooCommerce product slider.
WP Shortcodes Plugin — Shortcodes Ultimate
shortcodes-ultimate
A comprehensive collection of visual components for your site
Depicter — Popup & Slider Builder
depicter
Build Stunning Slider and Popup. Exit intent Popup, Image slider carousel, video slider carousel, post slider carousel, product slider, promote popup
Great Caroussel Developer Profile
17 plugins · 27K total installs
How We Detect Great Caroussel
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/great-caroussel/css/admin.cssHTML / DOM Fingerprints
great_carousselgc_add_contentgc_remove_contentgc_save_contentgc_remove_gcdata-iddata-caroussel-iddata-content-idgreat_caroussel_tablegreat_caroussel_contents_table