Slider X Woo Security & Risk Analysis

wordpress.org/plugins/slider-x-woo

Multipurpose product slider for WooCommerce

0 active installs v1.0.0 PHP + WP 4.6+ Updated Oct 23, 2022
carouselproduct-slidersliderwoocommerce-sliderwp-slider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Slider X Woo Safe to Use in 2026?

Generally Safe

Score 85/100

Slider X Woo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The plugin "slider-x-woo" v1.0.0 exhibits a generally strong security posture based on the static analysis. A significant positive aspect is the complete absence of unpatched CVEs and a history devoid of recorded vulnerabilities, suggesting good development practices and diligent maintenance. The code also demonstrates a commendable reliance on prepared statements for all SQL queries and a high percentage of properly escaped output, minimizing risks associated with SQL injection and cross-site scripting.

However, some areas warrant attention. The presence of 10 AJAX handlers, while all appearing to have authentication checks, still represents a considerable attack surface. Furthermore, the taint analysis revealed 4 flows with unsanitized paths, although fortunately, these did not escalate to critical or high severity. This indicates a potential, albeit seemingly low, risk of unintended data handling or path traversal vulnerabilities that could be exploited under specific conditions. The external HTTP requests, while not inherently risky, should be monitored for any sensitive data leakage or susceptibility to man-in-the-middle attacks if not handled securely.

In conclusion, while the plugin has a clean vulnerability history and employs many secure coding practices, the presence of unsanitized paths in taint analysis and a notable number of AJAX endpoints present minor security concerns. These, combined with the external HTTP requests, suggest a need for continued vigilance and potentially further code review to ensure all potential risks are mitigated.

Key Concerns

  • Flows with unsanitized paths
  • External HTTP requests found
  • 10 AJAX handlers without explicit auth check mention
Vulnerabilities
None known

Slider X Woo Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Slider X Woo Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
416
1146 escaped
Nonce Checks
24
Capability Checks
6
File Operations
0
External Requests
4
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

73% escaped1562 total outputs
Data Flows
4 unsanitized

Data Flow Analysis

10 flows4 with unsanitized paths
manage_permanent_dismissible (includes\sdk\classes\class-client.php:108)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Slider X Woo Attack Surface

