
Slider Hero with Video Background, Animation Security & Risk Analysis
wordpress.org/plugins/slider-heroHero Slider with Youtube Video Background & Animation Effects. Adverts, Text Carousels, Animated Header - Elementor Slider Widget & Gutenberg
Is Slider Hero with Video Background, Animation Safe to Use in 2026?
Generally Safe
Score 98/100Slider Hero with Video Background, Animation has a strong security track record. Known vulnerabilities have been patched promptly.
The "slider-hero" plugin exhibits a mixed security posture. While a significant portion of its code demonstrates good security practices, such as a high percentage of prepared SQL statements and properly escaped output, there are notable areas of concern. The presence of 8 unprotected AJAX handlers significantly expands the attack surface, presenting a clear entry point for malicious actors. The taint analysis revealing 4 high-severity flows with unsanitized paths is a critical red flag, indicating potential for serious vulnerabilities like Cross-Site Scripting or SQL Injection if these flows are indeed exploitable. The plugin's vulnerability history, with 4 known CVEs including one high-severity and three medium-severity, reinforces these concerns. The types of past vulnerabilities (XSS, SQLi, CSRF) align with the potential risks identified in the taint analysis. The most recent vulnerability being relatively recent (March 2024) suggests ongoing security challenges. Overall, while the plugin implements some robust security measures, the unprotected entry points and critical taint flows, coupled with a history of diverse and serious vulnerabilities, necessitate careful consideration and immediate mitigation of identified risks.
Key Concerns
- Unprotected AJAX handlers present attack surface
- High severity unsanitized taint flows
- History of 1 high-severity CVE
- History of 3 medium-severity CVEs
- Bundled outdated TinyMCE library
Slider Hero with Video Background, Animation Security Vulnerabilities
CVEs by Year
Severity Breakdown
4 total CVEs
Slider Hero <= 8.6.1 - Authenticated (Administrator+) Stored Cross-Site Scripting
Slider Hero <= 8.4.3 - Authenticated (Administrator+) Stored Cross-Site Scripting
Slider Hero with Animation, Video Background & Intro Maker <= 8.2.6 - SQL Injection
Slider Hero <= 8.2.0 - Cross-Site Request Forgery Bypass
Slider Hero with Video Background, Animation Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Slider Hero with Video Background, Animation Attack Surface
AJAX Handlers 23
Shortcodes 2
WordPress Hooks 94
Maintenance & Trust
Slider Hero with Video Background, Animation Maintenance & Trust
Maintenance Signals
Community Trust
Slider Hero with Video Background, Animation Alternatives
Responsive Slick Slider WordPress
responsive-slick-slider
Responsive Slick Slider is built on the top of slick js with support to unlimited banner images, text layers and videos(YouTube, Mp4, HTML5 and Vimeo) …
Hub Tag Add-ons Elementor
hubtag-addons-elementor
Hub Tag Add-ons for Elementor features huge collection of premium, easy to use yet highly functional extensions that can be used in an Elementor page …
Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider
ml-slider
Slider, gallery, carousel plugin for WordPress. Build your image slider, video slider, post slider, YouTube slider, or WooCommerce product slider.
Prime Slider – Addons for Elementor
bdthemes-prime-slider-lite
Create responsive sliders using Elementor for hero sections, posts, logos, images, products, testimonials, and more.
Carousel, Slider, Photo Gallery with Lightbox, Video Slider, by WP Carousel
wp-carousel-free
Carousel, Slider, and Photo Gallery with Lightbox plugin. Create Image Carousel, Video Slider, Post Carousel, Post Grid, Product Carousel, and more.
Slider Hero with Video Background, Animation Developer Profile
29 plugins · 26K total installs
How We Detect Slider Hero with Video Background, Animation
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/slider-hero/css/shortcode.css/wp-content/plugins/slider-hero/css/slider_hero.css/wp-content/plugins/slider-hero/js/helper.js/wp-content/plugins/slider-hero/js/admin.js/wp-content/plugins/slider-hero/css/font-awesome.min.css/wp-content/plugins/slider-hero/css/admin.css/wp-content/plugins/slider-hero/css/slider_hero_pop.css/wp-content/plugins/slider-hero/css/hero-gradient.css+14 more/wp-content/plugins/slider-hero/js/qcld-tinymce-button.jsslider_hero.css?ver=slider_hero.css?ver=helper.js?ver=admin.js?ver=font-awesome.min.css?ver=admin.css?ver=slider_hero_pop.css?ver=hero-gradient.css?ver=animate.css?ver=chosen.css?ver=slider_hero_button.css?ver=jquery-letterfx.css?ver=particles.js?ver=particle_app.js?ver=jquery.slider_x.js?ver=jquery.changethewords2.js?ver=jquery-letterfx.js?ver=tinymce/tinymce.min.js?ver=add_popup.js?ver=ajax.js?ver=HTML / DOM Fingerprints
qcld-hero-sliderqc-hero-slider-wrapperqcld_sliderhero_admin_menu_pagesQCLD_TABLE_SLIDERSQCLD_TABLE_SLIDESQCLD_SLIDERHERO_PLUGIN_URLQCLD_SLIDERHERO_DEFAULT_IMAGESQCLD_SLIDERHERO_CSS+11 more[qcld_hero