
Reviews Block for Google Security & Risk Analysis
wordpress.org/plugins/google-places-reviewsEasily display Google business reviews on your WordPress website with a simple and intuitive block.
Is Reviews Block for Google Safe to Use in 2026?
Generally Safe
Score 85/100Reviews Block for Google has a strong security track record. Known vulnerabilities have been patched promptly.
The 'google-places-reviews' v2.0.1 plugin exhibits a mixed security posture. While it demonstrates good practices by using prepared statements for all SQL queries and avoiding dangerous functions and file operations, several significant concerns are present. The attack surface is notable, with 3 entry points, 2 of which lack proper authentication or permission checks. This creates potential pathways for unauthorized access or actions. The output escaping is also a weakness, with less than half of the outputs being properly escaped, indicating a risk of Cross-Site Scripting (XSS) vulnerabilities. The plugin's vulnerability history, including a past medium-severity XSS vulnerability, further underscores the importance of careful input handling and output sanitization. While the absence of critical taint flows and unpatched CVEs is positive, the identified weaknesses in authentication and output escaping warrant attention.
Key Concerns
- Unprotected AJAX handlers
- Unprotected REST API routes
- Low output escaping coverage
- No nonce checks on AJAX
- Past medium severity vulnerability
Reviews Block for Google Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Google Places Reviews < 2.0.0 - Authenticated (Admin+) Stored Cross-Site Scripting
Reviews Block for Google Code Analysis
Output Escaping
Data Flow Analysis
Reviews Block for Google Attack Surface
AJAX Handlers 2
REST API Routes 1
WordPress Hooks 17
Maintenance & Trust
Reviews Block for Google Maintenance & Trust
Maintenance Signals
Community Trust
Reviews Block for Google Alternatives
Widget for Google Reviews
business-reviews-wp
Shortcode and widget for Google Reviews. Display Google Business Reviews on your WordPress website to increase user confidence and SEO.
Free Google Reviews widget by OpenWidget
free-google-reviews-widget-by-openwidget
⭐️ Embed Google reviews into your WordPress site. Improve trust, sales & SEO of your Wordpress site with Google reviews.
Get Google Reviews
get-google-reviews
Get your Google Reviews and display them on your website. Easily and without needing an API key.
Widgets for Google Reviews
wp-reviews-plugin-for-google
Embed Google reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Google reviews.
Reviews Feed – Add Testimonials and Customer Reviews From Google Reviews, Yelp, TripAdvisor, and More
reviews-feed
No API key required. Display Yelp and Google reviews for any business in a clean, customizable feed on your site.
Reviews Block for Google Developer Profile
2 plugins · 302K total installs
How We Detect Reviews Block for Google
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.