Review Map by RevuKangaroo Security & Risk Analysis

wordpress.org/plugins/review-map-by-revukangaroo

Show off your customer's online reviews with Review Map by Revukangaroo.

20 active installs v1.7 PHP + WP 4.1+ Updated Sep 27, 2021
business-reviewsgoogle-reviewsnegative-review-blockerreview-filteryelp-reviews
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Review Map by RevuKangaroo Safe to Use in 2026?

Generally Safe

Score 85/100

Review Map by RevuKangaroo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The static analysis of the "review-map-by-revukangaroo" plugin v1.7 indicates a generally strong security posture with no identified critical or high-severity vulnerabilities in the code analysis or taint flows. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events suggests a minimal attack surface. Furthermore, the code adheres to good practices by using prepared statements for all SQL queries and implementing nonce and capability checks. However, a concern arises from the output escaping, where only 67% of outputs are properly escaped, leaving a potential for cross-site scripting (XSS) vulnerabilities if the unescaped outputs are user-controllable. The plugin also performs file operations and external HTTP requests, which, while not inherently insecure, are potential vectors that require careful handling and sanitization of any user-supplied input related to these operations. The plugin's vulnerability history is a significant strength, with zero recorded CVEs across all severities, indicating a history of secure development or effective patching. In conclusion, while the plugin demonstrates robust security practices in several key areas and benefits from a clean vulnerability history, the unescaped output remains a notable weakness that could be exploited.

Key Concerns

  • Insecure output escaping
Vulnerabilities
None known

Review Map by RevuKangaroo Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Review Map by RevuKangaroo Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
18 escaped
Nonce Checks
1
Capability Checks
1
File Operations
1
External Requests
1
Bundled Libraries
0

Output Escaping

67% escaped27 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
reviewmapby_revkang_admin (review-map-by-revuKangaroo.php:140)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Review Map by RevuKangaroo Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
filterpage_attributes_dropdown_pages_argsreview-map-by-revuKangaroo.php:47
filtertheme_page_templatesreview-map-by-revuKangaroo.php:56
filterwp_insert_post_datareview-map-by-revuKangaroo.php:63
filtertemplate_includereview-map-by-revuKangaroo.php:69
actionplugins_loadedreview-map-by-revuKangaroo.php:127
actionadmin_menureview-map-by-revuKangaroo.php:318
actionadmin_print_stylesreview-map-by-revuKangaroo.php:335
Maintenance & Trust

Review Map by RevuKangaroo Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedSep 27, 2021
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Review Map by RevuKangaroo Developer Profile

revukangaroo

2 plugins · 50 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Review Map by RevuKangaroo

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/review-map-by-revukangaroo/assets/css/style.css/wp-content/plugins/review-map-by-revukangaroo/assets/js/custom.js/wp-content/plugins/review-map-by-revukangaroo/assets/js/schema.js
Script Paths
/wp-content/plugins/review-map-by-revukangaroo/assets/js/custom.js/wp-content/plugins/review-map-by-revukangaroo/assets/js/schema.js
Version Parameters
review-map-by-revukangaroo/assets/css/style.css?ver=review-map-by-revukangaroo/assets/js/custom.js?ver=review-map-by-revukangaroo/assets/js/schema.js?ver=

HTML / DOM Fingerprints

CSS Classes
form_map_api
Data Attributes
schema_api_keyscity_apicities_apistate_apishow_map_apishow_posts_api+3 more
FAQ

Frequently Asked Questions about Review Map by RevuKangaroo