
Slider Factory Security & Risk Analysis
wordpress.org/plugins/slider-factoryBuild image sliders, photo carousels, and video slideshows with 12 layouts. Drag-and-drop interface with responsive design.
Is Slider Factory Safe to Use in 2026?
Generally Safe
Score 99/100Slider Factory has a strong security track record. Known vulnerabilities have been patched promptly.
The static analysis of slider-factory v1.3.13 reveals a generally strong security posture. The plugin demonstrates excellent adherence to secure coding practices, with 100% of SQL queries using prepared statements, 99% of output being properly escaped, and robust use of nonce and capability checks on its entry points. The absence of dangerous functions, file operations, and external HTTP requests further contributes to its security. Taint analysis shows no critical or high severity issues related to unsanitized data flows.
However, the plugin's vulnerability history presents a significant concern. It has a history of two known CVEs, including one high and one medium severity vulnerability, primarily related to Missing Authorization and Cross-Site Request Forgery (CSRF). While there are currently no unpatched vulnerabilities, the existence of past critical security flaws, especially those involving authorization bypass and CSRF, indicates a recurring weakness in how user actions and data are handled, even if current code analysis doesn't highlight immediate risks. The last vulnerability was recorded in 2021, suggesting a long period without publicly disclosed issues, but past patterns are important to consider.
In conclusion, while slider-factory v1.3.13 exhibits strong technical security measures in its current codebase, its historical vulnerability record necessitates caution. The past high and medium severity issues, particularly around authorization and CSRF, suggest that thorough auditing and vigilant monitoring of future updates are crucial. Users should be aware that despite good current static analysis results, a history of significant vulnerabilities implies potential for similar issues to re-emerge.
Key Concerns
- High severity historical vulnerability
- Medium severity historical vulnerability
- Past missing authorization vulnerabilities
- Past CSRF vulnerabilities
Slider Factory Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Responsive Image Slider, Photo Gallery And Carousel < 1.3.6 - Missing Authorization
Responsive Image Slider, Photo Gallery And Carousel < 1.3.2 - Cross-Site Request Forgery
Slider Factory Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Slider Factory Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
Slider Factory Maintenance & Trust
Maintenance Signals
Community Trust
Slider Factory Alternatives
Ultimate Responsive Image Slider
ultimate-responsive-image-slider
Create stunning responsive sliders in minutes. Drag-and-drop builder, unlimited sliders, mobile-friendly & SEO optimized!
WP Slick Slider and Image Carousel
wp-slick-slider-and-image-carousel
A quick, easy way to add and display multiple WP Slick Slider and carousel using a shortcode. Also added Gutenberg block support.
MaxSlider
maxslider
MaxSlider is a free WordPress slider plugin that lets you create responsive sliders for your website. Shortcode and Visual Composer support included.
Image Slider
image-slider-widget
Image Slider - The best and very easy slider plugin for your post, page or sidebar. 100% Responsive.
Accordion and Accordion Slider
accordion-and-accordion-slider
Accordion and Accordion Slider - Responsive and Touch enabled accordion for WordPress Website. Also work with Gutenberg shortcode block.
Slider Factory Developer Profile
28 plugins · 47K total installs
How We Detect Slider Factory
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/slider-factory/admin/assets/css/style.css/wp-content/plugins/slider-factory/admin/assets/bootstrap-5.0.0/css/bootstrap-admin.css/wp-content/plugins/slider-factory/admin/assets/fontawesome-free-5.15.1-web/css/all.css/wp-content/plugins/slider-factory/admin/assets/bootstrap-5.0.0/js/bootstrap.js/wp-content/plugins/slider-factory/admin/assets/bootstrap-5.0.0/js/bootstrap.bundle.jsadmin/assets/css/style.cssadmin/assets/bootstrap-5.0.0/css/bootstrap-admin.cssadmin/assets/fontawesome-free-5.15.1-web/css/all.cssadmin/assets/bootstrap-5.0.0/js/bootstrap.jsadmin/assets/bootstrap-5.0.0/js/bootstrap.bundle.jsslider-factory/admin/assets/css/style.css?ver=slider-factory/admin/assets/bootstrap-5.0.0/css/bootstrap-admin.css?ver=slider-factory/admin/assets/fontawesome-free-5.15.1-web/css/all.css?ver=slider-factory/admin/assets/bootstrap-5.0.0/js/bootstrap.js?ver=slider-factory/admin/assets/bootstrap-5.0.0/js/bootstrap.bundle.js?ver=HTML / DOM Fingerprints
sf-slide-columnsf-slide-boxsf_slide_idsf_slide_titlesf_slide_descsf_slide_thumbnailsf_slide_linksf_slide_alt+12 moredata-positionsf_upload_nonce