
Feedbacks and Reviews Security & Risk Analysis
wordpress.org/plugins/feedbacks-and-reviewsThe best Feedbacks and Reviews plugin for WordPress!
Is Feedbacks and Reviews Safe to Use in 2026?
Generally Safe
Score 85/100Feedbacks and Reviews has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "feedbacks-and-reviews" v1.0 plugin exhibits a generally positive security posture with several good practices in place. The absence of known CVEs and a clean vulnerability history indicate a stable and likely well-maintained codebase. Static analysis reveals no direct SQL injection vulnerabilities due to the exclusive use of prepared statements. Furthermore, there are no identified flows with unsanitized paths or critical/high severity taint issues, which significantly reduces the risk of common web application attacks. The presence of nonce and capability checks on entry points, though not exhaustive across all potential interactions, is a good sign of attempted security implementation.
However, a significant concern arises from the use of the `unserialize` function. This function is inherently risky as it can lead to remote code execution or denial of service if it processes untrusted or maliciously crafted serialized data. The static analysis also highlights that only 53% of output is properly escaped. This suggests potential cross-site scripting (XSS) vulnerabilities, where user-supplied data displayed on the frontend might not be sufficiently sanitized, allowing attackers to inject malicious scripts.
While the plugin has no recorded vulnerabilities, the identified code signals of `unserialize` and the moderate output escaping rate present tangible risks. The attack surface is small and protected, but the internal code has exploitable weaknesses. Therefore, while the plugin's history is reassuring, the static analysis points to specific areas requiring immediate attention to improve its overall security.
Key Concerns
- Use of unserialize function
- Insufficient output escaping (53%)
Feedbacks and Reviews Security Vulnerabilities
Feedbacks and Reviews Release Timeline
Feedbacks and Reviews Code Analysis
Dangerous Functions Found
Output Escaping
Feedbacks and Reviews Attack Surface
Shortcodes 2
WordPress Hooks 30
Maintenance & Trust
Feedbacks and Reviews Maintenance & Trust
Maintenance Signals
Community Trust
Feedbacks and Reviews Alternatives
SP Feedbacks – Your eBay in Your Site
siliconplex-ebay-feedback-listing
Looking forward to integrate your Ebay Feedbacks on your wordpress site "SP Ebay Feedback Listing" does the job for you.
Creta Testimonial Showcase
creta-testimonial-showcase
Showcase client reviews with Creta Testimonial Showcase an easy, responsive WordPress testimonial plugin with free and premium templates.
Testimonial Customer Feedback
testimonial-maker
Display client testimonials with customizable layouts, slider effects, and responsive design. Simple setup with shortcode support.
Five Star Restaurant Reviews
good-reviews-wp
Restaurant reviews made easy. Add and display reviews on your restaurant site using SEO friendly schema markup.
Editorify Reviews – Import and Collect Customer Feedbacks from Aliexpress to your Dropshipping Store
editorify
Import customers reviews from AliExpress and more. Get more sales & boost your conversions with product reviews, no coding skills needed.
Feedbacks and Reviews Developer Profile
5 plugins · 620 total installs
How We Detect Feedbacks and Reviews
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/feedbacks-and-reviews/assets/css/paky-feedback.css/wp-content/plugins/feedbacks-and-reviews/assets/css/bootstrap.css/wp-content/plugins/feedbacks-and-reviews/assets/js/form-validator/jquery.form-validator.min.js/wp-content/plugins/feedbacks-and-reviews/assets/css/slick.css/wp-content/plugins/feedbacks-and-reviews/assets/css/tipso.min.css/wp-content/plugins/feedbacks-and-reviews/assets/js/slick.min.js/wp-content/plugins/feedbacks-and-reviews/assets/js/tipso.min.js/wp-content/plugins/feedbacks-and-reviews/assets/js/paky-feedback.js/wp-content/plugins/feedbacks-and-reviews/assets/js/form-validator/jquery.form-validator.min.js/wp-content/plugins/feedbacks-and-reviews/assets/js/slick.min.js/wp-content/plugins/feedbacks-and-reviews/assets/js/tipso.min.js/wp-content/plugins/feedbacks-and-reviews/assets/js/paky-feedback.jsHTML / DOM Fingerprints
update-pluginsplugin-countdata-validation