WP Brand Logo Slider Security & Risk Analysis

wordpress.org/plugins/wp-brand-logo-slider

WP Brand Logo Slider is a wordpress plugin to display your brand logo or client logo on your WordPress website!

50 active installs v1.1.4 PHP + WP 4.0+ Updated Feb 24, 2019
brand-slidercarouselclient-logo-carousellogo-slidersponsors
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Brand Logo Slider Safe to Use in 2026?

Generally Safe

Score 85/100

WP Brand Logo Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The wp-brand-logo-slider plugin v1.1.4 exhibits a mixed security posture. On the positive side, it has no known historical vulnerabilities, uses prepared statements for all SQL queries, and has a small attack surface with no direct entry points found to be unprotected by default WordPress mechanisms. There are also no recorded critical or high severity taint flows, dangerous functions, or file operations, which are encouraging signs of a generally well-developed plugin from a security perspective.

However, significant concerns arise from the static code analysis. The most critical finding is that 100% of its output is not properly escaped. This presents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data displayed by the plugin could be maliciously crafted to execute arbitrary JavaScript in the user's browser. The absence of nonce checks and capability checks, while not directly tied to an exploit in this version, removes important layers of defense that are standard WordPress security practices, especially given the presence of a shortcode which can be a vector for user interaction.

While the plugin has a clean vulnerability history, this does not negate the current risks identified in the code. The lack of output escaping is a serious oversight that needs immediate attention. In conclusion, although the plugin appears to avoid common pitfalls like raw SQL or external requests, the widespread lack of output escaping creates a significant security weakness that could be exploited.

Key Concerns

  • Output escaping: 0% properly escaped
  • Nonce checks: 0
  • Capability checks: 0
Vulnerabilities
None known

WP Brand Logo Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

WP Brand Logo Slider Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

WP Brand Logo Slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped4 total outputs
Attack Surface

WP Brand Logo Slider Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[WPBLS-SLIDER] wp-brand-slider.php:133
WordPress Hooks 5
actioninitwp-brand-slider.php:74
actionwp_enqueue_scriptswp-brand-slider.php:86
actionadmin_enqueue_scriptswp-brand-slider.php:98
actionwp_footerwp-brand-slider.php:193
actionadmin_initwp-brand-slider.php:207
Maintenance & Trust

WP Brand Logo Slider Maintenance & Trust

Maintenance Signals

WordPress version tested5.1.22
Last updatedFeb 24, 2019
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs50
Developer Profile

WP Brand Logo Slider Developer Profile

Hasibul Islam Badsha

5 plugins · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Brand Logo Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-brand-logo-slider/css/wpbls.css/wp-content/plugins/wp-brand-logo-slider/css/wpbls-admin.css/wp-content/plugins/wp-brand-logo-slider/js/cp-active.js
Script Paths
/wp-content/plugins/wp-brand-logo-slider/js/jquery.flexisel.js

HTML / DOM Fingerprints

CSS Classes
flexisel
JS Globals
jQuery
Shortcode Output
<ul id="flexiselDemo2">
FAQ

Frequently Asked Questions about WP Brand Logo Slider