MAS Company Reviews For WP Job Manager Security & Risk Analysis

wordpress.org/plugins/mas-wp-job-manager-company-reviews

MAS Company Reviews For WP Job Manager is a free plugin that allow you to review companies in multiple review categories and controlling star count.

1K active installs v1.0.2 PHP 7.4+ WP 4.7+ Updated May 31, 2022
company-listings-reviewcompany-managementcompany-managercompany-reviewcompany-reviews
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is MAS Company Reviews For WP Job Manager Safe to Use in 2026?

Generally Safe

Score 85/100

MAS Company Reviews For WP Job Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "mas-wp-job-manager-company-reviews" plugin version 1.0.2 exhibits a generally strong security posture based on the provided static analysis. The absence of any known CVEs in its history is a significant positive indicator, suggesting a mature and well-maintained codebase. Furthermore, the code signals reveal no dangerous functions, all SQL queries are properly prepared, and there are no file operations or external HTTP requests, which are common vectors for attack.

However, there are areas for improvement. While the total number of output points is high, a substantial percentage (30%) are not properly escaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is displayed without adequate sanitization. Although the current version has a limited attack surface with no unprotected entry points and a good number of nonce and capability checks, the presence of shortcodes as entry points, even with checks, warrants careful consideration for potential future vulnerabilities if new features are added without maintaining strict security.

In conclusion, the plugin has a solid foundation with excellent handling of sensitive operations like database queries and file access, and a clean vulnerability history. The primary concern lies with the unescaped output, which requires immediate attention to mitigate potential XSS risks. Addressing this and maintaining vigilance with future updates will ensure continued good security.

Key Concerns

  • Unescaped output detected
Vulnerabilities
None known

MAS Company Reviews For WP Job Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

MAS Company Reviews For WP Job Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
28
65 escaped
Nonce Checks
3
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

