Vertical Tab Slider Security & Risk Analysis

wordpress.org/plugins/vertical-tab-slider

A very attractive and cool looking tabbing slider which gives a user to rotate their images and description in slides with great effect.

50 active installs v1.2.2 PHP + WP 3.0+ Updated Aug 19, 2014
content-sliderimage-sliderslidertext-slidervertical-tab-slider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Vertical Tab Slider Safe to Use in 2026?

Generally Safe

Score 85/100

Vertical Tab Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11yr ago
Risk Assessment

The 'vertical-tab-slider' v1.2.2 plugin exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by not making external HTTP requests, performing file operations, or using dangerous functions. It also has a clean vulnerability history with no known CVEs, suggesting a track record of security consciousness. However, the static analysis reveals significant concerns, primarily related to output escaping. A substantial 94 outputs were found, and a concerning 0% of them are properly escaped. This lack of proper output escaping represents a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed within the WordPress admin or on the frontend, depending on where the plugin's output is rendered. While the attack surface is minimal and there are no immediate indicators of critical taint flows or raw SQL queries, the pervasive issue with output escaping is a serious weakness that attackers could exploit.

Key Concerns

  • 0% of outputs properly escaped
  • 0 Nonce checks present
  • 0 Capability checks present
Vulnerabilities
None known

Vertical Tab Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Vertical Tab Slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
94
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped94 total outputs
Attack Surface

Vertical Tab Slider Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[vtslider] vts-display.php:188
WordPress Hooks 3
actionadmin_initvtslider.php:19
actionwp_enqueue_scriptsvtslider.php:20
actionadmin_menuvtslider.php:48
Maintenance & Trust

Vertical Tab Slider Maintenance & Trust

Maintenance Signals

WordPress version tested3.9.40
Last updatedAug 19, 2014
PHP min version
Downloads9K

Community Trust

Rating78/100
Number of ratings7
Active installs50
Developer Profile

Vertical Tab Slider Developer Profile

WPTreasure

4 plugins · 2K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Vertical Tab Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/vertical-tab-slider/css/vtslider_admin.css/wp-content/plugins/vertical-tab-slider/js/vtslider_admin.js/wp-content/plugins/vertical-tab-slider/js/jquery.easing.js/wp-content/plugins/vertical-tab-slider/js/jquery.slidorion.js/wp-content/plugins/vertical-tab-slider/css/vtslider.css/wp-content/plugins/vertical-tab-slider/images/icon.png
Script Paths
/wp-content/plugins/vertical-tab-slider/js/vtslider_admin.js/wp-content/plugins/vertical-tab-slider/js/jquery.easing.js/wp-content/plugins/vertical-tab-slider/js/jquery.slidorion.js
Version Parameters
vtslider/style.css?ver=vtslider_admin.css?ver=jquery.easing.js?ver=jquery.slidorion.js?ver=vtslider.css?ver=

HTML / DOM Fingerprints

CSS Classes
vts_accordionvts_headervts_content
HTML Comments
<!-- Vertical Tab Slider Starts Here -->
Data Attributes
data-vtslider-options
JS Globals
jQuery
Shortcode Output
[vtslider]
FAQ

Frequently Asked Questions about Vertical Tab Slider