Webdevez Testimonials Slider for Elementor Security & Risk Analysis

wordpress.org/plugins/webdevez-testimonials-slider-for-elementor

A powerful and customizable testimonial slider for Elementor, supporting both text and video testimonials with 4 unique layouts.

0 active installs v3.1 PHP 7.2+ WP 5.0+ Updated Mar 31, 2026
elementor-widgetslidertestimonialstext-testimonialsvideo-testimonials
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Webdevez Testimonials Slider for Elementor Safe to Use in 2026?

Generally Safe

Score 100/100

Webdevez Testimonials Slider for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The static analysis of the "webdevez-testimonials-slider-for-elementor" v3.1 plugin indicates a generally strong security posture. The plugin demonstrates excellent practices by having zero AJAX handlers, REST API routes, shortcodes, or cron events that lack proper authentication or permission checks. This significantly limits the potential attack surface. Furthermore, the code analysis shows no dangerous functions, no raw SQL queries (all using prepared statements), and a very high percentage of properly escaped output, which are all positive indicators for security. The absence of file operations and external HTTP requests further contributes to a reduced risk profile.

While the static analysis reveals no direct vulnerabilities like taint flows with unsanitized paths, the lack of nonce checks and capability checks across all identified entry points (albeit zero in this analysis) is a notable area for improvement. Ideally, even for internal functions or if the attack surface were larger, these checks would be present. The vulnerability history being completely clean is a positive sign, suggesting the developers have maintained a secure codebase over time. However, the complete absence of any vulnerability history doesn't automatically guarantee future security, and ongoing vigilance is always recommended.

In conclusion, the plugin exhibits many strengths, particularly in its limited attack surface and secure handling of data. The primary area of concern, though not directly evidenced as exploited in this version due to the zero attack surface, is the absence of explicit nonce and capability checks. This indicates good security practices for the current state but suggests a potential area of overlooked fundamental security mechanisms that could become relevant if new entry points are introduced or if the plugin evolves. The overall risk is currently assessed as low, but there's room for enhancing foundational security checks.

Key Concerns

  • No nonce checks identified
  • No capability checks identified
Vulnerabilities
None known

Webdevez Testimonials Slider for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Webdevez Testimonials Slider for Elementor Release Timeline

v3.1Current
Code Analysis
Analyzed Apr 16, 2026

Webdevez Testimonials Slider for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
60 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

97% escaped62 total outputs
Attack Surface

Webdevez Testimonials Slider for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionplugins_loadedwebdevez-testimonials.php:17
actionwp_enqueue_scriptswebdevez-testimonials.php:25
actionelementor/widgets/registerwebdevez-testimonials.php:31
Maintenance & Trust

Webdevez Testimonials Slider for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 31, 2026
PHP min version7.2
Downloads81

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Webdevez Testimonials Slider for Elementor Developer Profile

kishorrajpurohit

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Webdevez Testimonials Slider for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/webdevez-testimonials-slider-for-elementor/assets/css/swiper-bundle.min.css/wp-content/plugins/webdevez-testimonials-slider-for-elementor/assets/js/swiper-bundle.min.js/wp-content/plugins/webdevez-testimonials-slider-for-elementor/assets/css/style.css/wp-content/plugins/webdevez-testimonials-slider-for-elementor/assets/js/script.js
Script Paths
/wp-content/plugins/webdevez-testimonials-slider-for-elementor/assets/js/swiper-bundle.min.js/wp-content/plugins/webdevez-testimonials-slider-for-elementor/assets/js/script.js
Version Parameters
webdevez-testimonials-slider-for-elementor/assets/css/swiper-bundle.min.css?ver=webdevez-testimonials-slider-for-elementor/assets/js/swiper-bundle.min.js?ver=webdevez-testimonials-slider-for-elementor/assets/css/style.css?ver=webdevez-testimonials-slider-for-elementor/assets/js/script.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Webdevez Testimonials Slider for Elementor