
Testimonial – Testimonial Slider and Showcase Plugin Security & Risk Analysis
wordpress.org/plugins/testimonial-slider-and-showcaseDisplay customer testimonials beautifully with responsive slider and grid layouts. Build trust and boost conversions with this WordPress testimonial p …
Is Testimonial – Testimonial Slider and Showcase Plugin Safe to Use in 2026?
Generally Safe
Score 99/100Testimonial – Testimonial Slider and Showcase Plugin has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The static analysis of 'testimonial-slider-and-showcase' v2.4.1 presents a generally positive security posture based on code signals. The plugin demonstrates good practices by having zero dangerous functions, no raw SQL queries (all use prepared statements), and all output appears to be properly escaped. Furthermore, there are no identified file operations or external HTTP requests, and the plugin does not appear to expose a broad attack surface through typical entry points like AJAX handlers, REST API routes, shortcodes, or cron events without proper checks.
However, the vulnerability history is a significant concern. With a total of two known CVEs, both categorized as medium severity and related to Missing Authorization and Cross-site Scripting, this indicates a past pattern of exploitable flaws. The fact that these vulnerabilities were addressed suggests the developers are responsive, but the existence of past issues, even if currently patched, warrants caution. The lack of current unpatched vulnerabilities is a positive sign, but the historical context cannot be ignored.
In conclusion, while the current version's code analysis shows strong adherence to secure coding practices, the plugin's history of security vulnerabilities, particularly those involving authorization and XSS, necessitates ongoing vigilance. The absence of an attack surface in the analyzed components is a significant strength, but the historical context means a medium-risk assessment is appropriate, leaning on the potential for future issues or overlooked areas given past discoveries.
Key Concerns
- Total known CVEs (2 medium)
- Bundled outdated library (Select2)
- No capability checks detected
- No nonce checks detected
Testimonial – Testimonial Slider and Showcase Plugin Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Testimonial Slider <= 2.3.6 - Missing Authorization to Authenticated (Author+) Settings Update
Testimonial Slider <= 2.2.6 - Stored Cross-Site Scripting
Testimonial – Testimonial Slider and Showcase Plugin Release Timeline
Testimonial – Testimonial Slider and Showcase Plugin Code Analysis
Bundled Libraries
Testimonial – Testimonial Slider and Showcase Plugin Attack Surface
Maintenance & Trust
Testimonial – Testimonial Slider and Showcase Plugin Maintenance & Trust
Maintenance Signals
Community Trust
Testimonial – Testimonial Slider and Showcase Plugin Alternatives
Solid Testimonials – Testimonial Slider, Video Testimonials & Customer Reviews
gs-testimonial
Showcase and automate customer reviews with ease - sliders, grids, filters, and more to boost trust and sales.
Testimonial – Responsive Testimonials Showcase
testimonial-by-weblizar
Testimonial is the Responsive Testimonials Showcase Plugin for WordPress built to display testimonials, reviews or quotes in multiple ways on any page …
Super Testimonial – Testimonial & Customer Review Slider Plugin for WordPress
super-testimonial
Testimonials are easy to use the plugin that allows users to add Testimonials to the sidebar, as a widget, or to embed testimonials into a Page or Pos …
Review & testimonial widgets
trustmary
Add reviews to your website with Trustmary’s review and testimonial widgets: Google Review Widget, Facebook Review Widget, Tripadvisor Review Widget, …
Video Testimonial slider
video-testimonial-slider
Video Testimonial Slider plugin for WordPress website. Using plugin to display client Review and Testimonial with video popup through shortcode.
Testimonial – Testimonial Slider and Showcase Plugin Developer Profile
16 plugins · 214K total installs
How We Detect Testimonial – Testimonial Slider and Showcase Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/testimonial-slider-and-showcase/assets/css/owl.carousel.min.css/wp-content/plugins/testimonial-slider-and-showcase/assets/css/slick.css/wp-content/plugins/testimonial-slider-and-showcase/assets/css/testimonial-slider-frontend.css/wp-content/plugins/testimonial-slider-and-showcase/assets/js/custom.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/frontend.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/isotope.pkgd.min.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/owl.carousel.min.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/slick.min.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/custom.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/frontend.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/isotope.pkgd.min.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/owl.carousel.min.js/wp-content/plugins/testimonial-slider-and-showcase/assets/js/slick.min.jstestimonial-slider-and-showcase/assets/css/owl.carousel.min.css?ver=testimonial-slider-and-showcase/assets/css/slick.css?ver=testimonial-slider-and-showcase/assets/css/testimonial-slider-frontend.css?ver=testimonial-slider-and-showcase/assets/js/custom.js?ver=testimonial-slider-and-showcase/assets/js/frontend.js?ver=testimonial-slider-and-showcase/assets/js/isotope.pkgd.min.js?ver=testimonial-slider-and-showcase/assets/js/owl.carousel.min.js?ver=testimonial-slider-and-showcase/assets/js/slick.min.js?ver=HTML / DOM Fingerprints
rt-testimonial-slider-wrapperrt-testimonial-content-innerrt-testimonial-slider-activert-testimonial-slider-navrt-testimonial-grid-wrapperrt-testimonial-grid-itemrt-testimonial-slider-wraprt-testimonial-img-wrap+29 more<!-- RT Testimonial Slider And Showcase by RadiusTheme -->data-dotsdata-navdata-loopdata-autoplaydata-autoplay-timeoutdata-smart-speed+19 moreTSSFrontend[testimonial_slider][testimonial_grid]