
WebSlider Security & Risk Analysis
wordpress.org/plugins/web-sliderCreate stunning sliders and add wonderful images and videos without writing a single line of code.
Is WebSlider Safe to Use in 2026?
Generally Safe
Score 92/100WebSlider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'web-slider' v1.0 plugin presents a mixed security posture. On the positive side, it demonstrates good practices regarding output escaping, with 96% of its outputs being properly escaped. Additionally, the plugin has no recorded vulnerability history, which is a strong indicator of its current stability and the absence of publicly known exploits. The absence of dangerous functions and external HTTP requests further contributes to its security.
However, there are significant concerns arising from the static analysis. The plugin exposes a considerable attack surface with 5 entry points, of which 4 are unprotected, specifically AJAX handlers. This lack of authentication on a substantial portion of its entry points is a critical weakness. Furthermore, the taint analysis reveals 2 flows with unsanitized paths, flagged with high severity, indicating potential vulnerabilities that could be exploited if user input is not properly handled before being used in sensitive operations. The complete absence of nonce checks on AJAX handlers exacerbates this risk, making it easier for attackers to trigger these unsanitized flows.
While the plugin has a clean vulnerability history, this does not negate the present risks identified in the code analysis. The high number of unprotected AJAX handlers combined with the high-severity unsanitized taint flows represent a tangible threat. The plugin's strengths lie in its output sanitization and lack of known historical vulnerabilities, but these are overshadowed by the immediate risks of unprotected entry points and insecure data handling paths.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flows
- Missing nonce checks on AJAX
- Large attack surface without auth
WebSlider Security Vulnerabilities
WebSlider Release Timeline
WebSlider Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WebSlider Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
WebSlider Maintenance & Trust
Maintenance Signals
Community Trust
WebSlider Alternatives
Smart Slider 3
smart-slider-3
Responsive slider plugin to create sliders in visual editor easily. Build beautiful image slider, layer slider, video slider, post slider, and more.
Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider
ml-slider
Slider, gallery, carousel plugin for WordPress. Build your image slider, video slider, post slider, YouTube slider, or WooCommerce product slider.
SiteOrigin Widgets Bundle
so-widgets-bundle
Essential elements for modern websites. Add buttons, sliders, heroes, maps, images, carousels, features, icons, more. Create dynamic pages easily.
Prime Slider – Addons for Elementor
bdthemes-prime-slider-lite
Create responsive sliders using Elementor for hero sections, posts, logos, images, products, testimonials, and more.
The Post Grid – Shortcode, Gutenberg Blocks and Elementor Addon for Post Grid
the-post-grid
Display WordPress posts in beautiful grid, list, slider, and filter layouts. Works with Gutenberg, Elementor, Divi, and Shortcodes.
WebSlider Developer Profile
5 plugins · 20 total installs
How We Detect WebSlider
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/web-slider/css/admin-style.css/wp-content/plugins/web-slider/js/jquery.validate.min.js/wp-content/plugins/web-slider/css/bootstrap.min.css/wp-content/plugins/web-slider/js/bootstrap.min.js/wp-content/plugins/web-slider/css/style.css/wp-content/plugins/web-slider/css/animate.min.css/wp-content/plugins/web-slider/js/jquery.validate.min.js/wp-content/plugins/web-slider/js/bootstrap.min.jsweb-slider/css/admin-style.css?ver=web-slider/js/jquery.validate.min.js?ver=web-slider/css/bootstrap.min.css?ver=web-slider/js/bootstrap.min.js?ver=web-slider/css/style.css?ver=web-slider/css/animate.min.css?ver=HTML / DOM Fingerprints
techslideshow-wrappercarousel-indicatorscarousel-innercarousel-itemcarousel-captionanimatedfadeInLeftfadeInUp+9 moredata-bs-ridedata-bs-targetdata-bs-slide-toaria-currentaria-labeldata-bs-slide/wp-json/[Webslider]