Easy Video Reviews – Testimonial Grid & Social Proof Security & Risk Analysis

wordpress.org/plugins/easy-video-reviews

Build social proof with authentic text & video testimonials for WooCommerce. Showcase reviews in galleries or share them on social media.

100 active installs v2.8.14 PHP 5.6+ WP 5.0+ Updated Nov 24, 2025
product-reviewsreviewssocial-prooftestimonialtestimonial-plugin
100
A · Safe
CVEs total1
Unpatched0
Last CVEDec 16, 2022
Safety Verdict

Is Easy Video Reviews – Testimonial Grid & Social Proof Safe to Use in 2026?

Generally Safe

Score 100/100

Easy Video Reviews – Testimonial Grid & Social Proof has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.

1 known CVELast CVE: Dec 16, 2022Updated 5mo ago
Risk Assessment

The "easy-video-reviews" v2.8.14 plugin exhibits a generally good security posture, with several strong practices in place. The code analysis shows a high percentage of properly escaped output and a complete absence of dangerous functions and critical or high severity taint flows. All SQL queries are properly prepared, and there are robust nonce and capability checks, indicating an awareness of common WordPress security vulnerabilities. The plugin also avoids bundled libraries, which can sometimes introduce outdated or vulnerable code.

However, a past medium severity vulnerability related to missing authorization, last identified in December 2022, is a notable concern. While currently patched, this indicates a historical weakness that could potentially be re-introduced or overlooked in future development. The attack surface, while small and seemingly protected, does include four shortcodes, which can sometimes be vectors for vulnerabilities if not carefully implemented. Overall, the plugin has many strengths but requires continued vigilance due to its historical vulnerability.

Key Concerns

  • Past medium severity vulnerability (Missing Authorization)
  • Attack surface includes 4 shortcodes (potential concern)
Vulnerabilities
1 published

Easy Video Reviews – Testimonial Grid & Social Proof Security Vulnerabilities

CVEs by Year

1 CVE in 2022
2022
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

Appsero <= 1.2.1 - Missing Authorization

Dec 16, 2022 Patched in 1.5.0 (699d)
Version History

Easy Video Reviews – Testimonial Grid & Social Proof Release Timeline

v2.8.14Current
v2.8.13
v2.8.12
v2.8.11
v2.8.10
v2.8.9
v2.8.8
v2.8.7
v2.8.6
v2.8.5
v2.8.4
v2.8.3
v2.8.2
v2.8.1
v2.8.0
v2.7.1
v2.7.0
v2.6.0
v2.5.1
v2.5.0
Code Analysis
Analyzed Mar 16, 2026

Easy Video Reviews – Testimonial Grid & Social Proof Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
11
319 escaped
Nonce Checks
15
Capability Checks
13
File Operations
1
External Requests
5
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

