
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Security & Risk Analysis
wordpress.org/plugins/review-for-discountReviewify helps you collect photo & video reviews, reward customers with coupons, and automate WooCommerce review emails.
Is Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Safe to Use in 2026?
Generally Safe
Score 97/100Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The 'review-for-discount' plugin v1.0.8 exhibits a concerning security posture due to its exposed attack surface and SQL query practices. While the plugin demonstrates strong output escaping and a lack of critical taint flows, the presence of two AJAX handlers without authorization checks is a significant risk. This directly exposes these entry points to potential unauthorized access and manipulation by unauthenticated users, which could lead to unintended actions or data compromise. The historical vulnerability data, including a past high-severity CVE related to missing authorization, reinforces this concern and suggests a recurring pattern of authorization weaknesses. Despite the positive aspects of code escaping, the fundamental lack of security controls on entry points and the use of raw SQL queries present a substantial risk that needs immediate attention. The plugin's strengths in output handling are overshadowed by its vulnerabilities in access control and data handling, indicating a need for significant security improvements.
Key Concerns
- Unprotected AJAX handlers
- Raw SQL queries without prepared statements
- History of High severity CVE (Missing Authorization)
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Reviewify <= 1.0.7 - Missing Authorization to Authenticated (Contributor+) Arbitrary WooCommerce Coupon Creation
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Release Timeline
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Attack Surface
AJAX Handlers 2
WordPress Hooks 20
Maintenance & Trust
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Alternatives
Customer Reviews for WooCommerce
customer-reviews-woocommerce
Customer Reviews for WooCommerce plugin helps you get more sales with social proof. Set up automated review reminders and increase conversion rate.
Photo Reviews for WooCommerce
woo-photo-reviews
Let customers attach photos to reviews, enhanced with filterable grids and overall ratings. Auto-send review reminders and coupon emails
ReviewX – Multi-Criteria Reviews for WooCommerce with Google Reviews & Schema
reviewx
Drive woocommerce business growth with social proof: gather product reviews with multicriteria ratings, auto-reminder emails, discounts, and more.
WiserReview Product Reviews for WooCommerce
wiser-review
Collect, manage, and display powerful product reviews and testimonials for WooCommerce stores. Boost trust and conversion with automated review collec …
RaveCapture Reviews For Woocommerce
trustspot-reviews-for-woocommerce
RaveCapture provides brands with a comprehensive solution to capture ratings & reviews, video testimonials, photos, product Q&A and more.
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce Developer Profile
9 plugins · 4K total installs
How We Detect Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/review-for-discount/admin/css/select2.min.css/wp-content/plugins/review-for-discount/admin/css/wc-review-discounts-admin.css/wp-content/plugins/review-for-discount/admin/js/select2.full.min.js/wp-content/plugins/review-for-discount/admin/js/wc-review-discounts-admin.jsadmin/js/select2.full.min.jsadmin/js/wc-review-discounts-admin.jsreview-for-discount/admin/css/select2.min.css?ver=review-for-discount/admin/css/wc-review-discounts-admin.css?ver=review-for-discount/admin/js/select2.full.min.js?ver=review-for-discount/admin/js/wc-review-discounts-admin.js?ver=HTML / DOM Fingerprints
data-nonce="xswcrd_test_email"xswcrd