70% escaped93 total outputs
Attack Surface

MAS Company Reviews For WP Job Manager Attack Surface

Entry Points4
Unprotected0

Shortcodes 4

[mas_wpjmcr_review_stars] includes\class-mas-wpjmcr-shortcodes.php:33
[mas_wpjmcr_review_average] includes\class-mas-wpjmcr-shortcodes.php:36
[mas_wpjmcr_review_count] includes\class-mas-wpjmcr-shortcodes.php:39
[mas_wpjmcr_review_dashboard] includes\class-mas-wpjmcr-shortcodes.php:42
WordPress Hooks 38
filterget_comment_textincludes\class-mas-wpjmcr-display.php:31
filterget_comment_textincludes\class-mas-wpjmcr-display.php:32
actiontransition_comment_statusincludes\class-mas-wpjmcr-edit.php:32
actionadd_meta_boxes_commentincludes\class-mas-wpjmcr-edit.php:35
actionedit_commentincludes\class-mas-wpjmcr-edit.php:38
actionmas_wpjmcr_review_updatedincludes\class-mas-wpjmcr-edit.php:41
actiondelete_commentincludes\class-mas-wpjmcr-edit.php:44
actiondelete_attachmentincludes\class-mas-wpjmcr-edit.php:47
actioncomment_form_topincludes\class-mas-wpjmcr-form.php:32
actionmas_wpjmcr_rating_field_initincludes\class-mas-wpjmcr-form.php:35
actionmas_wpjmcr_rating_field_initincludes\class-mas-wpjmcr-form.php:38
actionmas_wpjmcr_rating_field_initincludes\class-mas-wpjmcr-form.php:41
filtercomment_form_submit_fieldincludes\class-mas-wpjmcr-form.php:44
filtermas_wpjmcr_rating_fieldincludes\class-mas-wpjmcr-form.php:138
filtermas_wpjmcr_rating_fieldincludes\class-mas-wpjmcr-form.php:163
filtercomment_form_fieldsincludes\class-mas-wpjmcr-form.php:164
filtercomment_form_submit_fieldincludes\class-mas-wpjmcr-form.php:165
filtermas_wpjmcr_rating_fieldincludes\class-mas-wpjmcr-form.php:204
filtercomment_form_fieldsincludes\class-mas-wpjmcr-form.php:205
filtercomment_form_submit_fieldincludes\class-mas-wpjmcr-form.php:206
actionadmin_footer-post.phpincludes\class-mas-wpjmcr-post-edit.php:31
actionsave_postincludes\class-mas-wpjmcr-post-edit.php:34
filterredirect_post_locationincludes\class-mas-wpjmcr-post-edit.php:37
actionadmin_noticesincludes\class-mas-wpjmcr-post-edit.php:40
actionjob_manager_settingsincludes\class-mas-wpjmcr-settings.php:34
actionwp_job_manager_admin_field_mas_wpjmcr_dashboard_actionsincludes\class-mas-wpjmcr-settings.php:36
actioninitincludes\class-mas-wpjmcr-shortcodes.php:46
filterpre_comment_approvedincludes\class-mas-wpjmcr-submit.php:32
actioninitincludes\class-mas-wpjmcr-submit.php:35
actioncomment_postincludes\class-mas-wpjmcr-submit.php:38
actioninitincludes\integrations\class-mas-wpjmcr-polylang.php:19
filtermas_wpjmcr_category_labelincludes\integrations\class-mas-wpjmcr-polylang.php:22
filterjetpack_comment_form_enabled_for_companyincludes\integrations\jetpack.php:14
actioninitmas-wp-job-manager-company-reviews.php:142
actionwp_enqueue_scriptsmas-wp-job-manager-company-reviews.php:145
actionadmin_enqueue_scriptsmas-wp-job-manager-company-reviews.php:146
actionsingle_company_content_endmas-wp-job-manager-company-reviews.php:156
actionplugins_loadedmas-wp-job-manager-company-reviews.php:208
Maintenance & Trust

MAS Company Reviews For WP Job Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedMay 31, 2022
PHP min version7.4
Downloads16K

Community Trust

Rating0/100
Number of ratings0
Active installs1K
Developer Profile

MAS Company Reviews For WP Job Manager Developer Profile

MadrasThemes

7 plugins · 25K total installs

95
trust score
Avg Security Score
93/100
Avg Patch Time
2 days
View full developer profile
Detection Fingerprints

How We Detect MAS Company Reviews For WP Job Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/mas-wp-job-manager-company-reviews/assets/css/mas-wp-job-manager-company-reviews.css/wp-content/plugins/mas-wp-job-manager-company-reviews/assets/js/mas-wp-job-manager-company-reviews.js/wp-content/plugins/mas-wp-job-manager-company-reviews/assets/css/mas-wp-job-manager-company-reviews-gallery-admin.css
Script Paths
/wp-content/plugins/mas-wp-job-manager-company-reviews/assets/js/mas-wp-job-manager-company-reviews.js
Version Parameters
mas-wp-job-manager-company-reviews/assets/css/mas-wp-job-manager-company-reviews.css?ver=mas-wp-job-manager-company-reviews/assets/js/mas-wp-job-manager-company-reviews.js?ver=mas-wp-job-manager-company-reviews/assets/css/mas-wp-job-manager-company-reviews-gallery-admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
mas-wpjmcr-rating-fieldmas-wpjmcr-star-ratingmas-wpjmcr-rating-wrappermas-wpjmcr-review-gallery
HTML Comments
<!-- Company Review Field --><!-- Review Options --><!-- Review Submit --><!-- Review Gallery -->
Data Attributes
data-post-iddata-rating-valuedata-review-iddata-company-id
JS Globals
mas_wpjmcr_vars
Shortcode Output
[mas_review_stars][mas_review_average][mas_review_count][mas_review_dashboard]
FAQ

Frequently Asked Questions about MAS Company Reviews For WP Job Manager