
Slider by 10Web – Responsive Image Slider Security & Risk Analysis
wordpress.org/plugins/slider-wdSlider by 10Web plugin is the perfect slider solution for Wordpress.
Is Slider by 10Web – Responsive Image Slider Safe to Use in 2026?
Generally Safe
Score 86/100Slider by 10Web – Responsive Image Slider has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The slider-wd plugin exhibits a mixed security posture, with some positive indicators but several significant areas of concern. While the plugin has no currently unpatched CVEs, its vulnerability history, with 10 known issues including two high-severity ones, suggests a recurring pattern of security weaknesses. The common vulnerability types of SQL Injection and Cross-site Scripting, coupled with the historical number of CVEs, indicate that the developers have struggled with secure coding practices in these areas.
The static analysis reveals a substantial attack surface with 14 entry points, of which 3 are unprotected. This lack of authentication on AJAX handlers is a critical vulnerability, as it allows unauthenticated users to trigger potentially harmful functionalities. Furthermore, the presence of the `unserialize` function without proper sanitization is a known risk for object injection vulnerabilities. The taint analysis highlights two high-severity flows with unsanitized paths, indicating potential for serious exploits. The low percentage of prepared statements (23%) and properly escaped output (11%) across a large number of SQL queries and outputs respectively, points to a general deficiency in secure data handling and presentation.
In conclusion, while the absence of unpatched vulnerabilities and the presence of some nonce and capability checks are positive signs, the plugin's history of vulnerabilities, unprotected entry points, risky function usage, and poor sanitization practices present a substantial risk. Users should exercise caution and consider the potential for exploitation due to these identified weaknesses.
Key Concerns
- Unprotected AJAX handlers
- High severity taint flows
- Dangerous function: unserialize
- Low percentage of prepared SQL statements
- Low percentage of proper output escaping
- High number of known CVEs
- High severity CVEs in history
Slider by 10Web – Responsive Image Slider Security Vulnerabilities
CVEs by Year
Severity Breakdown
10 total CVEs
Slider by 10Web <= 1.2.61 - Authenticated (Administrator+) Stored Cross-Site Scripting via Widget
Slider by 10Web <= 1.2.61 - Authenticated (Administrator+) Stored Cross-Site Scripting
Slider by 10Web <= 1.2.58 - Authenticated (Administrator+) Stored Cross-Site Scripting
Slider by 10Web – Responsive Image Slider <= 1.2.57 - Authenticated (Contributor+) SQL Injection via id Parameter
Slider by 10Web <= 1.2.56 - Authenticated (Editor+) Stored Cross-Site Scripting
Slider by 10Web <= 1.2.55 - Authenticated (Editor+) Stored Cross-Site Scripting
Slider by 10Web – Responsive Image Slider <= 1.2.54 - Reflected Cross-Site Scripting
Sliderby10Web <= 1.2.52 - Authenticated (Admin+) Cross-Site Scripting
Slider by 10Web <= 1.2.51 - Admin+ Stored Cross-Site Scripting
Slider by 10Web <= 1.2.35 - SQL Injection
Slider by 10Web – Responsive Image Slider Release Timeline
Slider by 10Web – Responsive Image Slider Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Slider by 10Web – Responsive Image Slider Attack Surface
AJAX Handlers 11
Shortcodes 3
WordPress Hooks 57
Maintenance & Trust
Slider by 10Web – Responsive Image Slider Maintenance & Trust
Maintenance Signals
Community Trust
Slider by 10Web – Responsive Image Slider Alternatives
Serious Slider
cryout-serious-slider
Serious Slider is a free highly efficient SEO friendly fully translatable accessibility ready image slider for WordPress. Seriously!
Ovation Elements
ovation-elements
Transform your site with captivating sliders. Perfect for beginners and advanced users. Create and customize with our ultimate slider plugin.
Your Simple Slider
your-simple-slider
Responsive slider plugin to create sliders in visual editor easily. Build beautiful image slider.
MaxSlider
maxslider
MaxSlider is a free WordPress slider plugin that lets you create responsive sliders for your website. Shortcode and Visual Composer support included.
Block Slider – Responsive Image Slider, Video Slider & Post Slider
block-slider
Create Responsive Sliders using WordPress Blocks. Image slider, video slider, YouTube slider, post slider, product slider, WooCommerce slider & more.
Slider by 10Web – Responsive Image Slider Developer Profile
9 plugins · 355K total installs
How We Detect Slider by 10Web – Responsive Image Slider
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/slider-wd/assets/css/wds-frontend.css/wp-content/plugins/slider-wd/assets/css/wds-player.css/wp-content/plugins/slider-wd/assets/css/wds-settings.css/wp-content/plugins/slider-wd/assets/js/wds-frontend.js/wp-content/plugins/slider-wd/assets/js/wds-settings.js/wp-content/plugins/slider-wd/assets/js/wds-frontend.js/wp-content/plugins/slider-wd/assets/js/wds-settings.js/wp-content/plugins/slider-wd/assets/js/wds-player.jsslider-wd/assets/css/wds-frontend.css?ver=slider-wd/assets/css/wds-player.css?ver=slider-wd/assets/css/wds-settings.css?ver=slider-wd/assets/js/wds-frontend.js?ver=slider-wd/assets/js/wds-player.js?ver=slider-wd/assets/js/wds-settings.js?ver=HTML / DOM Fingerprints
wds-containerwds-sliderwds-elementwds-slidewds-bulletswds-controlsdata-wds-optionsdata-slider-idwds_frontend_options[wds[SliderPreview