WP Tabular Post Slider Security & Risk Analysis

wordpress.org/plugins/wp-tabular-post-slider

The wp-tabular-post-slider allows you to show your posts by category which is organized in tabular form.

10 active installs v1.0 PHP + WP 3.0+ Updated May 14, 2015
category-sliderpost-by-categorypost-slidertabular-poststpsbc
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Tabular Post Slider Safe to Use in 2026?

Generally Safe

Score 85/100

WP Tabular Post Slider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "wp-tabular-post-slider" plugin version 1.0 presents a mixed security profile. On the positive side, there are no reported vulnerabilities (CVEs) in its history, and the static analysis shows no dangerous functions, no file operations, no external HTTP requests, and no taint flows indicating critical or high severity issues. All SQL queries are also properly prepared, which is a significant strength.

However, several areas raise concerns. The plugin has a lack of input validation and authorization checks on its single entry point, the shortcode. There are no nonce checks or capability checks whatsoever. Furthermore, a substantial 56% of output escaping is not properly handled, creating a significant risk of Cross-Site Scripting (XSS) vulnerabilities. The absence of taint analysis results might also suggest a very limited analysis scope or potentially an oversight, as a more comprehensive analysis might uncover issues.

While the plugin's vulnerability history is clean, this could be due to its age, limited adoption, or simply a lack of dedicated security audits targeting it. The reliance on the absence of known vulnerabilities is not a robust security strategy. The lack of any authorization or input validation on its sole entry point, combined with poor output escaping, makes this plugin a notable risk for XSS and potentially other injection attacks if user-supplied data is ever processed by the shortcode. The plugin's overall security posture is therefore weakened by these critical gaps.

Key Concerns

  • Unprotected shortcode entry point
  • Lack of nonce checks
  • Lack of capability checks
  • Significant unescaped output (56%)
Vulnerabilities
None known

WP Tabular Post Slider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

WP Tabular Post Slider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
18
23 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

56% escaped41 total outputs
Attack Surface

WP Tabular Post Slider Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[TPSBC] wp-tabular-post-slider.php:599
WordPress Hooks 6
actionadmin_menuwp-tabular-post-slider.php:29
actionadmin_initwp-tabular-post-slider.php:37
actionwp_enqueue_scriptswp-tabular-post-slider.php:56
actionwp_enqueue_scriptswp-tabular-post-slider.php:60
actionadmin_initwp-tabular-post-slider.php:120
actionwp_headwp-tabular-post-slider.php:597
Maintenance & Trust

WP Tabular Post Slider Maintenance & Trust

Maintenance Signals

WordPress version tested4.2.39
Last updatedMay 14, 2015
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

WP Tabular Post Slider Developer Profile

Mritunjay Datt Tiwari

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Tabular Post Slider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-tabular-post-slider/css/jquery-ui.css/wp-content/plugins/wp-tabular-post-slider/css/style.css/wp-content/plugins/wp-tabular-post-slider/inc/jquery.jcarousel.min.js/wp-content/plugins/wp-tabular-post-slider/inc/settings.js
Script Paths
/wp-content/plugins/wp-tabular-post-slider/inc/jquery.jcarousel.min.js/wp-content/plugins/wp-tabular-post-slider/inc/settings.js

HTML / DOM Fingerprints

CSS Classes
tpsbc
Data Attributes
name="plugin_options[clusters][]"name="next_nav_text"name="prev_nav_text"name="slider_speed"name="slider_animation"name="auto_slide"+3 more
Shortcode Output
[TPSBC]
FAQ

Frequently Asked Questions about WP Tabular Post Slider