
Social Slider Feed Security & Risk Analysis
wordpress.org/plugins/instagram-slider-widgetDisplay Instagram, Facebook and YouTube feeds in widgets, posts, pages, or anywhere else on your website.
Is Social Slider Feed Safe to Use in 2026?
Generally Safe
Score 94/100Social Slider Feed has a strong security track record. Known vulnerabilities have been patched promptly.
The "instagram-slider-widget" plugin v2.3.3 presents a mixed security posture. While it exhibits some good practices like a high percentage of properly escaped outputs and the use of prepared statements for most SQL queries, several significant concerns exist. The presence of one unprotected AJAX handler is a critical vulnerability, allowing unauthorized execution of plugin functionality. Furthermore, the analysis of taint flows reveals three instances of unsanitized paths, which, although not classified as critical or high severity in this specific run, indicate a potential for privilege escalation or data compromise if user input is not handled carefully. The plugin's history of 10 known CVEs, with a majority being medium severity and two high, suggests a recurring pattern of security weaknesses. While currently no unpatched vulnerabilities are listed, this history necessitates vigilant updates and a cautious approach to deployment. The plugin's strengths lie in its generally good output escaping and SQL practices, but the identified unprotected entry point and historical vulnerability trends are significant drawbacks.
Key Concerns
- Unprotected AJAX handler
- Flows with unsanitized paths
- History of 2 high severity CVEs
- History of 8 medium severity CVEs
- Dangerous function 'unserialize' found
Social Slider Feed Security Vulnerabilities
CVEs by Year
Severity Breakdown
10 total CVEs
Social Slider Feed <= 2.2.8 - Authenticated (Administrator+) Stored Cross-Site Scripting
Social Slider Feed <= 2.2.8 - Authenticated (Administrator+) Stored Cross-Site Scripting
Social Slider Feed <= 2.2.2 - Missing Authorization
Social Slider Feed <= 2.0.6 - Authenticated (Admin+) Stored Cross-Site Scripting
Social Slider Feed <= 2.0.5 - Authenticated (Administrator+) Stored Cross-Site Scripting
Social Slider Feed <= 2.0.4 - Reflected Cross-Site Scripting
Social Slider Feed <= 2.0.4 - Missing Authorization to Cross-Site Scripting
Social Slider Feed <= 2.0.4 - Authenticated (Scubscriber+) Stored Cross-Site Scripting
Social Slider Feed <= 2.0.4 - Missing Authorization
Social Slider Widget <= 1.8.4 - Reflected Cross-Site Scripting
Social Slider Feed Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Social Slider Feed Attack Surface
AJAX Handlers 5
Shortcodes 3
WordPress Hooks 31
Scheduled Events 1
Maintenance & Trust
Social Slider Feed Maintenance & Trust
Maintenance Signals
Community Trust
Social Slider Feed Alternatives
Easy Social Feed – Social Photos Gallery and Post Feed for WordPress
easy-facebook-likebox
Display Instagram, Facebook & YouTube feeds with photos, videos, reels, events & galleries. Fast, responsive & easy to set up.
SocialFeeds
socialfeeds
YouTube feeds for WordPress with simple Setup and Settings options.
Social Media Feed for WordPress
powr-social-feed
Keep your website content up to date and increase SEO by displaying all of your social media accounts, #hashtags in one place with customized design.
All in one Social Feeds
all-in-one-social-feeds
This plugin helps to display latest feeds from facebook, twitter,instagram, pinterest and youtube with tabs using a widget.
Smash Balloon Social Photo Feed – Easy Social Feeds Plugin
instagram-feed
Formerly "Instagram Feed". Display clean, customizable, and responsive Instagram feeds from multiple accounts. Supports Instagram oEmbeds.
Social Slider Feed Developer Profile
37 plugins · 2.2M total installs
How We Detect Social Slider Feed
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/instagram-slider-widget/css/style.css/wp-content/plugins/instagram-slider-widget/js/widget.js/wp-content/plugins/instagram-slider-widget/js/script.js/wp-content/plugins/instagram-slider-widget/components/youtube/admin/assets/css/wyoutube-admin.cssinstagram-slider-widget/css/style.css?ver=instagram-slider-widget/js/widget.js?ver=instagram-slider-widget/js/script.js?ver=instagram-slider-widget/components/youtube/admin/assets/css/wyoutube-admin.css?ver=HTML / DOM Fingerprints
wis-widget-social-feed<!-- Widget Social Feed -->data-feed-typedata-social-typewis_vars[instagram-slider-widget[social-slider-feed