FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce Security & Risk Analysis

wordpress.org/plugins/product-slider-carousel

Create stunning WooCommerce product carousels, sliders, galleries, and grids. Includes related products, upsell, cross-sell, and category carousels.

200 active installs v2.2.2 PHP + WP 4.6+ Updated Dec 19, 2025
category-sliderproduct-carouselproduct-galleryproduct-sliderwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "product-slider-carousel" v2.2.2 plugin exhibits a generally strong security posture, largely due to the absence of known vulnerabilities and diligent implementation of security best practices within the analyzed code. The static analysis reveals a well-protected attack surface, with all identified entry points (AJAX handlers, shortcodes) appearing to have appropriate authentication or permission checks. Furthermore, the plugin demonstrates good data handling by using prepared statements for all SQL queries and a high percentage of properly escaped output, significantly reducing the risk of injection attacks and cross-site scripting (XSS) vulnerabilities. The lack of dangerous functions, file operations, and external HTTP requests further contributes to its secure design. The absence of any historical CVEs or reported vulnerabilities also suggests a history of stable and secure development. However, while the plugin scores well on several security fronts, the presence of two SQL queries, even if prepared, indicates a potential, albeit minimal, area where subtle misconfigurations could theoretically lead to issues. The 14% of outputs that are not properly escaped, while not immediately indicative of a vulnerability without further context, represents a small but present risk of XSS.

Key Concerns

  • Unescaped output found
Vulnerabilities
None known

FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
72
461 escaped
Nonce Checks
7
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

86% escaped533 total outputs
Data Flows
All sanitized

Data Flow Analysis

3 flows
wpgpsc_export (admin\wpgpsc-framework\functions\actions.php:62)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce Attack Surface

Entry Points6
Unprotected0

AJAX Handlers 5

authwp_ajax_wpgpsc-get-iconsadmin\wpgpsc-framework\functions\actions.php:50
authwp_ajax_wpgpsc-exportadmin\wpgpsc-framework\functions\actions.php:87
authwp_ajax_wpgpsc-importadmin\wpgpsc-framework\functions\actions.php:123
authwp_ajax_wpgpsc-resetadmin\wpgpsc-framework\functions\actions.php:150
authwp_ajax_wpgpsc-chosenadmin\wpgpsc-framework\functions\actions.php:189

Shortcodes 1

[psc_product] includes\class-gpsc-product-slider-carousel.php:226
WordPress Hooks 37
actionwp_enqueue_scriptsadmin\wpgpsc-framework\classes\abstract.class.php:20
actionadmin_menuadmin\wpgpsc-framework\classes\admin-options.class.php:107
actionadmin_bar_menuadmin\wpgpsc-framework\classes\admin-options.class.php:108
actionnetwork_admin_menuadmin\wpgpsc-framework\classes\admin-options.class.php:112
filteradmin_footer_textadmin\wpgpsc-framework\classes\admin-options.class.php:493
actionadd_meta_boxesadmin\wpgpsc-framework\classes\metabox-options.class.php:50
actionsave_postadmin\wpgpsc-framework\classes\metabox-options.class.php:51
actionedit_attachmentadmin\wpgpsc-framework\classes\metabox-options.class.php:52
actionafter_setup_themeadmin\wpgpsc-framework\classes\setup.class.php:73
actioninitadmin\wpgpsc-framework\classes\setup.class.php:74
actionswitch_themeadmin\wpgpsc-framework\classes\setup.class.php:75
actionadmin_enqueue_scriptsadmin\wpgpsc-framework\classes\setup.class.php:76
actionwp_enqueue_scriptsadmin\wpgpsc-framework\classes\setup.class.php:77
actionwp_headadmin\wpgpsc-framework\classes\setup.class.php:78
filteradmin_body_classadmin\wpgpsc-framework\classes\setup.class.php:79
actionplugins_loadedincludes\class-gpsc-product-slider-carousel.php:182
actionadmin_enqueue_scriptsincludes\class-gpsc-product-slider-carousel.php:196
actionadmin_enqueue_scriptsincludes\class-gpsc-product-slider-carousel.php:197
actioninitincludes\class-gpsc-product-slider-carousel.php:201
filterpost_updated_messagesincludes\class-gpsc-product-slider-carousel.php:202
actionadmin_menuincludes\class-gpsc-product-slider-carousel.php:203
actionadmin_initincludes\class-gpsc-product-slider-carousel.php:204
filteradmin_footer_textincludes\class-gpsc-product-slider-carousel.php:205
filterplugin_action_linksincludes\class-gpsc-product-slider-carousel.php:206
actionwp_enqueue_scriptsincludes\class-gpsc-product-slider-carousel.php:220
actionwp_enqueue_scriptsincludes\class-gpsc-product-slider-carousel.php:221
actiongpsc_action_tag_for_shortcodeincludes\class-gpsc-product-slider-carousel.php:225
actioninitincludes\class-gpsc-product-slider-carousel.php:231
actionwoocommerce_after_single_product_summaryincludes\class-gpsc-product-slider-carousel.php:233
actioninitincludes\class-gpsc-product-slider-carousel.php:252
actionwoocommerce_after_single_product_summaryincludes\class-gpsc-product-slider-carousel.php:259
actioninitincludes\class-gpsc-product-slider-carousel.php:265
actionwoocommerce_product_thumbnailsincludes\class-gpsc-product-slider-carousel.php:266
actioninitincludes\class-gpsc-product-slider-carousel.php:272
actionwoocommerce_cart_collateralsincludes\class-gpsc-product-slider-carousel.php:273
filterwoocommerce_product_single_add_to_cart_textincludes\class-gpsc-product-slider-carousel.php:282
filterwoocommerce_product_add_to_cart_textincludes\class-gpsc-product-slider-carousel.php:283
Maintenance & Trust

FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 19, 2025
PHP min version
Downloads12K

Community Trust

Rating82/100
Number of ratings7
Active installs200
Developer Profile

FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce Developer Profile

Pluginic

7 plugins · 3K total installs

90
trust score
Avg Security Score
94/100
Avg Patch Time
12 days
View full developer profile
Detection Fingerprints

How We Detect FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-slider-carousel/assets/css/gpsc-frontend.css/wp-content/plugins/product-slider-carousel/assets/js/gpsc-frontend.js/wp-content/plugins/product-slider-carousel/assets/js/slick.min.js/wp-content/plugins/product-slider-carousel/assets/js/waypoints.min.js/wp-content/plugins/product-slider-carousel/assets/js/jquery.zoom.min.js/wp-content/plugins/product-slider-carousel/admin/assets/css/gpsc-product-slider-carousel-admin.css/wp-content/plugins/product-slider-carousel/admin/assets/js/gpsc-product-slider-carousel-admin.js/wp-content/plugins/product-slider-carousel/admin/wpgpsc-framework/assets/css/wpgpsc-framework.css+1 more
Script Paths
plugin_dir_url(__FILE__) . 'assets/js/slick.min.js'plugin_dir_url(__FILE__) . 'assets/js/waypoints.min.js'plugin_dir_url(__FILE__) . 'assets/js/jquery.zoom.min.js'plugin_dir_url(__FILE__) . 'assets/js/gpsc-frontend.js'plugin_dir_url(__FILE__) . 'admin/assets/js/gpsc-product-slider-carousel-admin.js'plugin_dir_url(__FILE__) . 'admin/wpgpsc-framework/assets/js/wpgpsc-framework.js'
Version Parameters
product-slider-carousel/assets/css/gpsc-frontend.css?ver=product-slider-carousel/assets/js/slick.min.js?ver=product-slider-carousel/assets/js/waypoints.min.js?ver=product-slider-carousel/assets/js/jquery.zoom.min.js?ver=product-slider-carousel/assets/js/gpsc-frontend.js?ver=product-slider-carousel/admin/assets/css/gpsc-product-slider-carousel-admin.css?ver=product-slider-carousel/admin/assets/js/gpsc-product-slider-carousel-admin.js?ver=product-slider-carousel/admin/wpgpsc-framework/assets/css/wpgpsc-framework.css?ver=product-slider-carousel/admin/wpgpsc-framework/assets/js/wpgpsc-framework.js?ver=

HTML / DOM Fingerprints

CSS Classes
gpsc-carousel-wrappergpsc-frontend-wrapslick-trackslick-slidegpsc-image-zoom
HTML Comments
<!-- WPGPSC Framework --><!-- Settings -->
Data Attributes
data-zoom-iddata-zoom-imagedata-dotsdata-navdata-itemsdata-arrows+7 more
JS Globals
wpgpsc_frontend_dataWPGPSC
Shortcode Output
[gpsc_products][gpsc_categories][gpsc_related_products][gpsc_upsell_products]
FAQ

Frequently Asked Questions about FancyProduct — Product Carousel, Slider, Gallery & Grid for WooCommerce