SAS WEB Testimonials Slider Security & Risk Analysis

wordpress.org/plugins/sas-web-testimonials-slider

Create Fully responsive testimonial slider, and widgets in an elegant way. It has widget area to place testimonials on sidebar.

10 active installs v1.2 PHP + WP + Updated Sep 9, 2017
customizable-sliderresponsive-testimonial-slidertestimonial-slider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is SAS WEB Testimonials Slider Safe to Use in 2026?

Generally Safe

Score 85/100

SAS WEB Testimonials Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The 'sas-web-testimonials-slider' plugin version 1.2 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified attack surface, dangerous functions, file operations, or external HTTP requests is a significant strength. Furthermore, the complete reliance on prepared statements for SQL queries, coupled with the presence of nonce and capability checks, indicates good development practices for input validation and access control. The low percentage of unescaped output, while not perfect, suggests a general awareness of output sanitization. The plugin's history of zero known vulnerabilities, across all severities and types, is a very positive indicator of its security maturity and the diligence of its maintainers.

While the data presents a very clean security profile, it's important to note that the taint analysis reported zero flows. This could mean either the analysis was incomplete, or the plugin's limited functionality genuinely doesn't introduce exploitable data flows. The presence of some unescaped output (14% of 14 total) is a minor concern that could potentially lead to cross-site scripting (XSS) vulnerabilities if the unescaped data originates from user input and is rendered directly in the browser. However, without specific details on the nature of these outputs and their data sources, the risk is currently assessed as low.

In conclusion, 'sas-web-testimonials-slider' v1.2 appears to be a well-secured plugin with robust security practices in place and no historical security incidents. The primary area for minor improvement would be to ensure all output is properly escaped. Given the available data, the plugin represents a low-risk addition to a WordPress site.

Key Concerns

  • Unescaped output detected
Vulnerabilities
None known

SAS WEB Testimonials Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

SAS WEB Testimonials Slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
12 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

86% escaped14 total outputs
Attack Surface

SAS WEB Testimonials Slider Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actioninitsasweb-testimonials.php:31
actionmanage_testimonial_posts_custom_columnsasweb-testimonials.php:32
actionadd_meta_boxessasweb-testimonials.php:33
actionsave_postsasweb-testimonials.php:34
actionadmin_initsasweb-testimonials.php:35
actionadmin_menusasweb-testimonials.php:36
filtermanage_edit-testimonial_columnssasweb-testimonials.php:39
Maintenance & Trust

SAS WEB Testimonials Slider Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedSep 9, 2017
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

SAS WEB Testimonials Slider Developer Profile

Suresh Kumar Mukhiya

4 plugins · 1K total installs

80
trust score
Avg Security Score
80/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SAS WEB Testimonials Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sas-web-testimonials-slider/assets/css/admin-init.css
Version Parameters
sas-web-testimonials-slider/assets/css/admin-init.css?ver=sas-web-testimonials-slider/lib/shortcode.php?ver=sas-web-testimonials-slider/lib/widgets.php?ver=sas-web-testimonials-slider/lib/testimonial.php?ver=

HTML / DOM Fingerprints

CSS Classes
welcome-panelwelcome-panel-contentabout-description
Data Attributes
data-swt-testimonials
Shortcode Output
[sas_testimonial][sas_testimonial]
FAQ

Frequently Asked Questions about SAS WEB Testimonials Slider