CCR Client Testimonials Security & Risk Analysis

wordpress.org/plugins/ccr-client-testimonials

CCR Testimonial is a Carousel type Testimonial build with Bootstrap 3.0

10 active installs v1.0.0 PHP + WP 3.0.1+ Updated Feb 5, 2014
codexcodercustom-event-pluginupcomign-event-pluginupcoming-eventwordpress-best-event-plugin
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CCR Client Testimonials Safe to Use in 2026?

Generally Safe

Score 85/100

CCR Client Testimonials has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12yr ago
Risk Assessment

The ccr-client-testimonials plugin, at version 1.0.0, exhibits a generally good security posture due to the absence of known vulnerabilities and the implementation of some key security practices. The static analysis reveals a small attack surface, with only one shortcode identified as an entry point. Crucially, there are no unprotected AJAX handlers or REST API routes, and the code demonstrates a commitment to secure coding by utilizing prepared statements for all SQL queries and including nonce and capability checks. The lack of dangerous functions, file operations, and external HTTP requests further contributes to its positive security profile. However, a significant concern arises from the output escaping, where only 50% of the identified outputs are properly escaped. This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed within the WordPress environment, particularly when user-provided data is displayed without adequate sanitization. The plugin's history of zero CVEs is a strong indicator of past diligence, but the identified output escaping issue warrants attention to maintain this clean record.

Key Concerns

  • Only 50% of outputs properly escaped
Vulnerabilities
None known

CCR Client Testimonials Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

CCR Client Testimonials Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

CCR Client Testimonials Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
4 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

50% escaped8 total outputs
Attack Surface

CCR Client Testimonials Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[ccr_client_testimonials] index.php:215
WordPress Hooks 6
actioninitindex.php:57
actionadmin_headindex.php:71
actionadd_meta_boxesindex.php:78
actionsave_postindex.php:104
actionwp_enqueue_scriptsindex.php:152
filterwidget_textindex.php:218
Maintenance & Trust

CCR Client Testimonials Maintenance & Trust

Maintenance Signals

WordPress version tested3.7.41
Last updatedFeb 5, 2014
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

CCR Client Testimonials Developer Profile

CodexCoder

4 plugins · 40 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect CCR Client Testimonials

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ccr-client-testimonials/assets/css/style.css/wp-content/plugins/ccr-client-testimonials/assets/js/bootstrap.js
Script Paths
/wp-content/plugins/ccr-client-testimonials/assets/js/bootstrap.js
Version Parameters
ccr-client-testimonials/assets/css/style.css?ver=ccr-client-testimonials/assets/js/bootstrap.js?ver=

HTML / DOM Fingerprints

CSS Classes
ccr-testimonialsccr-testimonials-carouselccr-tfixtestimonial-contenttestimonial-metaclient-photoclient-infoclient-name+4 more
Data Attributes
data-ride="carousel"
Shortcode Output
<div id="ccr-testimonials"><div id="ccr-testimonials-carousel" class="carousel slide" data-ride="carousel"><div class="carousel-inner"><div class="item
FAQ

Frequently Asked Questions about CCR Client Testimonials