
GetReview Security & Risk Analysis
wordpress.org/plugins/getreviewCollect reviews from customers who made purchases in the store! Reward them for opinions with a photo. Show reviews on product page.
Is GetReview Safe to Use in 2026?
Generally Safe
Score 85/100GetReview has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "getreview" plugin version 2.0 exhibits a mixed security posture. On the positive side, it demonstrates good practices in handling SQL queries, utilizing prepared statements exclusively, and reports no known vulnerabilities (CVEs) or bundled libraries, which can often introduce risks. However, significant concerns arise from the static analysis. The plugin has one REST API route that lacks permission callbacks, creating an unprotected entry point into the application. Furthermore, the output escaping is insufficient, with only 40% of outputs properly escaped, increasing the risk of Cross-Site Scripting (XSS) vulnerabilities. The presence of a taint flow with unsanitized paths, although not flagged as critical or high severity, warrants attention as it could potentially lead to unintended behavior or security issues if exploited.
Key Concerns
- REST API route without permission callback
- Insufficient output escaping (40% proper)
- Taint flow with unsanitized paths
- No nonce checks
- No capability checks
GetReview Security Vulnerabilities
GetReview Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
GetReview Attack Surface
REST API Routes 1
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
GetReview Maintenance & Trust
Maintenance Signals
Community Trust
GetReview Alternatives
Collect and Display Customer Reviews with Ease
rewindr
Turn reviews into revenue! Rewindr empowers your WordPress and WooCommerce store to display rich, interactive customer feedback that builds trust and …
ProveSource Social Proof
provesource
ProveSource Social Proof increases conversions by up to 17%, boost trust with woocommerce sales notifications and reviews, increase your credibility!
Solid Testimonials – Testimonial Slider, Video Testimonials & Customer Reviews
gs-testimonial
Showcase and automate customer reviews with ease - sliders, grids, filters, and more to boost trust and sales.
WiserNotify – Social Proof & FOMO Notifications, WooCommerce Sales Popups, Reviews & Announcement Bar
wiser-notify
Boost trust & sales with WiserNotify! Show sign-ups, sales popups & reviews. Convert faster with Social proof & FOMO widgets.
Wiremo – Product Reviews for WooCommerce
woo-reviews-by-wiremo
Show customers, that you care with Wiremo’s review request email feature. Automatically display great reviews on your website to boost sales.
GetReview Developer Profile
1 plugin · 10 total installs
How We Detect GetReview
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/getreview/gr-connect.php/wp-content/plugins/getreview/gr-admin.phpHTML / DOM Fingerprints
window.grw/getreview/v2/update/<div id="gr-widget"></div><script>(function() { var s=document.createElement("script");s.src="//app.getreview.pl/widget/app.js";s.async=true; window.grw = {id:"