
Vertical scroll slideshow gallery v2 Security & Risk Analysis
wordpress.org/plugins/vertical-scroll-slideshow-gallery-v2Vertical scroll slideshow gallery plugin will create the vertical scrolling image slideshow gallery on the wordpress widget.
Is Vertical scroll slideshow gallery v2 Safe to Use in 2026?
Use With Caution
Score 63/100Vertical scroll slideshow gallery v2 has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The plugin 'vertical-scroll-slideshow-gallery-v2' v9.1 exhibits a mixed security posture. On the positive side, it demonstrates good practices with a high percentage of SQL queries using prepared statements and a limited attack surface with only one shortcode entry point. The absence of file operations and external HTTP requests further mitigates certain attack vectors. However, concerns arise from the low percentage of properly escaped output (39%), which can leave the application vulnerable to cross-site scripting (XSS) attacks. The presence of one unpatched medium severity CVE related to SQL injection, despite the general use of prepared statements, is a significant concern and indicates a historical weakness in sanitizing inputs for SQL queries. This suggests that while the developers may be using prepared statements for most queries, there's a specific instance or type of input that still allows for injection, and this has not been addressed.
Overall, while the plugin has strengths in its limited attack surface and proper SQL handling in most cases, the persistent SQL injection vulnerability and the high rate of unescaped output represent significant risks. The vulnerability history, particularly the single medium CVE which remains unpatched, suggests a potential lack of rigorous security testing or a delay in addressing reported issues. Users should be cautious due to the unpatched SQL injection vulnerability and the potential for XSS due to insufficient output escaping.
Key Concerns
- Unpatched medium severity CVE
- Low percentage of properly escaped output
Vertical scroll slideshow gallery v2 Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Vertical scroll slideshow gallery v2 <= 9.1 - Authenticated (Contributor+) SQL Injection
Vertical scroll slideshow gallery v2 Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Vertical scroll slideshow gallery v2 Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Vertical scroll slideshow gallery v2 Maintenance & Trust
Maintenance Signals
Community Trust
Vertical scroll slideshow gallery v2 Alternatives
GPP Slideshow
gpp-slideshow
A minimalist slideshow plugin that creates a new gallery post type. Add slideshows to widgets, posts, pages and gallery posts.
WP Bootstrap Carousel
wp-bootstrap-carousel
A simple, straightforward implementation of the Twitter Bootstrap Carousel in WordPress.
Simple Slider
simple-slider
Create and Manage simple slideshows using images in WordPress media system
Coin Slider 4 WordPress
coin-slider-4-wp
Coin Slider 4 WP is Wordpress plugin for creating image gallery with unique transition effects of featured posts. You can choose between three types o …
WPJaipho Mobile Gallery
wpjaipho
WPJaipho extends native Wordpress image gallery, NextGEN 1.x and NextCellent Gallery with optimized support for mobile users
Vertical scroll slideshow gallery v2 Developer Profile
52 plugins · 19K total installs
How We Detect Vertical scroll slideshow gallery v2
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/vertical-scroll-slideshow-gallery-v2/style.css/wp-content/plugins/vertical-scroll-slideshow-gallery-v2/script.js/wp-content/plugins/vertical-scroll-slideshow-gallery-v2/script.jsvertical-scroll-slideshow-gallery-v2/style.css?ver=vertical-scroll-slideshow-gallery-v2/script.js?ver=HTML / DOM Fingerprints
hsas-widget<!-- Vertical scroll slideshow gallery v2 -->id="vs2_main"id="vs2_first"id="vs2_second"id="vs2_main2"id="vs2_first2"id="vs2_second2"vs2_slideimagesvs2_scrollerwidthvs2_scrollerheightvs2_pausebetweenimagesiedom[vertical-scroll-slideshow-gallery group=No records found, please check your short code