iSlidex Security & Risk Analysis

wordpress.org/plugins/islidex

iSlidex is a Wordpress slideshow plugin that will display images taken from posts in a specific category.

100 active installs v2.7.1 PHP + WP 2.9+ Updated Apr 16, 2012
featuredsliderslideshow
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is iSlidex Safe to Use in 2026?

Generally Safe

Score 85/100

iSlidex has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 14yr ago
Risk Assessment

The "islidex" plugin v2.7.1 exhibits a mixed security posture. While the plugin has no known historical vulnerabilities and all SQL queries are prepared, significant concerns arise from the static analysis. A critical finding is that 0% of its 202 output operations are properly escaped, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, all 3 analyzed taint flows have unsanitized paths, suggesting potential for data manipulation or unauthorized access, though no critical or high severity issues were flagged in the taint analysis itself. The absence of any nonce checks or capability checks across its entry points (2 shortcodes) is also a notable weakness, potentially allowing unauthorized actions within the context of logged-in users.

Key Concerns

  • No output escaping detected
  • All taint flows have unsanitized paths
  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

iSlidex Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

iSlidex Release Timeline

v2.7.2
v2.7.1Current
v2.7
v2.6
v2.5
v2.3
v2.2
v2.0
v1.9.5
v1.9
v1.8.1
v1.8
v1.7
v1.6
v1.5
v1.4
v1.3
v1.2
v1.1
v1.0
Code Analysis
Analyzed Mar 16, 2026

iSlidex Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
202
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
28
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

0% escaped202 total outputs
Data Flows · Security
3 unsanitized

Data Flow Analysis

3 flows3 with unsanitized paths
tryBrowserCache (js\timthumb.php:334)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

iSlidex Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[islidex] islidex.php:595
[islidex_custom] islidex.php:985
WordPress Hooks 14
actionadmin_menuislidex.php:20
actionadmin_initislidex.php:28
actionwp_headislidex.php:241
actioninitislidex.php:243
actionwp_footerislidex.php:314
actionwp_footerislidex.php:695
actionwp_footerislidex.php:699
actionwp_footerislidex.php:784
actionwp_footerislidex.php:788
actionwp_footerislidex.php:865
actionwp_footerislidex.php:867
actionwp_footerislidex.php:1039
actionwp_footerislidex.php:1048
actionwidgets_initislidex.php:1190
Maintenance & Trust

iSlidex Maintenance & Trust

Maintenance Signals

WordPress version tested3.2.1
Last updatedApr 16, 2012
PHP min version
Downloads50K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

iSlidex Developer Profile

Duke

2 plugins · 500 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect iSlidex

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/islidex/themes/apple/islidex_apple.css/wp-content/plugins/islidex/themes/nivo/islidex_nivo.css/wp-content/plugins/islidex/themes/timeline/islidex_timeline.css/wp-content/plugins/islidex/themes/timeline/islidex_timeline_ie6.css/wp-content/plugins/islidex/themes/greek/islidex_greek.css/wp-content/plugins/islidex/themes/apple/apple.js/wp-content/plugins/islidex/themes/nivo/nivo.js/wp-content/plugins/islidex/themes/timeline/timeline.js+7 more

HTML / DOM Fingerprints

CSS Classes
jcarousel-prev-horizontaljcarousel-next-horizontaljcarousel-container-horizontalpostImgWrapgreek_themefbarslides_menucslidesw_menu
HTML Comments
<!-- iSlidex CSS Dependencies --><!--[if lte IE 7]><style type="text/css" media="screen"> #slides_menuc li, #slidesw_menu li, #slides_menuc li, .fbar {float:left;} </style><![endif]--><!--[if lte IE 6]> <link rel="stylesheet" type="text/css" href="" /> <![endif]-->+1 more
Data Attributes
data-themedata-effectdata-slicesdata-animspeeddata-pausetimedata-caption+8 more
JS Globals
window.jQuerywindow.$
Shortcode Output
[islidex[islidex_widget
FAQ

Frequently Asked Questions about iSlidex