97% escaped330 total outputs
Attack Surface

Easy Video Reviews – Testimonial Grid & Social Proof Attack Surface

Entry Points4
Unprotected0

Shortcodes 4

[recorder] includes\shortcodes\class-shortcode-button.php:38
[evr-button] includes\shortcodes\class-shortcode-button.php:45
[reviews] includes\shortcodes\class-shortcode-reviews.php:39
[evr-videos] includes\shortcodes\class-shortcode-reviews.php:46
WordPress Hooks 45
filterevr_extensionsincludes\abstracts\class-abstract-extension.php:97
filterevr_optionsincludes\abstracts\class-abstract-extension.php:98
filterevr_admin_localize_scriptincludes\abstracts\class-abstract-extension.php:99
actionevr_extension_formincludes\abstracts\class-abstract-extension.php:100
actionadmin_enqueue_scriptsincludes\admin\class-admin-assets.php:36
actionadmin_footerincludes\admin\class-admin-assets.php:38
actioninitincludes\admin\class-admin-hooks.php:34
filterwppool_pluginsincludes\admin\class-admin-hooks.php:35
filterappsero_is_localincludes\admin\class-admin-hooks.php:45
actionadmin_menuincludes\admin\class-admin-menus.php:37
actionadmin_initincludes\admin\class-admin-notices.php:32
actionswitch_themeincludes\appsero\Insights.php:139
actionswitch_themeincludes\appsero\Insights.php:140
actionadmin_footerincludes\appsero\Insights.php:151
actionadmin_noticesincludes\appsero\Insights.php:167
actionadmin_initincludes\appsero\Insights.php:170
filtercron_schedulesincludes\appsero\Insights.php:176
actionadmin_menuincludes\appsero\License.php:223
actionafter_switch_themeincludes\appsero\License.php:785
actionswitch_themeincludes\appsero\License.php:786
filterblock_categories_allincludes\blocks\class-blocks.php:32
actioninitincludes\blocks\class-blocks.php:33
actionwp_enqueue_scriptsincludes\classes\class-assets.php:33
actionadmin_initincludes\classes\class-install.php:38
filterplugin_row_metaincludes\classes\class-install.php:44
actionwp_footerincludes\classes\class-recorder.php:34
actiontemplate_redirectincludes\classes\class-recorder.php:35
actionadmin_noticesincludes\classes\class-remote.php:128
actiontemplate_redirectincludes\classes\class-review.php:37
actionelementor/widgets/widgets_registeredincludes\elementor\class-widget.php:27
actionelementor/editor/before_enqueue_scriptsincludes\elementor\class-widget.php:28
actionedd_payment_receipt_afterincludes\extensions\easy-digital-downloads\class-easy-digital-downloads.php:61
actionedd_email_footerincludes\extensions\easy-digital-downloads\class-easy-digital-downloads.php:62
actionwoocommerce_order_item_meta_startincludes\extensions\woocommerce\class-woocommerce.php:62
filterwoocommerce_product_tabsincludes\extensions\woocommerce\class-woocommerce.php:76
actionwp_footerincludes\floating-widget\class-floating-widget.php:33
actionadmin_enqueue_scriptsincludes\wppool\class-plugin.php:281
actionadmin_footerincludes\wppool\class-plugin.php:282
actionelementor/editor/after_enqueue_scriptsincludes\wppool\class-plugin.php:285
actionelementor/editor/headerincludes\wppool\class-plugin.php:286
filterwppool_pluginsincludes\wppool\class-plugin.php:1260
filterwppool_pluginsincludes\wppool\class-plugin.php:1300
filterappsero_is_localincludes\wppool\class-plugin.php:1316
actionplugins_loadedincludes\wppool\class-plugin.php:1319
filteradmin_footer_texttemplates\admin\base.php:61
Maintenance & Trust

Easy Video Reviews – Testimonial Grid & Social Proof Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 24, 2025
PHP min version5.6
Downloads20K

Community Trust

Rating76/100
Number of ratings10
Active installs100
Developer Profile

Easy Video Reviews – Testimonial Grid & Social Proof Developer Profile

WPPOOL

16 plugins · 32K total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
322 days
View full developer profile
Detection Fingerprints

How We Detect Easy Video Reviews – Testimonial Grid & Social Proof

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-video-reviews/public/css/notice.css/wp-content/plugins/easy-video-reviews/public/css/admin.min.css/wp-content/plugins/easy-video-reviews/public/css/blank.css/wp-content/plugins/easy-video-reviews/public/js/sizzle.min.js/wp-content/plugins/easy-video-reviews/public/js/events.min.js/wp-content/plugins/easy-video-reviews/public/js/admin.min.js
Script Paths
/wp-content/plugins/easy-video-reviews/includes/class-boot.php
Version Parameters
easy-video-reviews/public/css/notice.css?ver=easy-video-reviews/public/js/sizzle.min.js?ver=easy-video-reviews/public/js/events.min.js?ver=easy-video-reviews/public/css/admin.min.css?ver=easy-video-reviews/public/js/admin.min.js?ver=easy-video-reviews/public/css/blank.css?ver=

HTML / DOM Fingerprints

CSS Classes
evr-upgrade-planevr-upgrade-iconevr-upgrade-icon-text
Data Attributes
data-evr-admin
JS Globals
_evr_admin
FAQ

Frequently Asked Questions about Easy Video Reviews – Testimonial Grid & Social Proof