
Post Slider For WPBakery Page Builder Security & Risk Analysis
wordpress.org/plugins/post-carousel-slider-for-visual-composerDrag & touch Post Carousel anything at any position (row / column) in VC
Is Post Slider For WPBakery Page Builder Safe to Use in 2026?
Generally Safe
Score 85/100Post Slider For WPBakery Page Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "post-carousel-slider-for-visual-composer" v1.1 indicates a generally positive security posture, with no immediately apparent critical vulnerabilities identified in the provided data. The absence of dangerous functions, raw SQL queries, file operations, external HTTP requests, and taint analysis findings suggests careful coding practices in these areas. The plugin also demonstrates good use of prepared statements for its SQL queries.
However, a significant concern is the extremely low percentage (5%) of properly escaped output. With 150 total outputs analyzed, this implies that a substantial number of user-provided or dynamic data points are not being properly sanitized before being displayed, creating a high risk of Cross-Site Scripting (XSS) vulnerabilities. The lack of any capability checks or nonce checks on entry points is also a major weakness, as it means any unauthenticated or low-privileged user could potentially interact with parts of the plugin that were intended to be protected, opening the door for privilege escalation or unauthorized actions. The plugin's vulnerability history being clean is a positive sign, but the identified weaknesses in output escaping and authorization checks are serious and should be addressed proactively.
In conclusion, while the plugin avoids common pitfalls like raw SQL and dangerous functions, the severe lack of output escaping and missing authorization checks presents a significant security risk. The clean vulnerability history is encouraging, but it does not mitigate the inherent dangers revealed by the static analysis. Addressing these core weaknesses is crucial for improving the plugin's overall security.
Key Concerns
- Low output escaping percentage (5%)
- No capability checks on entry points
- No nonce checks on entry points
Post Slider For WPBakery Page Builder Security Vulnerabilities
Post Slider For WPBakery Page Builder Code Analysis
Output Escaping
Post Slider For WPBakery Page Builder Attack Surface
WordPress Hooks 4
Maintenance & Trust
Post Slider For WPBakery Page Builder Maintenance & Trust
Maintenance Signals
Community Trust
Post Slider For WPBakery Page Builder Alternatives
Mega Addons For WPBakery Page Builder
mega-addons-for-visual-composer
34+ Addons WPBakery extension, Beautifully designed unique elements, Includes Premium quality addons For WPBakery Page Builder.
Image Hover Effects for Visual Composer
image-hover-effect-for-visual-composer
Requires at least: 3.5 Tested up to: 4.9 Stable tag: 1.0 License: GPLv2 or later License URI: http://www.gnu.org/licenses/gpl-2.0.
Twenty20 Image Before-After
twenty20
Professional before & after image comparison slider for WordPress. Create engaging visual comparisons with an intuitive drag & drop interface.
Video Background
video-background
Easily assign a video background to any element on your WordPress pages or posts. Now compatible with WPBakery (Visual Composer) and SiteOrigin Page B …
WPMasterToolKit (WPMTK) – All in one plugin
wpmastertoolkit
Duplicate post, post order, email via SMTP, code snippets, disable gutenberg, child theme generator, svg support, disable XMLRPC, and more...
Post Slider For WPBakery Page Builder Developer Profile
3 plugins · 32K total installs
How We Detect Post Slider For WPBakery Page Builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-carousel-slider-for-visual-composer/css/css/font-awesome.min.css/wp-content/plugins/post-carousel-slider-for-visual-composer/css/post-design.css/wp-content/plugins/post-carousel-slider-for-visual-composer/css/simplegrid.css/wp-content/plugins/post-carousel-slider-for-visual-composer/js/jquery.matchHeight-min.js/wp-content/plugins/post-carousel-slider-for-visual-composer/js/jquery.matchHeight-min.jspost-carousel-slider-for-visual-composer/css/css/font-awesome.min.css?ver=post-carousel-slider-for-visual-composer/css/post-design.css?ver=post-carousel-slider-for-visual-composer/css/simplegrid.css?ver=post-carousel-slider-for-visual-composer/js/jquery.matchHeight-min.js?ver=HTML / DOM Fingerprints
na-prefixgridgrid-pad<!--
Copyright (C) 2017 Nasir nasirahmad2010@hotmail.com
This program is free software; you can redistribute it and/or modify
it under the terms of the GNU General Public License, version 2, as
published by the Free Software Foundation.
This program is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.
You should have received a copy of the GNU General Public License
along with this program; if not, write to the Free Software
Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
--><!-- Please install <a href="https://1.envato.market/A1QAx">WPBakery Page Builder</a> to use Post Carousel. -->data-vc-shortcode="na_posts_grid"<div class="na-prefix"><div class="grid grid-pad">