
Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider Security & Risk Analysis
wordpress.org/plugins/post-slider-and-carouselPost Slider and Post Carousel display WordPress post in slider and carousel layouts with shortcode and Latest/Recent vertical post scrolling widget.
Is Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider Safe to Use in 2026?
Generally Safe
Score 99/100Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider has a strong security track record. Known vulnerabilities have been patched promptly.
The post-slider-and-carousel plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries, implementing nonce checks for all entry points, and conducting capability checks. The vast majority of output is properly escaped, and there are no external HTTP requests or file operations, which reduces common attack vectors. However, concerns arise from the taint analysis, which revealed 5 flows with unsanitized paths and 2 high-severity taint flows. These high-severity flows indicate potential for serious vulnerabilities if not addressed. The vulnerability history, while currently showing no unpatched CVEs, shows a past medium-severity Cross-Site Scripting vulnerability. This, coupled with the high-severity taint flows, suggests that inputs to the plugin may not always be sufficiently validated, potentially leading to injection attacks or XSS if these paths are exploited. The plugin has a history of vulnerabilities, indicating a need for continued vigilance in secure coding practices.
Key Concerns
- High severity taint flows detected
- Unsanitized paths found in taint flows
- Past medium severity XSS vulnerability
- Bundled outdated Freemius library (v1.0)
Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider <= 3.2.9 - Authenticated (Admin+) Stored Cross-Site Scripting
Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider Attack Surface
AJAX Handlers 2
REST API Routes 1
Shortcodes 3
WordPress Hooks 33
Maintenance & Trust
Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider Maintenance & Trust
Maintenance Signals
Community Trust
Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider Alternatives
Blog Designer Pack – Blog, Post Grid, Post Slider, Post Carousel, Category Post, News
blog-designer-pack
News & Blog plugin for post grid, post slider, post carousel, post filter, masonry, ticker & list category posts using shortcode, Elementor & Divi.
Carousel, Recent Post Slider and Banner Slider
spice-post-slider
Display your blog posts with a responsive, customizable slider that works smoothly on all devices.
Blog Designer – Post and Widget
blog-designer-for-post-and-widget
Display Post on your website with 2 designs(Grid and Slider) with 1 widget. Also work with Gutenberg shortcode block.
Post Carousel for Elementor
post-carousel-for-elementor
Post Carousel for Elementor – Add beautifully responsive and modern post carousels to your Elementor pages with 40+ ready preset styles.
AnWP Post Grid and Post Carousel Slider for Elementor
anwp-post-grid-for-elementor
Easily create awesome post grids and post carousel sliders. Different widget types, powerful filters, "load more" button and many customizab …
Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider Developer Profile
1 plugin · 10K total installs
How We Detect Post Slider and Post Carousel with Post Vertical Scrolling Widget – A Responsive Post Slider
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-slider-and-carousel/assets/css/slick.css/wp-content/plugins/post-slider-and-carousel/assets/css/slick-theme.css/wp-content/plugins/post-slider-and-carousel/assets/css/psac-public.css/wp-content/plugins/post-slider-and-carousel/assets/css/psac-owl.carousel.min.css/wp-content/plugins/post-slider-and-carousel/assets/css/magnific-popup.css/wp-content/plugins/post-slider-and-carousel/assets/js/slick.min.js/wp-content/plugins/post-slider-and-carousel/assets/js/psac-public.js/wp-content/plugins/post-slider-and-carousel/assets/js/psac-owl.carousel.min.js+3 more/wp-content/plugins/post-slider-and-carousel/assets/js/slick.min.js/wp-content/plugins/post-slider-and-carousel/assets/js/psac-public.js/wp-content/plugins/post-slider-and-carousel/assets/js/psac-owl.carousel.min.js/wp-content/plugins/post-slider-and-carousel/assets/js/jquery.magnific-popup.min.js/wp-content/plugins/post-slider-and-carousel/assets/js/psac-admin.jspost-slider-and-carousel/assets/css/slick.css?ver=post-slider-and-carousel/assets/css/slick-theme.css?ver=post-slider-and-carousel/assets/css/psac-public.css?ver=post-slider-and-carousel/assets/css/psac-owl.carousel.min.css?ver=post-slider-and-carousel/assets/css/magnific-popup.css?ver=post-slider-and-carousel/assets/js/slick.min.js?ver=post-slider-and-carousel/assets/js/psac-public.js?ver=post-slider-and-carousel/assets/js/psac-owl.carousel.min.js?ver=post-slider-and-carousel/assets/js/jquery.magnific-popup.min.js?ver=post-slider-and-carousel/assets/js/psac-admin.js?ver=post-slider-and-carousel/assets/css/psac-admin.css?ver=HTML / DOM Fingerprints
psac-post-sliderpsac-post-carouselpsac-slick-sliderpsac-owl-carouselpsac-popup-gallery<!-- POST SLIDER AND CAROUSEL END -->data-psac-iddata-psac-settingspsac_public_ajax_objectpsac_admin_ajax_object/wp-json/psac/v1/search_posts[psac_post_slider][psac_post_carousel]