BizReview – Business and Google Place Review Plugin Security & Risk Analysis

wordpress.org/plugins/bizreview

Google Business Review Showcase Plugin - Easily Show Your Google Business Reviews On Your Website

100 active installs v1.5.14 PHP + WP 5.0+ Updated Mar 12, 2026
businessgoogle-places-reviewsmasonaryreviewsshortcode
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is BizReview – Business and Google Place Review Plugin Safe to Use in 2026?

Generally Safe

Score 100/100

BizReview – Business and Google Place Review Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 22d ago
Risk Assessment

The bizreview plugin v1.5.14 exhibits a generally strong security posture based on the provided static analysis. The absence of known vulnerabilities (CVEs) and a clean taint analysis are significant strengths, indicating a lack of severe, exploitable flaws. The plugin also demonstrates good practices by implementing nonce and capability checks on entry points, and a high percentage of properly escaped output, which mitigates common cross-site scripting (XSS) risks. However, the plugin's use of raw SQL queries without prepared statements represents a notable concern. Although the total number of SQL queries is low, this practice, if a query were to involve user-supplied input, could open the door to SQL injection vulnerabilities. The presence of external HTTP requests also warrants attention; without further analysis, it's difficult to assess if these are made securely and if they could be leveraged for further attacks. While the plugin has a small attack surface and all identified entry points have some form of protection, the raw SQL remains the most concrete risk identified.

Key Concerns

  • SQL queries not using prepared statements
Vulnerabilities
None known

BizReview – Business and Google Place Review Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

BizReview – Business and Google Place Review Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
37
349 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
3
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

90% escaped386 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
dismiss_offer_banner (Helpers\ThemeAtelier_Offer_Banner.php:154)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

BizReview – Business and Google Place Review Plugin Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 1

authwp_ajax_themeatelier_dismiss_offer_bannerHelpers\ThemeAtelier_Offer_Banner.php:35

Shortcodes 1

[bizr_google_place] view\google-shortcode.php:11
WordPress Hooks 21
actionadmin_menuadmin\admin.php:20
actionadmin_initadmin\admin.php:21
actionadmin_footeradmin\appsero\Insights.php:114
actionadmin_noticesadmin\appsero\Insights.php:132
actionadmin_initadmin\appsero\Insights.php:135
filtercron_schedulesadmin\appsero\Insights.php:141
actionplugin_loadedbizreview.php:55
actionafter_setup_themebizreview.php:81
actionadmin_noticesHelpers\ThemeAtelier_Offer_Banner.php:34
actionwp_enqueue_scriptsinc\class-enqueue.php:20
actionadmin_enqueue_scriptsinc\class-enqueue.php:22
actioninitview\elementor-widgets\elementor-widget.php:147
actionadmin_noticesview\elementor-widgets\elementor-widget.php:167
actionelementor/elements/categories_registeredview\elementor-widgets\elementor-widget.php:172
actionelementor/frontend/after_enqueue_stylesview\elementor-widgets\elementor-widget.php:173
actionelementor/frontend/after_register_stylesview\elementor-widgets\elementor-widget.php:174
actionelementor/editor/before_enqueue_scriptsview\elementor-widgets\elementor-widget.php:175
actionelementor/widgets/widgets_registeredview\elementor-widgets\elementor-widget.php:178
actionwp_enqueue_scriptsview\elementor-widgets\elementor-widget.php:181
actionwp_enqueue_scriptsview\elementor-widgets\elementor-widget.php:313
actionwidgets_initview\widgets\widget-google-review.php:229
Maintenance & Trust

BizReview – Business and Google Place Review Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 12, 2026
PHP min version
Downloads6K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

BizReview – Business and Google Place Review Plugin Developer Profile

Foysal Imran

7 plugins · 710 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
21 days
View full developer profile
Detection Fingerprints

How We Detect BizReview – Business and Google Place Review Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bizreview/assets/icofont/icofont.min.css/wp-content/plugins/bizreview/assets/fontawesome/all.min.css/wp-content/plugins/bizreview/assets/css/bt-grid.css/wp-content/plugins/bizreview/assets/css/owl.carousel.min.css/wp-content/plugins/bizreview/assets/css/owl.theme.default.min.css/wp-content/plugins/bizreview/assets/css/main.css/wp-content/plugins/bizreview/inc/google-review/js/google-place.js/wp-content/plugins/bizreview/assets/js/isotope.pkgd.min.js+4 more
Script Paths
/wp-content/plugins/bizreview/inc/google-review/js/google-place.js/wp-content/plugins/bizreview/assets/js/isotope.pkgd.min.js/wp-content/plugins/bizreview/assets/js/owl.carousel.min.js/wp-content/plugins/bizreview/assets/js/main.js/wp-content/plugins/bizreview/admin/assets/js/bizreview-admin.js
Version Parameters
bizreview/style.css?ver=bizreview/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
bizreview-main
HTML Comments
<!-- Bizreview Appsero Insights --><!-- Offer Banner -->
JS Globals
window.bizreview_google_api_key
Shortcode Output
[bizreview]
FAQ

Frequently Asked Questions about BizReview – Business and Google Place Review Plugin