Entry Points10
Unprotected0

AJAX Handlers 10

authwp_ajax_pbsettings-get-iconsincludes\sdk\settings\functions\actions.php:53
authwp_ajax_pbsettings-exportincludes\sdk\settings\functions\actions.php:91
authwp_ajax_pbsettings-importincludes\sdk\settings\functions\actions.php:128
authwp_ajax_pbsettings-resetincludes\sdk\settings\functions\actions.php:156
authwp_ajax_pbsettings-chosenincludes\sdk\settings\functions\actions.php:196
authwp_ajax_pbsettings-get-iconsslider-x-woo\includes\sdk\settings\functions\actions.php:53
authwp_ajax_pbsettings-exportslider-x-woo\includes\sdk\settings\functions\actions.php:91
authwp_ajax_pbsettings-importslider-x-woo\includes\sdk\settings\functions\actions.php:128
authwp_ajax_pbsettings-resetslider-x-woo\includes\sdk\settings\functions\actions.php:156
authwp_ajax_pbsettings-chosenslider-x-woo\includes\sdk\settings\functions\actions.php:196
WordPress Hooks 116
filtermanage_woc_hour_posts_columnsincludes\classes\class-columns.php:18
actionmanage_woc_hour_posts_custom_columnincludes\classes\class-columns.php:19
filterpost_row_actionsincludes\classes\class-columns.php:20
filtermonths_dropdown_resultsincludes\classes\class-columns.php:21
actioninitincludes\classes\class-hooks.php:23
filteradmin_footer_textincludes\classes\class-hooks.php:24
filterpost_updated_messagesincludes\classes\class-hooks.php:25
actionin_admin_headerincludes\classes\class-hooks.php:27
actionsliderxwoo_after_sliderincludes\classes\class-hooks.php:28
actionadmin_print_footer_scriptsincludes\classes\class-post-meta.php:25
actionadmin_menuincludes\classes\class-post-meta.php:26
actionadd_meta_boxesincludes\classes\class-post-meta.php:27
actionadmin_initincludes\sdk\classes\class-client.php:60
actioninitincludes\sdk\classes\class-notifications.php:31
actionadmin_noticesincludes\sdk\classes\class-notifications.php:32
actionwp_enqueue_scriptsincludes\sdk\settings\classes\abstract.class.php:21
actionadmin_menuincludes\sdk\settings\classes\admin-options.class.php:107
actionadmin_bar_menuincludes\sdk\settings\classes\admin-options.class.php:108
actionnetwork_admin_menuincludes\sdk\settings\classes\admin-options.class.php:112
filteradmin_footer_textincludes\sdk\settings\classes\admin-options.class.php:493
actionadd_meta_boxes_commentincludes\sdk\settings\classes\comment-options.class.php:40
actionedit_commentincludes\sdk\settings\classes\comment-options.class.php:41
actioncustomize_registerincludes\sdk\settings\classes\customize-options.class.php:43
actioncustomize_save_afterincludes\sdk\settings\classes\customize-options.class.php:44
actionwp_enqueue_scriptsincludes\sdk\settings\classes\customize-options.class.php:48
actionadd_meta_boxesincludes\sdk\settings\classes\metabox-options.class.php:52
actionsave_postincludes\sdk\settings\classes\metabox-options.class.php:53
actionedit_attachmentincludes\sdk\settings\classes\metabox-options.class.php:54
actionwp_nav_menu_item_custom_fieldsincludes\sdk\settings\classes\nav-menu-options.class.php:32
actionwp_update_nav_menu_itemincludes\sdk\settings\classes\nav-menu-options.class.php:33
filterwp_edit_nav_menu_walkerincludes\sdk\settings\classes\nav-menu-options.class.php:35
actionadmin_initincludes\sdk\settings\classes\profile-options.class.php:32
actionshow_user_profileincludes\sdk\settings\classes\profile-options.class.php:44
actionedit_user_profileincludes\sdk\settings\classes\profile-options.class.php:45
actionpersonal_options_updateincludes\sdk\settings\classes\profile-options.class.php:47
actionedit_user_profile_updateincludes\sdk\settings\classes\profile-options.class.php:48
actionafter_setup_themeincludes\sdk\settings\classes\setup.class.php:73
actioninitincludes\sdk\settings\classes\setup.class.php:74
actionswitch_themeincludes\sdk\settings\classes\setup.class.php:75
actionadmin_enqueue_scriptsincludes\sdk\settings\classes\setup.class.php:76
actionwp_enqueue_scriptsincludes\sdk\settings\classes\setup.class.php:77
actionwp_headincludes\sdk\settings\classes\setup.class.php:78
filteradmin_body_classincludes\sdk\settings\classes\setup.class.php:79
actionadmin_footerincludes\sdk\settings\classes\shortcode-options.class.php:49
actioncustomize_controls_print_footer_scriptsincludes\sdk\settings\classes\shortcode-options.class.php:50
actionelementor/editor/before_enqueue_scriptsincludes\sdk\settings\classes\shortcode-options.class.php:61
actionelementor/editor/footerincludes\sdk\settings\classes\shortcode-options.class.php:62
actionelementor/editor/footerincludes\sdk\settings\classes\shortcode-options.class.php:63
actionenqueue_block_editor_assetsincludes\sdk\settings\classes\shortcode-options.class.php:311
actionmedia_buttonsincludes\sdk\settings\classes\shortcode-options.class.php:315
actionadmin_initincludes\sdk\settings\classes\taxonomy-options.class.php:43
actionadmin_footerincludes\sdk\settings\fields\icon\icon.php:41
actioncustomize_controls_print_footer_scriptsincludes\sdk\settings\fields\icon\icon.php:42
actionadmin_print_footer_scriptsincludes\sdk\settings\fields\link\link.php:65
actionprint_default_editor_scriptsincludes\sdk\settings\fields\wp_editor\wp_editor.php:62
filtermanage_woc_hour_posts_columnsslider-x-woo\includes\classes\class-columns.php:18
actionmanage_woc_hour_posts_custom_columnslider-x-woo\includes\classes\class-columns.php:19
filterpost_row_actionsslider-x-woo\includes\classes\class-columns.php:20
filtermonths_dropdown_resultsslider-x-woo\includes\classes\class-columns.php:21
actioninitslider-x-woo\includes\classes\class-hooks.php:23
filteradmin_footer_textslider-x-woo\includes\classes\class-hooks.php:24
filterpost_updated_messagesslider-x-woo\includes\classes\class-hooks.php:25
