Affiliate Product Review Security & Risk Analysis

wordpress.org/plugins/affiliate-product-review

Affiliate Product Review is a powerful plugin you can add Easily turn Product Review , pros and cons, affiliate links into blog posts!

10 active installs v1.0.0 PHP 7.0+ WP 5.0+ Updated Unknown
affiliateproductproduct-reviewreview
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Affiliate Product Review Safe to Use in 2026?

Generally Safe

Score 100/100

Affiliate Product Review has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "affiliate-product-review" plugin v1.0.0 exhibits a strong security posture based on the provided static analysis. The complete absence of an attack surface, including AJAX handlers, REST API routes, shortcodes, and cron events, significantly reduces the potential for external exploitation. Furthermore, the code signals indicate robust security practices such as the absence of dangerous functions, all SQL queries utilizing prepared statements, and a high percentage of properly escaped output. The lack of file operations and external HTTP requests further minimizes risk vectors.

However, a significant concern arises from the complete absence of nonce checks and capability checks. While the current analysis shows zero entry points, this lack of fundamental WordPress security mechanisms means that if any entry points were to be introduced in future versions or through other means (like direct function calls), they would be inherently unprotected. The fact that no vulnerabilities have been recorded in its history is a positive indicator of the developer's commitment to security or potentially the plugin's limited exposure. Overall, the plugin is currently very secure due to its minimal attack surface and good coding practices, but the absence of nonce and capability checks represents a critical potential weakness that should be addressed to ensure long-term security.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Affiliate Product Review Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Affiliate Product Review Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
16 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

89% escaped18 total outputs
Attack Surface

Affiliate Product Review Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionwp_enqueue_scriptsaffiliate-product-review.php:37
actioninitaffiliate-product-review.php:38
actionplugins_loadedaffiliate-product-review.php:40
filterthe_contentinclude\Frontend\Review.php:11
Maintenance & Trust

Affiliate Product Review Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedUnknown
PHP min version7.0
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Affiliate Product Review Developer Profile

Nazmun Sakib

5 plugins · 10 total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Affiliate Product Review

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/affiliate-product-review/assets/css/main-style.css
Version Parameters
affiliate-product-review/assets/css/main-style.css?ver=1.0

HTML / DOM Fingerprints

CSS Classes
apr-main-wrapperapr-containerapr-product-itemapr-product-topapr-product-titleapr-product-image-wrapperapr-product-imageapr-product-info+8 more
Data Attributes
data-product_imgdata-product_titledata-product_descdata-product_btndata-product_urldata-product_pros+1 more
FAQ

Frequently Asked Questions about Affiliate Product Review