
Mos Testimonial Security & Risk Analysis
wordpress.org/plugins/mos-testimonialMos Testimonial plugin that lets you easily create, order and publicize testimonials using shortcodes.
Is Mos Testimonial Safe to Use in 2026?
Generally Safe
Score 100/100Mos Testimonial has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The mos-testimonial plugin version 1.0.2 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests is commendable. Crucially, all SQL queries are properly prepared, mitigating the risk of SQL injection vulnerabilities. The presence of nonce and capability checks on the identified entry points, including AJAX handlers and shortcodes, further strengthens its defenses by ensuring proper authorization and validation.
While the static analysis reveals no critical or high-severity issues in taint flows and a clean vulnerability history with no known CVEs, a minor concern arises from the output escaping. With 73% of outputs properly escaped, there's a 27% that is not. This could potentially leave the plugin susceptible to cross-site scripting (XSS) vulnerabilities if untrusted data is rendered without sufficient sanitization, although the severity of such an issue would depend on the specific data and its context.
Overall, the plugin demonstrates a commitment to secure coding practices by addressing common vulnerabilities. The limited attack surface and robust checks on entry points are strong points. The primary area for improvement lies in ensuring 100% of output is properly escaped to eliminate any residual XSS risks. The lack of historical vulnerabilities is a positive indicator, suggesting consistent security efforts from the developers.
Key Concerns
- Output not properly escaped
Mos Testimonial Security Vulnerabilities
Mos Testimonial Release Timeline
Mos Testimonial Code Analysis
Output Escaping
Mos Testimonial Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 48
Maintenance & Trust
Mos Testimonial Maintenance & Trust
Maintenance Signals
Community Trust
Mos Testimonial Alternatives
Super Easy Testimonials
super-easy-testimonials
Super Easy Testimonials adds flexibility to your wordpress site in creating and managing testimonials.
Testimonial Slider – Free Testimonials Slider Plugin
testimonial-add
Testimonial Slider plugin is the only plugin you will need to display testimonials on your site, Create testimonial slider or list and design as per y …
Testimonial – Addon for WPBakery Page Builder (formerly Visual Composer)
testimonial-addon-for-wpbakery-page-builder
Want to display more attractive client testimonials to your web page ? Advance Testimonial addon for WPBakery Builder (formerly Visual Composer) is pe …
Mi Testimonial Slider
mi-testimonial-slider
Testimonial Slider For Showcase your clients, customer's testimonials. With 20+ trendy designs you can customize your wordpress site
Responsive WordPress Testimonial
my-responsive-testimonial
Create amazing sliding wordpress testimonial showcase that use auto cycling and hovering effect with Wow.js & Animate.css
Mos Testimonial Developer Profile
5 plugins · 80 total installs
How We Detect Mos Testimonial
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mos-testimonial/css/mos-testimonial-admin.css/wp-content/plugins/mos-testimonial/css/mos-testimonial-public.css/wp-content/plugins/mos-testimonial/js/mos-testimonial-admin.js/wp-content/plugins/mos-testimonial/js/mos-testimonial-public.js/wp-content/plugins/mos-testimonial/js/mos-testimonial-admin.js/wp-content/plugins/mos-testimonial/js/mos-testimonial-public.jsmos-testimonial/css/mos-testimonial-admin.css?ver=mos-testimonial/css/mos-testimonial-public.css?ver=mos-testimonial/js/mos-testimonial-admin.js?ver=mos-testimonial/js/mos-testimonial-public.js?ver=HTML / DOM Fingerprints
mos-testimonial-slidermos-testimonial-carouseldata-mos-testimonial-idmos_testimonial_options_public[mos_testimonial]