
WPB Category Slider for WooCommerce – Product Categories Carousel & Grid Security & Risk Analysis
wordpress.org/plugins/wpb-woocommerce-category-sliderDisplay WooCommerce product categories in responsive sliders and grids to boost navigation, engagement, and product discovery.
Is WPB Category Slider for WooCommerce – Product Categories Carousel & Grid Safe to Use in 2026?
Mostly Safe
Score 76/100WPB Category Slider for WooCommerce – Product Categories Carousel & Grid is generally safe to use. 1 past CVE were resolved. Keep it updated.
The "wpb-woocommerce-category-slider" plugin v1.7.2 exhibits a mixed security posture. While the static analysis indicates a relatively small attack surface with no unprotected entry points and a high percentage of SQL queries using prepared statements, several concerning code signals and a significant vulnerability history raise red flags. The presence of the dangerous `create_function` is a known risk, and the 100% usage of prepared statements for SQL is positive, but the output escaping is not perfect at 81%, leaving room for potential cross-site scripting (XSS) vulnerabilities if sensitive data is not handled carefully. The taint analysis, however, shows no detected flows, which is a positive indicator for that specific analysis method.
The vulnerability history is a major concern. With one known high-severity CVE related to Improper Control of Filename for Include/Require Statement in PHP Program (PHP Remote File Inclusion), and it being currently unpatched, this presents a critical risk. The recurrence of this vulnerability type suggests a persistent coding flaw that attackers could exploit for remote code execution. The last vulnerability being in the future (2025) might be a data anomaly, but the fact that there is an unpatched high-severity CVE in the present is undeniable. While the plugin has strengths in its limited attack surface and prepared SQL statements, the unpatched RFI vulnerability severely compromises its overall security, making it a high-risk option for deployment without immediate patching or mitigation.
Key Concerns
- Unpatched High Severity CVE (RFI)
- Dangerous function usage (create_function)
- Output escaping is not 100%
WPB Category Slider for WooCommerce – Product Categories Carousel & Grid Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WPB Category Slider for WooCommerce <= 1.71 - Authenticated (Contributor+) Local File Inclusion
WPB Category Slider for WooCommerce – Product Categories Carousel & Grid Code Analysis
Dangerous Functions Found
Output Escaping
WPB Category Slider for WooCommerce – Product Categories Carousel & Grid Attack Surface
Shortcodes 1
WordPress Hooks 24
Maintenance & Trust
WPB Category Slider for WooCommerce – Product Categories Carousel & Grid Maintenance & Trust
Maintenance Signals
Community Trust
WPB Category Slider for WooCommerce – Product Categories Carousel & Grid Alternatives
Product Category Slider for Elementor
woo-category-slider-for-elementor
Display Product Category Slider For Elementor aesthetically in a slider to your store and boost conversion rate! Highly customizable.
Product Category Slider & Grid for WooCommerce – WooCategory
woo-category-slider-grid
Display product categories in responsive sliders or grids to showcase them effectively on your WooCommerce store and improve shoppers' navigation.
Product Slider, Product Grid, Product Masonry
woocommerce-products-slider
Fully responsive and mobile ready Carousel Slider for your woo-commerce product. unlimited slider anywhere via short-codes and easy admin setting.
Banner Management, Product Slider, Product Carousel for WooCommerce
banner-management-for-woocommerce
Allows you to set single or multiple banners on the WooCommerce category and page.
Product Category Slider for WooCommerce
woo-category-slider-by-pluginever
Showcase Your WooCommerce store's categories/subcategories in a beautiful slider.
WPB Category Slider for WooCommerce – Product Categories Carousel & Grid Developer Profile
25 plugins · 40K total installs
How We Detect WPB Category Slider for WooCommerce – Product Categories Carousel & Grid
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpb-woocommerce-category-slider/assets/css/frontend.min.css/wp-content/plugins/wpb-woocommerce-category-slider/assets/js/frontend.min.js/wp-content/plugins/wpb-woocommerce-category-slider/admin/css/admin.css/wp-content/plugins/wpb-woocommerce-category-slider/assets/js/frontend.min.js/wp-content/plugins/wpb-woocommerce-category-slider/assets/css/frontend.min.css?ver=/wp-content/plugins/wpb-woocommerce-category-slider/assets/js/frontend.min.js?ver=HTML / DOM Fingerprints
wpb-category-sliderwpb-category-slider-wrapperdata-slide-itemsdata-slide-margindata-slide-navdata-slide-dotsdata-slide-loopdata-slide-autoplay+3 more[wpb_category_slider]