
Testimonial Carousel For Elementor Security & Risk Analysis
wordpress.org/plugins/testimonials-carousel-elementorThe compact Testimonial Carousel for Elementor lets you show long text reviews in Pop-Up of Carousel Slider.
Is Testimonial Carousel For Elementor Safe to Use in 2026?
Generally Safe
Score 95/100Testimonial Carousel For Elementor has a strong security track record. Known vulnerabilities have been patched promptly.
The 'testimonials-carousel-elementor' v11.7.0 plugin exhibits a generally positive security posture based on the static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests is commendable. Furthermore, a very high percentage of output is properly escaped, and there are no reported unsanitized paths in taint analysis. The plugin also demonstrates good practices with a capability check present on its single AJAX handler.
However, the presence of four known medium-severity vulnerabilities in its history, specifically Cross-site Scripting and Missing Authorization, raises concerns. While none are currently unpatched, this history suggests a recurring pattern of potential input validation and authorization flaws. The absence of nonce checks on the AJAX handler is also a notable weakness, as it allows for potential CSRF attacks if malicious actors can trick users into triggering this endpoint.
In conclusion, while the current version appears to have addressed past vulnerabilities and employs several secure coding practices, the historical vulnerability data and the lack of nonce protection on the AJAX endpoint warrant careful consideration. Users should ensure they are always running the latest version to benefit from patches and be aware of the potential for CSRF if authorization checks are not robust enough.
Key Concerns
- Missing nonce checks on AJAX handler
- History of medium severity vulnerabilities (4)
Testimonial Carousel For Elementor Security Vulnerabilities
CVEs by Year
Severity Breakdown
4 total CVEs
Testimonial Carousel For Elementor <= 11.6.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets
Testimonial Carousel For Elementor <= 10.2.2 - Authenticated (Contributor+) Stored Cross-Site Scripting
Testimonial Carousel For Elementor <= 10.2.0 - Missing Authorization to Limited Setting Update
Testimonial Carousel For Elementor <= 10.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting
Testimonial Carousel For Elementor Code Analysis
Output Escaping
Data Flow Analysis
Testimonial Carousel For Elementor Attack Surface
AJAX Handlers 1
WordPress Hooks 10
Maintenance & Trust
Testimonial Carousel For Elementor Maintenance & Trust
Maintenance Signals
Community Trust
Testimonial Carousel For Elementor Alternatives
Piotnet Addons For Elementor
piotnet-addons-for-elementor
Piotnet Addons For Elementor (PAFE) adds many new features for Elementor
Ultimate Post Kit Addons for Elementor
ultimate-post-kit
Build your blogs and news sites with a feature-rich Elementor addon, offering 100+ elements for engaging layouts.
Responsive Owl Carousel for Elementor
responsive-owl-carousel-elementor
A highly customizable, powerful & responsive carousel plugin for Elementor page builder that is based on the Owl Carousel jQuery plugin.
Advanced Marquee Effect for Elementor
advanced-marquee-effect
Create smooth logo sliders, post sliders, and testimonial carousels in Elementor. No coding required.
Advanced Testimonial Carousel For Elementor
advanced-testimonial-carousel-for-elementor
Advanced Testimonial Carousel For Elementor. You can add image, name, describes, title, added Unlimited slider.
Testimonial Carousel For Elementor Developer Profile
6 plugins · 11K total installs
How We Detect Testimonial Carousel For Elementor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/testimonials-carousel-elementor/assets/css/testimonials-carousel-menu.min.css/wp-content/plugins/testimonials-carousel-elementor/assets/css/testimonials-carousel-editor.min.cssHTML / DOM Fingerprints
elementor-widget-testimonials-carousel-elementortestimonials-carousel-elementor-wraptst-carousel-wrappertst-carousel-controls-wrappertst-single-testimonial-itemtst-testimonial-contenttst-testimonial-metatst-testimonial-author-image+6 moredata-settingsTestimonialsCarouselElementor/wp-json/testimonials-carousel-elementor/v1/get-testimonials