Simple Fullscreen Responsive Slider Security & Risk Analysis

wordpress.org/plugins/simple-fullscreen-responsive-slider

Simple Fullscreen Responsive Slider is an easy-to-use, lightweight, responsive, fullscreen slider that supports MultiPostThumbnails and custom CSS.

200 active installs v1.0.5 PHP + WP 3.0.0+ Updated Jun 14, 2015
fullscreenfullscreen-sliderresponsiveresponsive-sliderslider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Fullscreen Responsive Slider Safe to Use in 2026?

Generally Safe

Score 85/100

Simple Fullscreen Responsive Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "simple-fullscreen-responsive-slider" plugin, version 1.0.5, presents a generally positive security posture due to the absence of known vulnerabilities and critical taint flows. The static analysis reveals good practices in its handling of SQL queries, exclusively using prepared statements, and a lack of external HTTP requests or bundled libraries. However, there are significant areas of concern. The plugin exhibits a low percentage of properly escaped output (39%), which is a considerable risk for Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the absence of nonce checks and capability checks on its single shortcode entry point means that any authenticated user could potentially trigger its functionality, leading to unintended actions or information disclosure if the shortcode's output is not adequately sanitized.

While the plugin has no recorded vulnerability history, this does not guarantee future safety. The identified weaknesses, particularly the output escaping and lack of authorization checks on its entry points, create a fertile ground for potential attacks, especially XSS. The plugin's strengths lie in its avoidance of raw SQL and external requests. However, the critical need for improved output escaping and the implementation of proper authorization checks on its shortcode are paramount to strengthening its security and mitigating potential risks.

Key Concerns

  • Low percentage of properly escaped output
  • No nonce checks on entry points
  • No capability checks on entry points
Vulnerabilities
None known

Simple Fullscreen Responsive Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Simple Fullscreen Responsive Slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
17
11 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

39% escaped28 total outputs
Attack Surface

Simple Fullscreen Responsive Slider Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[simple-slider] simple-fullscreen-responsive-slider.php:101
WordPress Hooks 13
actionwpsimple-fullscreen-responsive-slider.php:51
actioninitsimple-fullscreen-responsive-slider.php:62
filteruser_can_richeditsimple-fullscreen-responsive-slider.php:65
actioninitsimple-fullscreen-responsive-slider.php:70
actioninitsimple-fullscreen-responsive-slider.php:72
actioninitsimple-fullscreen-responsive-slider.php:88
actioninitsimple-fullscreen-responsive-slider.php:93
actionwp_headsimple-fullscreen-responsive-slider.php:94
actioninitsimple-fullscreen-responsive-slider.php:96
actionwp_headsimple-fullscreen-responsive-slider.php:97
actionwp_footersimple-fullscreen-responsive-slider.php:104
actionadmin_menusimple-slider-options.php:19
actionadmin_initsimple-slider-options.php:20
Maintenance & Trust

Simple Fullscreen Responsive Slider Maintenance & Trust

Maintenance Signals

WordPress version tested4.2.2.
Last updatedJun 14, 2015
PHP min version
Downloads46K

Community Trust

Rating86/100
Number of ratings3
Active installs200
Developer Profile

Simple Fullscreen Responsive Slider Developer Profile

Chris Stephens

1 plugin · 200 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple Fullscreen Responsive Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-fullscreen-responsive-slider/javascripts/jquery.easyfader.slide.min.js/wp-content/plugins/simple-fullscreen-responsive-slider/javascripts/jquery.easyfader.min.js
Script Paths
/wp-content/plugins/simple-fullscreen-responsive-slider/javascripts/jquery.easyfader.slide.min.js/wp-content/plugins/simple-fullscreen-responsive-slider/javascripts/jquery.easyfader.min.js
Version Parameters
simple-fullscreen-responsive-slider/javascripts/jquery.easyfader.slide.min.js?ver=simple-fullscreen-responsive-slider/javascripts/jquery.easyfader.min.js?ver=

HTML / DOM Fingerprints

Shortcode Output
[simple-slider]
FAQ

Frequently Asked Questions about Simple Fullscreen Responsive Slider