Affiliate Reviews Security & Risk Analysis

wordpress.org/plugins/affiliate-reviews

Custom affiliate blocks for your product, casino, forex affiliate site, using your favorite theme!

200 active installs v1.0.7 PHP 7.1+ WP 5.8+ Updated Aug 16, 2025
affiliateblocksgridreviewstable
99
A · Safe
CVEs total1
Unpatched0
Last CVEJul 15, 2025
Download
Safety Verdict

Is Affiliate Reviews Safe to Use in 2026?

Generally Safe

Score 99/100

Affiliate Reviews has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Jul 15, 2025Updated 7mo ago
Risk Assessment

The "affiliate-reviews" v1.0.7 plugin exhibits a seemingly strong security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, file operations, external HTTP requests, and the perfect scores for output escaping are commendable. Furthermore, the lack of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. The taint analysis also indicates no identified flows with unsanitized paths, which is a positive sign.

Key Concerns

  • Missing nonce checks on AJAX
  • Missing capability checks
  • One medium severity vulnerability
Vulnerabilities
1

Affiliate Reviews Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-5845medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Affiliate Reviews <= 1.0.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via numColumns Parameter

Jul 15, 2025 Patched in 1.0.7 (38d)
Code Analysis
Analyzed Mar 16, 2026

Affiliate Reviews Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
108 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped108 total outputs
Attack Surface

Affiliate Reviews Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 15
actionadmin_enqueue_scriptsincludes\class-affreviews.php:148
actionadmin_enqueue_scriptsincludes\class-affreviews.php:149
actioninitincludes\class-affreviews.php:150
actioncmb2_admin_initincludes\class-affreviews.php:151
actionadmin_menuincludes\class-affreviews.php:152
actioninitincludes\class-affreviews.php:153
actionadmin_initincludes\class-affreviews.php:154
actionrest_api_initincludes\class-affreviews.php:155
actioninitincludes\class-affreviews.php:160
actionenqueue_block_editor_assetsincludes\class-affreviews.php:161
filtersafe_style_cssincludes\class-affreviews.php:164
filterblock_categories_allincludes\class-affreviews.php:165
actionwp_enqueue_scriptsincludes\class-affreviews.php:180
actionwp_enqueue_scriptsincludes\class-affreviews.php:182
actionenqueue_block_editor_assetsincludes\class-affreviews.php:183
Maintenance & Trust

Affiliate Reviews Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 16, 2025
PHP min version7.1
Downloads2K

Community Trust

Rating66/100
Number of ratings3
Active installs200
Developer Profile

Affiliate Reviews Developer Profile

wpchop

1 plugin · 200 total installs

87
trust score
Avg Security Score
99/100
Avg Patch Time
38 days
View full developer profile
Detection Fingerprints

How We Detect Affiliate Reviews

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/affiliate-reviews/public/assets/build/public.css/wp-content/plugins/affiliate-reviews/blocks/build/table/style-index.css/wp-content/plugins/affiliate-reviews/admin/assets/build/admin.css/wp-content/plugins/affiliate-reviews/admin/assets/build/admin.js
Version Parameters
affiliate-reviews/public/assets/build/public.css?ver=affiliate-reviews/blocks/build/table/style-index.css?ver=affiliate-reviews/admin/assets/build/admin.css?ver=affiliate-reviews/admin/assets/build/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
affreviews_reviews
Data Attributes
data-affreviews-id
JS Globals
affreviews_react_componentsaffreviews_settings
REST Endpoints
/wp-json/affreviews/v2/reviews
Shortcode Output
[affiliate_reviews][affiliate_review_box]
FAQ

Frequently Asked Questions about Affiliate Reviews