Game Review Block Security & Risk Analysis

wordpress.org/plugins/game-review-block

Add a review rating block with a score from 1 to 10 to your post. Adds schema.org meta data for Rich Results in search engines.

100 active installs v4.9.1 PHP 7.0+ WP 5.9+ Updated Nov 28, 2025
blockratingreviewschemashortscore
99
A · Safe
CVEs total1
Unpatched0
Last CVEJun 12, 2025
Safety Verdict

Is Game Review Block Safe to Use in 2026?

Generally Safe

Score 99/100

Game Review Block has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Jun 12, 2025Updated 4mo ago
Risk Assessment

The static analysis of the 'game-review-block' plugin v4.9.1 reveals a generally strong security posture with no identified critical or high-severity vulnerabilities in the analyzed code. The absence of dangerous functions, SQL injection risks through prepared statements, and proper output escaping are positive indicators. Furthermore, the plugin demonstrates a commitment to security by including capability checks. However, the complete lack of an attack surface (AJAX handlers, REST API routes, shortcodes, cron events) is unusual and might indicate a limited functional scope or that this data is incomplete. The vulnerability history is a significant concern, with one known CVE in the past, specifically a medium-severity Cross-Site Scripting vulnerability. The fact that this vulnerability is listed as 'currently unpatched' despite the vulnerability history date being in the future is a critical discrepancy that needs immediate investigation. This suggests a potential oversight in patch management or a data anomaly.

Key Concerns

  • Medium severity XSS vulnerability historically
  • Historically unpatched vulnerability found
  • Lack of clear attack surface and entry points
Vulnerabilities
1

Game Review Block Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-5923medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Game Review Block <= 4.8.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via className Parameter

Jun 12, 2025 Patched in 4.8.2 (1d)
Code Analysis
Analyzed Mar 16, 2026

Game Review Block Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
25 escaped
Nonce Checks
0
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped25 total outputs
Attack Surface

Game Review Block Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitgame-review.php:48
Maintenance & Trust

Game Review Block Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedNov 28, 2025
PHP min version7.0
Downloads8K

Community Trust

Rating100/100
Number of ratings4
Active installs100
Developer Profile

Game Review Block Developer Profile

Marc Tönsing

14 plugins · 11K total installs

97
trust score
Avg Security Score
95/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect Game Review Block

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/game-review-block/build/review-box/index.js/wp-content/plugins/game-review-block/build/review-box/style.css/wp-content/plugins/game-review-block/src/game-table/table-sort.js/wp-content/plugins/game-review-block/src/game-table/table-sort.css/wp-content/plugins/game-review-block/build/random-game/index.js/wp-content/plugins/game-review-block/build/random-game/style.css/wp-content/plugins/game-review-block/build/game-list/index.js/wp-content/plugins/game-review-block/build/game-list/style.css
Script Paths
/wp-content/plugins/game-review-block/build/review-box/index.js/wp-content/plugins/game-review-block/src/game-table/table-sort.js/wp-content/plugins/game-review-block/build/random-game/index.js/wp-content/plugins/game-review-block/build/game-list/index.js
Version Parameters
game-review-block/build/review-box/index.js?ver=game-review-block/build/review-box/style.css?ver=game-review-block/src/game-table/table-sort.js?ver=game-review-block/src/game-table/table-sort.css?ver=game-review-block/build/random-game/index.js?ver=game-review-block/build/random-game/style.css?ver=game-review-block/build/game-list/index.js?ver=game-review-block/build/game-list/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
wp-block-game-review-block-review-boxwp-block-game-review-block-random-gamewp-block-game-review-block-game-listwp-block-game-review-block-game-tablegame-table
HTML Comments
Count:
Data Attributes
data-time
JS Globals
gameReviewBox
REST Endpoints
/wp-json/game-review-block/v1/games/wp-json/game-review-block/v1/ratings
Shortcode Output
<table width="100%" class="wp-block-table is-style-stripes<thead><tr><th class="th-sort-desc">Rating</th><th class="th-sort-desc">Game title</th><th class="th-sort-desc">Review published</th></tr></thead><tbody><td>/10</td><td><a href=''>
FAQ

Frequently Asked Questions about Game Review Block