
Range Slider Addon for Gravity Forms Security & Risk Analysis
wordpress.org/plugins/range-slider-addon-for-gravity-formsIntegrate your gravity forms with a smooth, lightweight, customizable range slider and unrivaled performance on both mobile and desktop.
Is Range Slider Addon for Gravity Forms Safe to Use in 2026?
Generally Safe
Score 97/100Range Slider Addon for Gravity Forms has a strong security track record. Known vulnerabilities have been patched promptly.
The 'range-slider-addon-for-gravity-forms' plugin v1.1.7 demonstrates a generally good security posture with several strong practices in place. The complete absence of dangerous functions, 100% prepared SQL statements, and 100% properly escaped output are commendable. The plugin also has a decent number of nonce checks and capability checks relative to its entry points. However, a significant concern is the presence of one AJAX handler without any authentication checks, creating a direct avenue for unauthenticated interaction and potential abuse.
The vulnerability history shows one known CVE, which is concerning, but it is currently patched. The common vulnerability type being Cross-site Scripting (XSS) is a known risk in web applications, and while this specific CVE is patched, it highlights a past area of weakness that developers should remain vigilant about. The lack of taint analysis results might be due to limitations in the analysis tool or that the plugin, despite its attack surface, does not exhibit complex or easily identifiable tainted data flows.
In conclusion, while the plugin implements many security best practices, the single unprotected AJAX endpoint presents a clear and actionable security risk. The past XSS vulnerability, even if patched, warrants ongoing attention to input sanitization. The overall security is moderate, with a key area for immediate improvement being the authentication of all AJAX handlers.
Key Concerns
- Unprotected AJAX handler
- Known CVE history (XSS)
Range Slider Addon for Gravity Forms Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Range Slider Addon for Gravity Forms <= 1.1.6 - Unauthenticated Stored Cross-Site Scripting
Range Slider Addon for Gravity Forms Code Analysis
Bundled Libraries
Output Escaping
Range Slider Addon for Gravity Forms Attack Surface
AJAX Handlers 3
WordPress Hooks 15
Maintenance & Trust
Range Slider Addon for Gravity Forms Maintenance & Trust
Maintenance Signals
Community Trust
Range Slider Addon for Gravity Forms Alternatives
Gravity Forms Zero Spam
gravity-forms-zero-spam
Enhance your Gravity Forms to include anti-spam measures originally based on the work of David Walsh's "Zero Spam" technique.
Master Slider – Responsive Touch Slider
master-slider
Build SEO friendly sliders fast and easy with touch swipe navigation that works smoothly across all devices.
Gravity Booster – Styles & Layouts for Gravity Forms
styles-and-layouts-for-gravity-forms
Gravity Booster - Styles and Layouts for Gravity Forms plugin lets you design and style Gravity Forms without CSS coding. You can also use it for addi …
Advanced Custom Fields: Gravity Forms Add-on
acf-gravityforms-add-on
Provides an Advanced Custom Field which allows a WordPress user to select a Gravity Form as part of a field group configuration.
Serious Slider
cryout-serious-slider
Serious Slider is a free highly efficient SEO friendly fully translatable accessibility ready image slider for WordPress. Seriously!
Range Slider Addon for Gravity Forms Developer Profile
16 plugins · 11K total installs
How We Detect Range Slider Addon for Gravity Forms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/range-slider-addon-for-gravity-forms/assets/css/gfrs_admin.css/wp-content/plugins/range-slider-addon-for-gravity-forms/assets/js/gfrs_admin.js/wp-content/plugins/range-slider-addon-for-gravity-forms/assets/js/gfrs_admin.jsrange-slider-addon-for-gravity-forms/assets/css/gfrs_admin.css?ver=range-slider-addon-for-gravity-forms/assets/js/gfrs_admin.js?ver=HTML / DOM Fingerprints
pcafe_wrapperpcafe_containerdata-nonceGF_NU_RANGE_SLIDER_ADDON_VERSIONGF_NU_RANGE_SLIDER_URLGFRS_GF_MIN_2_5