
Rating Security & Risk Analysis
wordpress.org/plugins/rating-addAdd Star rating & Review system to your Posts, Pages & Products of your website easily in minutes.
Is Rating Safe to Use in 2026?
Generally Safe
Score 85/100Rating has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "rating-add" plugin v1.1 presents a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, exclusively using prepared statements, and has no recorded vulnerability history, suggesting a potentially well-maintained or less targeted codebase. However, significant concerns arise from its attack surface. A substantial portion of its entry points, specifically all four AJAX handlers, lack authentication checks. Furthermore, the presence of the `exec` function, a dangerous function, coupled with only 34% of output being properly escaped, indicates potential vulnerabilities related to command injection and cross-site scripting (XSS). The absence of any taint analysis data is also a weakness, as it means potentially dangerous data flows might have gone undetected. While the plugin avoids common pitfalls like unpatched CVEs or raw SQL, the unprotected AJAX endpoints and the `exec` function represent immediate and serious risks.
Key Concerns
- AJAX handlers without auth checks
- Dangerous function 'exec' found
- Low percentage of properly escaped output
- Lack of taint analysis data
Rating Security Vulnerabilities
Rating Release Timeline
Rating Code Analysis
Dangerous Functions Found
Output Escaping
Rating Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
Rating Maintenance & Trust
Maintenance Signals
Community Trust
Rating Alternatives
kk Star Ratings – Rate Post & Collect User Feedbacks
kk-star-ratings
kk Star Ratings allows blog visitors to involve and interact more effectively with your website by rating posts.
Testimonial – Testimonial Slider and Showcase Plugin
testimonial-slider-and-showcase
Display customer testimonials beautifully with responsive slider and grid layouts. Build trust and boost conversions with this WordPress testimonial p …
Review & testimonial widgets
trustmary
Add reviews to your website with Trustmary’s review and testimonial widgets: Google Review Widget, Facebook Review Widget, Tripadvisor Review Widget, …
Star Rating Block for Block Editor
pb-star-rating-block
This block will help you to display star rating using Gutenberg Editor.
WPSSO Ratings and Reviews
wpsso-ratings-and-reviews
Adds Ratings and Reviews Features to the WordPress Comments System.
Rating Developer Profile
12 plugins · 14K total installs
How We Detect Rating
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rating-add/css/wsrpAdminCss.css/wp-content/plugins/rating-add/js/admin.js/wp-content/plugins/rating-add/js/rater.js/wp-content/plugins/rating-add/js/admin.js/wp-content/plugins/rating-add/js/rater.jswsrp-admin-css?ver=1.00HTML / DOM Fingerprints
wsrp-rating-containerwsrp-star-ratingdata-wsrp-post-idWSRP_PLUGIN_URL[wsrp_rating<div style='padding: 7px 10px 8px 31px;background: #fff;border: 1px solid #D2D2D2;border-radius: 3px;width: 20%; min-width:200px;font-weight: bold;' >[wsrp_rating id='