
Product carousel for visual composer Security & Risk Analysis
wordpress.org/plugins/woo-product-carousel-2Woocommerce product slider Addons for Visual Composer. To create amazing product carousel/slider this plugin will help you.
Is Product carousel for visual composer Safe to Use in 2026?
Generally Safe
Score 85/100Product carousel for visual composer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "woo-product-carousel-2" v1.0.0 plugin exhibits a mixed security posture. On the positive side, it has no recorded vulnerabilities in its history and demonstrates good practice by using prepared statements for all SQL queries. The attack surface is also relatively small, with only two shortcodes identified as entry points and no unprotected handlers or routes. The absence of dangerous functions, file operations, and external HTTP requests (beyond one noted, which could be benign) further suggests a cautious approach to code development.
However, significant concerns arise from the static analysis. The most glaring issue is that 100% of the nine identified output locations are not properly escaped. This presents a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious code could be injected and executed in the user's browser. Additionally, the plugin lacks nonce checks and capability checks, meaning that actions triggered by its entry points might not be sufficiently authenticated or authorized, potentially allowing unauthorized users to perform actions or access sensitive data.
Given the lack of historical vulnerabilities, it's possible that the current version has remained undetected or that the identified code issues haven't been exploited in practice. However, the unescaped output and lack of authentication checks are fundamental security flaws that create a significant risk. While the plugin has strengths in its SQL handling and lack of historical issues, the critical weaknesses in output escaping and authentication necessitate caution.
Key Concerns
- 100% of outputs not properly escaped
- No nonce checks on entry points
- No capability checks on entry points
Product carousel for visual composer Security Vulnerabilities
Product carousel for visual composer Code Analysis
Output Escaping
Product carousel for visual composer Attack Surface
Shortcodes 2
WordPress Hooks 13
Maintenance & Trust
Product carousel for visual composer Maintenance & Trust
Maintenance Signals
Community Trust
Product carousel for visual composer Alternatives
Amazing Shortcodes for Visual Composer
amazing-shortcodes-for-visual-composer
Amazing Shortcodes For Visual Composer wordpress is an impressive modern shortcode collections.
Mega Addons For WPBakery Page Builder
mega-addons-for-visual-composer
34+ Addons WPBakery extension, Beautifully designed unique elements, Includes Premium quality addons For WPBakery Page Builder.
Twenty20 Image Before-After
twenty20
Professional before & after image comparison slider for WordPress. Create engaging visual comparisons with an intuitive drag & drop interface.
Product Slider, Product Carousel and Product Grid Gallery for WooCommerce – WooProduct Slider
woo-product-slider
Display your WooCommerce products in a responsive Product Slider, Product Carousel, or Product Grid Gallery with easy customization.
Video Background
video-background
Easily assign a video background to any element on your WordPress pages or posts. Now compatible with WPBakery (Visual Composer) and SiteOrigin Page B …
Product carousel for visual composer Developer Profile
1 plugin · 0 total installs
How We Detect Product carousel for visual composer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-product-carousel-2/admin/css/wc_product_carousel-admin.css/wp-content/plugins/woo-product-carousel-2/admin/js/wc_product_carousel-admin.jswc_product_carousel-adminwc_product_carousel-adminHTML / DOM Fingerprints
wc-product-carousel-admin-wrap