Minitek Slider Security & Risk Analysis

wordpress.org/plugins/minitek-slider

A powerful responsive slider for WordPress.

0 active installs v1.2.0 PHP + WP 5.0+ Updated Jul 11, 2022
carouselgalleryresponsivescrollerslider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Minitek Slider Safe to Use in 2026?

Generally Safe

Score 85/100

Minitek Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The minitek-slider plugin version 1.2.0 exhibits a mixed security posture. On the positive side, it avoids dangerous functions, performs all SQL queries using prepared statements, has no file operations, and makes no external HTTP requests. The absence of any recorded vulnerabilities in its history is also a good sign, suggesting a generally stable codebase. However, significant concerns arise from the static analysis. The plugin exposes two AJAX handlers without any authentication or capability checks, creating a direct attack vector. While the total output count is high, a concerningly low 22% of these outputs are properly escaped, leaving the door open for cross-site scripting (XSS) vulnerabilities. The taint analysis shows no flows, which is positive, but this could also be due to the limited analysis or absence of specific exploit chains being tested.

Key Concerns

  • Unprotected AJAX handlers
  • Low percentage of properly escaped output
Vulnerabilities
None known

Minitek Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Minitek Slider Release Timeline

v1.2.0Current
v1.1.0
v1.0.1
Code Analysis
Analyzed Mar 17, 2026

Minitek Slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
468
129 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

22% escaped597 total outputs
Attack Surface
2 unprotected

Minitek Slider Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 2

authwp_ajax_mslider_viewincludes\class-minitek-slider.php:201
noprivwp_ajax_mslider_viewincludes\class-minitek-slider.php:202

Shortcodes 1

[mslider] public\class-minitek-slider-public.php:43
WordPress Hooks 15
actionadmin_enqueue_scriptsadmin\class-minitek-slider-admin-metaboxes.php:42
actionadd_meta_boxesadmin\class-minitek-slider-admin-metaboxes.php:75
actionsave_postadmin\class-minitek-slider-admin-metaboxes.php:78
actionplugins_loadedincludes\class-minitek-slider.php:152
actionadmin_enqueue_scriptsincludes\class-minitek-slider.php:167
actionadmin_enqueue_scriptsincludes\class-minitek-slider.php:168
actioninitincludes\class-minitek-slider.php:171
actionadmin_menuincludes\class-minitek-slider.php:174
filtercustom_menu_orderincludes\class-minitek-slider.php:177
filtermanage_mslider_posts_columnsincludes\class-minitek-slider.php:180
actionmanage_mslider_posts_custom_columnincludes\class-minitek-slider.php:181
actionwp_enqueue_scriptsincludes\class-minitek-slider.php:196
actionwp_enqueue_scriptsincludes\class-minitek-slider.php:197
actionload-post.phpincludes\class-minitek-slider.php:218
actionload-post-new.phpincludes\class-minitek-slider.php:219
Maintenance & Trust

Minitek Slider Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJul 11, 2022
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Minitek Slider Developer Profile

Minitek.gr

2 plugins · 30 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Minitek Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/minitek-slider/admin/js/minitek-slider-admin-tabs.js
Script Paths
/wp-content/plugins/minitek-slider/admin/js/minitek-slider-admin-tabs.js

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Minitek Slider