
JJ NextGen JQuery Slider Security & Risk Analysis
wordpress.org/plugins/jj-nextgen-jquery-sliderAllows you to pick a gallery from the 'NextGen Gallery' plugin to use as a 'JQuery Nivo slider'.
Is JJ NextGen JQuery Slider Safe to Use in 2026?
Generally Safe
Score 85/100JJ NextGen JQuery Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "jj-nextgen-jquery-slider" v1.3.9 plugin exhibits a mixed security posture. While it presents a small attack surface with only one shortcode and no AJAX or REST API endpoints, and has no recorded vulnerability history, several concerning code signals indicate potential weaknesses. The presence of the `create_function` is a significant red flag, as it can be a source of remote code execution vulnerabilities if used with user-supplied input. Furthermore, all SQL queries are executed without prepared statements, making the plugin susceptible to SQL injection attacks. The very low percentage of properly escaped output (1%) suggests a high risk of cross-site scripting (XSS) vulnerabilities, as user-controlled data is likely being rendered directly without sanitization. The absence of any nonce or capability checks further exacerbates these risks, meaning that any authenticated user could potentially trigger vulnerable code paths.
Key Concerns
- Use of create_function
- Raw SQL queries without prepared statements
- Extremely low output escaping percentage
- No nonce checks
- No capability checks
JJ NextGen JQuery Slider Security Vulnerabilities
JJ NextGen JQuery Slider Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
JJ NextGen JQuery Slider Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
JJ NextGen JQuery Slider Maintenance & Trust
Maintenance Signals
Community Trust
JJ NextGen JQuery Slider Alternatives
NextGEN Gallery Sidebar Widget
nextgen-gallery-sidebar-widget
A widget to show NextGEN galleries in your sidebar.
JJ NextGen JQuery Carousel
jj-nextgen-jquery-carousel
Allows you to pick a gallery from the 'NextGen Gallery' plugin to use as a 'JQuery JCarousel'.
NextGen NivoSlider
nextgen-nivoslider
The NextGen Nivoslider plugin allows you to create a NivoSlider, using images from your NextGen gallery, with a simple shortcode or widget.
JJ NextGen JQuery Cycle
jj-nextgen-jquery-cycle
Allows you to pick a gallery from the 'NextGen Gallery' plugin to use with 'JQuery Cycle Lite'.
JJ NextGen Image List
jj-nextgen-image-list
Allows you to pick a gallery from the 'NextGen Gallery' plugin to list images from. You can list images vertically or horizontally.
JJ NextGen JQuery Slider Developer Profile
5 plugins · 2K total installs
How We Detect JJ NextGen JQuery Slider
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/jj-nextgen-jquery-slider/script/jquery.nivo.slider.pack.js/wp-content/plugins/jj-nextgen-jquery-slider/script/jquery.jj_ngg_shuffle.js/wp-content/plugins/jj-nextgen-jquery-slider/script/jjnggutils.js/wp-content/plugins/jj-nextgen-jquery-slider/stylesheets/nivo-slider.cssscript/jquery.nivo.slider.pack.jsscript/jquery.jj_ngg_shuffle.jsscript/jjnggutils.jsjj-nextgen-jquery-slider/script/jquery.nivo.slider.pack.js?ver=jj-nextgen-jquery-slider/script/jquery.jj_ngg_shuffle.js?ver=jj-nextgen-jquery-slider/script/jjnggutils.js?ver=jj-nextgen-jquery-slider/stylesheets/nivo-slider.css?ver=HTML / DOM Fingerprints
nivoSliderdata-orderdata-centerdata-shortcodejQuery.jj_ngg_utilsJJ_NGG_JQuery_Slider