actionin_admin_headerslider-x-woo\includes\classes\class-hooks.php:27
actionsliderxwoo_after_sliderslider-x-woo\includes\classes\class-hooks.php:28
actionadmin_print_footer_scriptsslider-x-woo\includes\classes\class-post-meta.php:25
actionadmin_menuslider-x-woo\includes\classes\class-post-meta.php:26
actionadd_meta_boxesslider-x-woo\includes\classes\class-post-meta.php:27
actionadmin_initslider-x-woo\includes\sdk\classes\class-client.php:60
actioninitslider-x-woo\includes\sdk\classes\class-notifications.php:31
actionadmin_noticesslider-x-woo\includes\sdk\classes\class-notifications.php:32
actionwp_enqueue_scriptsslider-x-woo\includes\sdk\settings\classes\abstract.class.php:21
actionadmin_menuslider-x-woo\includes\sdk\settings\classes\admin-options.class.php:107
actionadmin_bar_menuslider-x-woo\includes\sdk\settings\classes\admin-options.class.php:108
actionnetwork_admin_menuslider-x-woo\includes\sdk\settings\classes\admin-options.class.php:112
filteradmin_footer_textslider-x-woo\includes\sdk\settings\classes\admin-options.class.php:493
actionadd_meta_boxes_commentslider-x-woo\includes\sdk\settings\classes\comment-options.class.php:40
actionedit_commentslider-x-woo\includes\sdk\settings\classes\comment-options.class.php:41
actioncustomize_registerslider-x-woo\includes\sdk\settings\classes\customize-options.class.php:43
actioncustomize_save_afterslider-x-woo\includes\sdk\settings\classes\customize-options.class.php:44
actionwp_enqueue_scriptsslider-x-woo\includes\sdk\settings\classes\customize-options.class.php:48
actionadd_meta_boxesslider-x-woo\includes\sdk\settings\classes\metabox-options.class.php:52
actionsave_postslider-x-woo\includes\sdk\settings\classes\metabox-options.class.php:53
actionedit_attachmentslider-x-woo\includes\sdk\settings\classes\metabox-options.class.php:54
actionwp_nav_menu_item_custom_fieldsslider-x-woo\includes\sdk\settings\classes\nav-menu-options.class.php:32
actionwp_update_nav_menu_itemslider-x-woo\includes\sdk\settings\classes\nav-menu-options.class.php:33
filterwp_edit_nav_menu_walkerslider-x-woo\includes\sdk\settings\classes\nav-menu-options.class.php:35
actionadmin_initslider-x-woo\includes\sdk\settings\classes\profile-options.class.php:32
actionshow_user_profileslider-x-woo\includes\sdk\settings\classes\profile-options.class.php:44
actionedit_user_profileslider-x-woo\includes\sdk\settings\classes\profile-options.class.php:45
actionpersonal_options_updateslider-x-woo\includes\sdk\settings\classes\profile-options.class.php:47
actionedit_user_profile_updateslider-x-woo\includes\sdk\settings\classes\profile-options.class.php:48
actionafter_setup_themeslider-x-woo\includes\sdk\settings\classes\setup.class.php:73
actioninitslider-x-woo\includes\sdk\settings\classes\setup.class.php:74
actionswitch_themeslider-x-woo\includes\sdk\settings\classes\setup.class.php:75
actionadmin_enqueue_scriptsslider-x-woo\includes\sdk\settings\classes\setup.class.php:76
actionwp_enqueue_scriptsslider-x-woo\includes\sdk\settings\classes\setup.class.php:77
actionwp_headslider-x-woo\includes\sdk\settings\classes\setup.class.php:78
filteradmin_body_classslider-x-woo\includes\sdk\settings\classes\setup.class.php:79
actionadmin_footerslider-x-woo\includes\sdk\settings\classes\shortcode-options.class.php:49
actioncustomize_controls_print_footer_scriptsslider-x-woo\includes\sdk\settings\classes\shortcode-options.class.php:50
actionelementor/editor/before_enqueue_scriptsslider-x-woo\includes\sdk\settings\classes\shortcode-options.class.php:61
actionelementor/editor/footerslider-x-woo\includes\sdk\settings\classes\shortcode-options.class.php:62
actionelementor/editor/footerslider-x-woo\includes\sdk\settings\classes\shortcode-options.class.php:63
actionenqueue_block_editor_assetsslider-x-woo\includes\sdk\settings\classes\shortcode-options.class.php:311
actionmedia_buttonsslider-x-woo\includes\sdk\settings\classes\shortcode-options.class.php:315
actionadmin_initslider-x-woo\includes\sdk\settings\classes\taxonomy-options.class.php:43
actionadmin_footerslider-x-woo\includes\sdk\settings\fields\icon\icon.php:41
actioncustomize_controls_print_footer_scriptsslider-x-woo\includes\sdk\settings\fields\icon\icon.php:42
actionadmin_print_footer_scriptsslider-x-woo\includes\sdk\settings\fields\link\link.php:65
actionprint_default_editor_scriptsslider-x-woo\includes\sdk\settings\fields\wp_editor\wp_editor.php:62
actionplugins_loadedslider-x-woo\slider-x-woo.php:71
actionadmin_enqueue_scriptsslider-x-woo\slider-x-woo.php:155
actionwp_enqueue_scriptsslider-x-woo\slider-x-woo.php:156
actionplugins_loadedslider-x-woo.php:71
actionadmin_enqueue_scriptsslider-x-woo.php:155
actionwp_enqueue_scriptsslider-x-woo.php:156
Maintenance & Trust

Slider X Woo Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedOct 23, 2022
PHP min version
Downloads616

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Slider X Woo Developer Profile

pluginbazar

5 plugins · 100 total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Slider X Woo

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/slider-x-woo/assets/slick.css/wp-content/plugins/slider-x-woo/assets/front/css/style.css/wp-content/plugins/slider-x-woo/assets/hint.min.css/wp-content/plugins/slider-x-woo/assets/admin/css/style.css
Script Paths
/wp-content/plugins/slider-x-woo/assets/slick.min.js/wp-content/plugins/slider-x-woo/assets/front/js/scripts.js/wp-content/plugins/slider-x-woo/assets/admin/js/scripts.js
Version Parameters
slider-x-woo/assets/slick.css?ver=slider-x-woo/assets/front/css/style.css?ver=slider-x-woo/assets/admin/css/style.css?ver=

HTML / DOM Fingerprints

JS Globals
window.sliderxwoovar sliderxwoo
FAQ

Frequently Asked Questions about Slider X Woo