
GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more Security & Risk Analysis
wordpress.org/plugins/gs-portfolioShowcase your work with GS Portfolio – create filterable grids, sliders & stylish layouts anywhere on your site using simple shortcodes.
Is GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more Safe to Use in 2026?
Generally Safe
Score 99/100GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more has a strong security track record. Known vulnerabilities have been patched promptly.
The "gs-portfolio" plugin v3.0.3 exhibits a mixed security posture. While it demonstrates good practices with a high percentage of prepared SQL statements and properly escaped output, there are significant concerns. The plugin exposes 5 AJAX handlers without authentication checks, creating a substantial attack surface for unauthorized actions. Taint analysis reveals 4 flows with unsanitized paths, including 3 of high severity, indicating potential vulnerabilities where user-supplied data could be improperly processed, leading to security risks like cross-site scripting or unintended code execution. The plugin's history of 2 medium-severity CVEs, both related to Cross-site Scripting, coupled with the taint analysis findings, suggests a recurring pattern of input sanitization weaknesses. Although there are no currently unpatched CVEs, the presence of high-severity taint flows and unprotected AJAX handlers necessitates careful attention.
Key Concerns
- Unprotected AJAX handlers
- High severity taint flows
- Medium severity CVE history
GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
WordPress Portfolio Plugin – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more <= 1.6.3 - Authenticated (Contributor+) Stored Cross-Site Scripting
GS Filterable Portfolio <= 1.6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more Attack Surface
AJAX Handlers 20
Shortcodes 1
WordPress Hooks 93
Maintenance & Trust
GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more Maintenance & Trust
Maintenance Signals
Community Trust
GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more Alternatives
Advance Portfolio Grid, Slider and Gallery – Showcase Projects, Images and Videos
advance-portfolio-grid
Create responsive and customizable portfolio grids to showcase projects, case studies, and creative work on your WordPress site.
Radius Portfolio – Filterable Grid, Gallery & Slider Portfolio
tlp-portfolio
A simple and powerful WordPress portfolio plugin to showcase your creative work beautifully with different ways.
Codeincept Portfolio
codeincept-portfolio
Codeincept portfolio plugin helps you design awesome portfolio showcase
GBS Portfolio
gbs-portfolio
GBS Portfolio plugin allows you to display portfolio in filterable format.
Zozo Portfolio for Elementor
zozo-portfolio
A modern Elementor portfolio plugin for WordPress that lets you create filterable, responsive, and dynamic portfolio layouts.
GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more Developer Profile
19 plugins · 41K total installs
How We Detect GS Portfolio – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gs-portfolio/assets/css/frontend.css/wp-content/plugins/gs-portfolio/assets/js/frontend.js/wp-content/plugins/gs-portfolio/assets/js/frontend.jsgs-portfolio/assets/css/frontend.css?ver=gs-portfolio/assets/js/frontend.js?ver=HTML / DOM Fingerprints
gs_portfolio_areags-portfolio-singledata-gs-portfolio-idgs_portfolio_options/wp-json/gs-portfolio/v1[gsportfolio