
Widgets for Hotels.com Reviews Security & Risk Analysis
wordpress.org/plugins/review-widgets-for-hotels-comEmbed Hotels.com reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Hotels.com reviews.
Is Widgets for Hotels.com Reviews Safe to Use in 2026?
Generally Safe
Score 100/100Widgets for Hotels.com Reviews has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "review-widgets-for-hotels-com" plugin v13.2.7 exhibits a mixed security posture. On the positive side, the plugin demonstrates strong adherence to secure coding practices by utilizing prepared statements for almost all SQL queries and ensuring all output is properly escaped. The extensive use of nonce checks and capability checks suggests an awareness of common WordPress security vulnerabilities. The absence of any recorded vulnerabilities, including CVEs, further bolsters its current security standing.
However, there are significant concerns regarding the attack surface. The static analysis reveals three distinct entry points, all of which lack proper authentication or permission checks. Specifically, one AJAX handler and two REST API routes are exposed without any security validation. While taint analysis did not reveal critical or high-severity issues, the presence of a flow with an unsanitized path is a potential risk, especially when combined with unprotected entry points. The use of the `unserialize` function also warrants careful consideration, as it can be a vector for vulnerabilities if not handled with extreme caution and sanitization.
Key Concerns
- AJAX handler without auth check
- REST API routes without permission callbacks
- Flow with unsanitized path
- Use of unserialize function
Widgets for Hotels.com Reviews Security Vulnerabilities
Widgets for Hotels.com Reviews Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Widgets for Hotels.com Reviews Attack Surface
AJAX Handlers 1
REST API Routes 2
WordPress Hooks 36
Maintenance & Trust
Widgets for Hotels.com Reviews Maintenance & Trust
Maintenance Signals
Community Trust
Widgets for Hotels.com Reviews Alternatives
WP Tripadvisor Review Widgets
review-widgets-for-tripadvisor
Embed Tripadvisor reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Tripadvisor reviews.
Widgets for Expedia Reviews
widgets-for-expedia-reviews
Embed Expedia reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Expedia reviews.
Review Widgets for Szallas.hu
review-widgets-for-szallas-hu
Szállás.hu review widgets. Show your szallas.hu reviews on your WordPress website to build trust and increase your SEO.
Widgets for Foursquare Reviews
review-widgets-for-foursquare
Embed Foursquare reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Foursquare reviews.
Site Reviews
site-reviews
Site Reviews is a complete review management solution that integrates with WooCommerce and SureCart and works similarly to reviews on Amazon, Tripadvi …
Widgets for Hotels.com Reviews Developer Profile
32 plugins · 976K total installs
How We Detect Widgets for Hotels.com Reviews
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/review-widgets-for-hotels-com/assets/css/widgets.css/wp-content/plugins/review-widgets-for-hotels-com/assets/js/widgets.jshttps://cdn.trustindex.io/loader.jsreview-widgets-for-hotels-com/assets/css/widgets.css?ver=review-widgets-for-hotels-com/assets/js/widgets.js?ver=HTML / DOM Fingerprints
trustindex-hotel-reviewsdata-ti-site-iddata-ti-widget-iddata-ti-widget-hashtiWidgets/wp-json/trustindex/v1/hotels[trustindex_ui_widget]