
OmniReview – Fetch Reviews From Anywhere Security & Risk Analysis
wordpress.org/plugins/omnireviewOmniReview lets you collect, sync, manage and display reviews from multiple platforms using customizable widgets.
Is OmniReview – Fetch Reviews From Anywhere Safe to Use in 2026?
Generally Safe
Score 100/100OmniReview – Fetch Reviews From Anywhere has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The omnireview plugin, version 1.0.1, exhibits a generally good security posture based on the provided static analysis and vulnerability history. The plugin demonstrates robust security practices by implementing nonce and capability checks on all identified entry points, including AJAX handlers. The presence of 15 nonce and 15 capability checks across 12 entry points indicates a strong focus on authorization and input validation. Furthermore, the absence of any recorded CVEs, unpatched vulnerabilities, or common vulnerability types suggests a history of stable and secure development. The use of prepared statements in 60% of SQL queries is also a positive sign, mitigating risks associated with SQL injection. However, the analysis does highlight a potential concern with the presence of the `unserialize` function, which can be a vector for deserialization vulnerabilities if not handled with extreme care and sanitization of its input. While no critical or high severity taint flows were detected, the single flow with unsanitized paths warrants attention. The plugin also makes 2 external HTTP requests, which could be a risk if the target endpoints are compromised or if data is sent insecurely. Overall, omnireview appears to be a relatively secure plugin, but the use of `unserialize` and the single identified unsanitized path are areas that require careful consideration and potential remediation.
Key Concerns
- Use of unserialize function
- Flow with unsanitized paths
- External HTTP requests
OmniReview – Fetch Reviews From Anywhere Security Vulnerabilities
OmniReview – Fetch Reviews From Anywhere Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
OmniReview – Fetch Reviews From Anywhere Attack Surface
AJAX Handlers 10
Shortcodes 2
WordPress Hooks 28
Scheduled Events 2
Maintenance & Trust
OmniReview – Fetch Reviews From Anywhere Maintenance & Trust
Maintenance Signals
Community Trust
OmniReview – Fetch Reviews From Anywhere Alternatives
Site Reviews
site-reviews
Site Reviews is a complete review management solution that integrates with WooCommerce and SureCart and works similarly to reviews on Amazon, Tripadvi …
WP Testimonials
testimonial-widgets
Display your Testimonials on your website fast and easily. 21 widget types, 25 widget styles available. (Free Plugin)
Better Business Reviews – Trustpilot WordPress Plugin
better-business-reviews
Better Business Reviews allows you to display your business reviews from a Trustpilot profile.
Gutena Star Ratings
gutena-star-ratings
Gutena Star Ratings is a great block that lets you add star rating to client testimonials and reviews. Not only the star rating will tell customers ho …
Review & testimonial widgets
trustmary
Add reviews to your website with Trustmary’s review and testimonial widgets: Google Review Widget, Facebook Review Widget, Tripadvisor Review Widget, …
OmniReview – Fetch Reviews From Anywhere Developer Profile
13 plugins · 739K total installs
How We Detect OmniReview – Fetch Reviews From Anywhere
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/omnireview/assets/css/omnireview-admin.css/wp-content/plugins/omnireview/assets/js/omnireview-admin.js/wp-content/plugins/omnireview/assets/css/omnireview-public.css/wp-content/plugins/omnireview/assets/js/omnireview-public.js/wp-content/plugins/omnireview/assets/js/omnireview-admin.js/wp-content/plugins/omnireview/assets/js/omnireview-public.jsomnireview/assets/css/omnireview-admin.css?ver=omnireview/assets/js/omnireview-admin.js?ver=omnireview/assets/css/omnireview-public.css?ver=omnireview/assets/js/omnireview-public.js?ver=HTML / DOM Fingerprints
omnireview-widgetomnireview-settings-page<!-- OmniReview Widget Start --><!-- OmniReview Widget End -->data-omnireview-widget-idomnireview_ajax_object/wp-json/omnireview/v1/get-reviews[omnireview]