
WP Testimonial Carousel Security & Risk Analysis
wordpress.org/plugins/wp-testimonial-carouselWP Testimonial Carousel Plugin is for Add Testimonials with this Shortcode '[testimonials]'.
Is WP Testimonial Carousel Safe to Use in 2026?
Generally Safe
Score 100/100WP Testimonial Carousel has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-testimonial-carousel v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, all SQL queries utilizing prepared statements, and 100% proper output escaping are significant positive indicators. Furthermore, the plugin has no recorded vulnerability history, including CVEs, which suggests a history of secure development or a lack of discovered vulnerabilities.
However, several areas present potential concerns despite the current positive indicators. The complete lack of nonce checks and capability checks across all entry points, including the sole shortcode, is a notable weakness. While the attack surface is small and there are no unprotected AJAX handlers or REST API routes, the shortcode represents a potential entry point that could be exploited if it were to interact with sensitive data or functions in the future. The absence of taint analysis flows might simply mean no such flows were detected or the analysis was limited, rather than definitively indicating their absence.
In conclusion, wp-testimonial-carousel v1.0.0 appears to be developed with good security practices, particularly regarding data handling and output sanitization. Its clean vulnerability history is reassuring. Nevertheless, the missing security checks (nonces and capabilities) on its shortcode, even with a limited current attack surface, represent a foundational security gap that could become a risk if the plugin's functionality evolves or is integrated in more complex scenarios. This plugin is generally secure but could benefit from implementing standard WordPress security checks.
Key Concerns
- Missing nonce checks on shortcode
- Missing capability checks on shortcode
WP Testimonial Carousel Security Vulnerabilities
WP Testimonial Carousel Code Analysis
WP Testimonial Carousel Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
WP Testimonial Carousel Maintenance & Trust
Maintenance Signals
Community Trust
WP Testimonial Carousel Alternatives
WP Responsive Testimonial Slider
wp-responsive-testimonial-slider
WP Responsive Testimonial Slider Plugin is for Add Testimonials with this Shortcode '[testimonials]'.For More info please check this Link ht …
Real Testimonials – Testimonial Slider, Collect Customer Reviews and Video Testimonials
testimonial-free
A Customizable Testimonial plugin to Automate Collecting, Filtering, and Publishing Customer Reviews. Testimonial Slider, Grid & More to Grow Sales
Testimonial Grid and Testimonial Slider plus Carousel with Rotator Widget
wp-testimonial-with-widget
A quick, easy way to add and display responsive, clean client's testimonial on your website using a shortcode, widget or Gutenberg block.
Gutena Testimonial Slider
gutena-testimonial
This block allows you to display client testimonial slider on websites. This plugin provides a user-friendly interface to add, manage, and display tes …
Super Testimonial – Testimonial & Customer Review Slider Plugin for WordPress
super-testimonial
Testimonials are easy to use the plugin that allows users to add Testimonials to the sidebar, as a widget, or to embed testimonials into a Page or Pos …
WP Testimonial Carousel Developer Profile
3 plugins · 30 total installs
How We Detect WP Testimonial Carousel
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-testimonial-carousel/js/owl.carousel.min.js/wp-content/plugins/wp-testimonial-carousel/css/owl.carousel.css/wp-content/plugins/wp-testimonial-carousel/css/owl.theme.cssHTML / DOM Fingerprints
owl-carouselowl-themeitemdarkCyanowl-controlsowl-prevowl-nextid="owl-testimonial"jQuery<div id="owl-testimonial" class="owl-carousel">