Multiple Image Carousel Security & Risk Analysis

wordpress.org/plugins/multiple-image-carousel

This is an excellent plugin for Adding multiple image carousel.

0 active installs v0.1.0 PHP 5.6+ WP 4.0+ Updated Unknown
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Multiple Image Carousel Safe to Use in 2026?

Generally Safe

Score 100/100

Multiple Image Carousel has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "multiple-image-carousel" plugin v0.1.0 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, SQL queries without prepared statements, file operations, and external HTTP requests are all positive indicators. The presence of nonce and capability checks on entry points further strengthens its defenses. However, a significant concern arises from the low rate of properly escaped output (46%). This suggests a potential for Cross-Site Scripting (XSS) vulnerabilities, where user-supplied data, if not properly sanitized before being displayed, could be executed as JavaScript in the user's browser. The plugin's vulnerability history is clean, with no recorded CVEs. This, combined with the lack of critical or high-severity taint flows, suggests that the developers have either been diligent in their security practices or that the plugin's functionality is limited enough to avoid common vulnerability patterns. Despite the clean history, the unescaped output remains a critical area of concern that requires immediate attention.

Key Concerns

  • Low output escaping rate
Vulnerabilities
None known

Multiple Image Carousel Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Multiple Image Carousel Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
68
58 escaped
Nonce Checks
3
Capability Checks
6
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

46% escaped126 total outputs
Attack Surface

Multiple Image Carousel Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 2

authwp_ajax_cmb2_oembed_handlercmb2\includes\CMB2_Ajax.php:48
noprivwp_ajax_cmb2_oembed_handlercmb2\includes\CMB2_Ajax.php:49

Shortcodes 1

[mic] multiple-image-carousel.php:331
WordPress Hooks 38
actioncmb2_admin_initcmb2\example-functions.php:105
actioncmb2_admin_initcmb2\example-functions.php:431
actioncmb2_admin_initcmb2\example-functions.php:460
actioncmb2_admin_initcmb2\example-functions.php:524
actioncmb2_admin_initcmb2\example-functions.php:594
actioncmb2_admin_initcmb2\example-functions.php:636
actioncmb2_initcmb2\example-functions.php:691
actioncmb2_save_options-page_fieldscmb2\includes\CMB2_Ajax.php:51
filterget_post_metadatacmb2\includes\CMB2_Ajax.php:140
filterupdate_post_metadatacmb2\includes\CMB2_Ajax.php:143
filtercmb2_show_oncmb2\includes\CMB2_hookup.php:56
actionadd_meta_boxescmb2\includes\CMB2_hookup.php:80
actionadd_attachmentcmb2\includes\CMB2_hookup.php:81
actionedit_attachmentcmb2\includes\CMB2_hookup.php:82
actionsave_postcmb2\includes\CMB2_hookup.php:83
actionadd_meta_boxes_commentcmb2\includes\CMB2_hookup.php:94
actionedit_commentcmb2\includes\CMB2_hookup.php:95
filtermanage_edit-comments_columnscmb2\includes\CMB2_hookup.php:98
actionmanage_comments_custom_columncmb2\includes\CMB2_hookup.php:99
actionshow_user_profilecmb2\includes\CMB2_hookup.php:106
actionedit_user_profilecmb2\includes\CMB2_hookup.php:107
actionuser_new_formcmb2\includes\CMB2_hookup.php:108
actionpersonal_options_updatecmb2\includes\CMB2_hookup.php:110
actionedit_user_profile_updatecmb2\includes\CMB2_hookup.php:111
actionuser_registercmb2\includes\CMB2_hookup.php:112
filtermanage_users_columnscmb2\includes\CMB2_hookup.php:115
filtermanage_users_custom_columncmb2\includes\CMB2_hookup.php:116
actioncreated_termcmb2\includes\CMB2_hookup.php:154
actionedited_termscmb2\includes\CMB2_hookup.php:155
actiondelete_termcmb2\includes\CMB2_hookup.php:156
actioncmb2_do_oembedcmb2\includes\helper-functions.php:120
filteris_protected_metacmb2\includes\rest-api\CMB2_REST.php:118
actioninitcmb2\init.php:120
actionwp_enqueue_scriptsmultiple-image-carousel.php:14
actioninitmultiple-image-carousel.php:16
actioncmb2_admin_initmultiple-image-carousel.php:56
filtermanage_multiplecarousel_posts_columnsmultiple-image-carousel.php:333
actionmanage_multiplecarousel_posts_custom_columnmultiple-image-carousel.php:334
Maintenance & Trust

Multiple Image Carousel Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedUnknown
PHP min version5.6
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Alternatives

Multiple Image Carousel Alternatives

No alternatives data available yet.

Developer Profile

Multiple Image Carousel Developer Profile

Webgensis

7 plugins · 70 total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Multiple Image Carousel

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/multiple-image-carousel/js/owl.carousel.min.js/wp-content/plugins/multiple-image-carousel/css/owl.carousel.min.css
Script Paths
/wp-content/plugins/multiple-image-carousel/js/owl.carousel.min.js

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Multiple Image Carousel