
Product Review Security & Risk Analysis
wordpress.org/plugins/product-reviewAn extendable and powerful WordPress plugin for product review.
Is Product Review Safe to Use in 2026?
Generally Safe
Score 85/100Product Review has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "product-review" plugin v1.2.3 exhibits a concerning security posture due to a significant number of unprotected entry points. Specifically, all three identified AJAX handlers lack authentication checks. This means any unauthenticated user could potentially trigger these handlers, leading to an increased risk of unauthorized actions or data manipulation. While the plugin demonstrates good practices in SQL query handling by exclusively using prepared statements and has no recorded vulnerability history, the unprotected AJAX handlers present a clear and present danger. The limited output escaping also raises concerns, as it could facilitate cross-site scripting (XSS) vulnerabilities if user-supplied data is not properly sanitized before being displayed. The absence of critical or high severity taint flows is a positive sign, but it does not negate the risks introduced by the unprotected entry points and insufficient output escaping.
Key Concerns
- AJAX handlers without auth checks
- Low output escaping percentage
Product Review Security Vulnerabilities
Product Review Code Analysis
Output Escaping
Data Flow Analysis
Product Review Attack Surface
AJAX Handlers 3
WordPress Hooks 19
Maintenance & Trust
Product Review Maintenance & Trust
Maintenance Signals
Community Trust
Product Review Alternatives
WP Ultimate Review
wp-ultimate-review
WP Ultimate Review is the perfect plugin to collect & display customers' feedback effortlessly on products, services, & content in WordPress.
WiserReview Product Reviews for WooCommerce
wiser-review
Collect, manage, and display powerful product reviews and testimonials for WooCommerce stores. Boost trust and conversion with automated review collec …
WPSSO Ratings and Reviews
wpsso-ratings-and-reviews
Adds Ratings and Reviews Features to the WordPress Comments System.
Builder for WooCommerce product reviews shortcodes – ReviewShort
woo-product-reviews-shortcode
Show WooCommerce customer feedback anywhere with WooCommerce reviews shortcodes, beautifully and ...
Review & Product Review by Review Builder
review-builder
Review & Product Review by Review Builder plugin allows you to build a review and star rating section so customers can leave a review for your pro …
Product Review Developer Profile
6 plugins · 180 total installs
How We Detect Product Review
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/product-review/assets/css/product-review-admin.css/wp-content/plugins/product-review/assets/js/product-review-admin.jsproduct-review/assets/css/product-review-admin.css?ver=product-review/assets/js/product-review-admin.js?ver=HTML / DOM Fingerprints
survey-noticedata-participatecbpr_load_scriptscbpr_post_typescbpr_metacbpr_average_ratingcbpr_survey