Product Carousel Slider for WooCommerce (Biddut Block) Security & Risk Analysis

wordpress.org/plugins/product-carousel-slider-biddut-block

Beautiful Product Carousel Slider for WooCommerce Block (Biddut Block) with responsive columns, hover effects, navigation, and lots of functionality.

0 active installs v1.4.0 PHP 7.4+ WP 5.8+ Updated Mar 16, 2026
carouselgalleryproductssliderwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Product Carousel Slider for WooCommerce (Biddut Block) Safe to Use in 2026?

Generally Safe

Score 100/100

Product Carousel Slider for WooCommerce (Biddut Block) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "product-carousel-slider-biddut-block" plugin v1.4.0 exhibits a strong security posture based on the provided static analysis. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events, especially those lacking authentication or permission checks, indicates a minimal attack surface. Furthermore, the code signals are overwhelmingly positive, with no dangerous functions, a complete absence of SQL queries that are not prepared statements, and a very high percentage of properly escaped output. The lack of file operations and external HTTP requests, along with no taint analysis findings, further reinforces this impression of secure coding practices.

However, the analysis does reveal some areas that, while not outright vulnerabilities, represent missed security opportunities or potential future risks. The complete absence of nonce checks and capability checks across all potential entry points (even though there are none detected) suggests a lack of defensive depth. If new entry points were to be introduced in future versions without these checks, it could expose the plugin to significant risks. The vulnerability history is exceptionally clean, with no recorded CVEs of any severity. This is a positive indicator, suggesting the plugin has historically been developed with security in mind or has not attracted malicious attention. The lack of historical vulnerabilities, combined with the current clean static analysis, points to a plugin that is, at present, very secure. The key weakness is the lack of built-in security mechanisms like nonces and capability checks, which could be a blind spot if the attack surface were to expand.

Key Concerns

  • Missing nonce checks on potential entry points
  • Missing capability checks on potential entry points
Vulnerabilities
None known

Product Carousel Slider for WooCommerce (Biddut Block) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Product Carousel Slider for WooCommerce (Biddut Block) Release Timeline

v1.4.0Current
v1.3.0
v1.2.0
v1.1.0
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Product Carousel Slider for WooCommerce (Biddut Block) Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
168 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

98% escaped172 total outputs
Attack Surface

Product Carousel Slider for WooCommerce (Biddut Block) Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actionadmin_menuincludes\class-pcsbb-admin.php:56
actioninitincludes\class-pcsbb-core.php:37
actionwp_enqueue_scriptsincludes\class-pcsbb-core.php:41
actionadmin_menuincludes\class-pcsbb-core.php:45
actionadmin_noticesincludes\class-pcsbb-core.php:63
filterblock_categories_allincludes\class-pcsbb-gutenberg-block.php:22
actionenqueue_block_editor_assetsincludes\class-pcsbb-gutenberg-block.php:25
actionwp_footerincludes\class-pcsbb-gutenberg-block.php:307
actionplugins_loadedproduct-carousel-slider-biddut-block.php:56
actionbefore_woocommerce_initproduct-carousel-slider-biddut-block.php:68
actionadmin_noticesproduct-carousel-slider-biddut-block.php:107
Maintenance & Trust

Product Carousel Slider for WooCommerce (Biddut Block) Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 16, 2026
PHP min version7.4
Downloads452

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Product Carousel Slider for WooCommerce (Biddut Block) Developer Profile

Shahriar Ahmed Biddut

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Product Carousel Slider for WooCommerce (Biddut Block)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-carousel-slider-biddut-block/assets/css/pcsbb-public.css/wp-content/plugins/product-carousel-slider-biddut-block/assets/js/pcsbb-public.js/wp-content/plugins/product-carousel-slider-biddut-block/assets/js/pcsbb-carousel.js/wp-content/plugins/product-carousel-slider-biddut-block/assets/css/pcsbb-admin.css
Script Paths
/wp-content/plugins/product-carousel-slider-biddut-block/assets/js/pcsbb-public.js/wp-content/plugins/product-carousel-slider-biddut-block/assets/js/pcsbb-carousel.js
Version Parameters
product-carousel-slider-biddut-block/assets/css/pcsbb-public.css?ver=product-carousel-slider-biddut-block/assets/js/pcsbb-public.js?ver=product-carousel-slider-biddut-block/assets/js/pcsbb-carousel.js?ver=product-carousel-slider-biddut-block/assets/css/pcsbb-admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
pcsbb-wrappcsbb-page-headerpcsbb-noticepcsbb-gridpcsbb-cardpcsbb-card-title
HTML Comments
── Layout ──── Page header ──── Notice strip ──── Card grid (overview) ──
Data Attributes
data-pcsbb-id
JS Globals
pcsbb_params
FAQ

Frequently Asked Questions about Product Carousel Slider for WooCommerce (Biddut Block)