
WPB Product Slider for WooCommerce Security & Risk Analysis
wordpress.org/plugins/wpb-woocommerce-product-sliderDisplay WooCommerce products in a responsive slider or carousel with customizable layouts to boost engagement and improve product browsing.
Is WPB Product Slider for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100WPB Product Slider for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "wpb-woocommerce-product-slider" v2.3 exhibits a mixed security posture. On one hand, it demonstrates good practices with 100% of its SQL queries using prepared statements, no file operations, and no external HTTP requests. This suggests a degree of care in handling sensitive operations. However, significant concerns arise from the static analysis. The presence of the `create_function` dangerous function is a critical red flag, as it can lead to arbitrary code execution if improperly handled. Furthermore, only 75% of output is properly escaped, leaving potential for Cross-Site Scripting (XSS) vulnerabilities. The lack of nonce checks and capability checks on its single shortcode entry point is also a notable weakness, potentially allowing unauthorized actions or information leakage. The plugin's vulnerability history is clean, with no recorded CVEs, which is positive. However, this lack of history, coupled with the identified code weaknesses, could indicate a lack of extensive security auditing or a reliance on obscurity. In conclusion, while the plugin has some good security foundations, the identified dangerous function and potential for unescaped output, combined with the absence of robust authentication/authorization on its entry point, present real risks that need to be addressed.
Key Concerns
- Dangerous function create_function used
- Significant portion of output not escaped
- No nonce checks on entry points
- No capability checks on entry points
WPB Product Slider for WooCommerce Security Vulnerabilities
WPB Product Slider for WooCommerce Code Analysis
Dangerous Functions Found
Output Escaping
WPB Product Slider for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 14
Maintenance & Trust
WPB Product Slider for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
WPB Product Slider for WooCommerce Alternatives
Product Carousel Slider & Grid Ultimate for WooCommerce
woo-product-carousel-slider-and-grid-ultimate
The most intuitive solution to make your eCommerce site visually appealing. Create & customize WooCommerce product carousel, sliders, or grids easily
TWI Woocommerce Grid/Slider/Carousel Lite
twi-woocommerce-gridslidercarousel-lite
Requires PHP: 5.6 Stable tag: 2.0.0 License: GPLv3 License URI: http://www.gnu.org/licenses/agpl-3.0.html Simple, easy and super flexible Awesome Woo …
Product Views for WooCommerce – Product Slider, Grid, Ticker, List & Masonry
gs-woocommerce-products-slider
Transform Product Displays for Better Sales! Enhance your WooCommerce store with a stunning product slider!
WPMozo Product Carousel for WooCommerce
wpmozo-product-carousel-for-woocommerce
WPMozo Product Carousel for WooCommerce will let you display your store products in a carousel.
Woo Product Slider by Pangolin – Lite
woo-product-slider-by-pangolin-lite
An elegant WooCommerce product slider (widget & shortcode).
WPB Product Slider for WooCommerce Developer Profile
25 plugins · 40K total installs
How We Detect WPB Product Slider for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpb-woocommerce-product-slider/assets/css/wpb-wps-admin.css/wp-content/plugins/wpb-woocommerce-product-slider/assets/js/wpb-wps-admin.js/wp-content/plugins/wpb-woocommerce-product-slider/assets/js/wpb-wps-admin.jswpb-wps-admin.css?ver=wpb-wps-admin.js?ver=HTML / DOM Fingerprints
wpb-about-wrapwpb-wps-discount-noticewpb_buttonwpb_button_lgwpb_button_successwpb_button_warningwpb-about-textwpb_wps_pro_discount_dismissed[wpb_product_slider]