
Reviews for Elementor Security & Risk Analysis
wordpress.org/plugins/reviews-for-elementorThis plugin will create a testimonial Reviews from Google API for Elementor.
Is Reviews for Elementor Safe to Use in 2026?
Generally Safe
Score 85/100Reviews for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'reviews-for-elementor' plugin v1.1.1 exhibits a generally strong security posture with several good practices in place. Notably, the static analysis shows no critical or high severity taint flows, no dangerous functions, and all SQL queries utilize prepared statements. The plugin also implements nonce and capability checks, indicating an awareness of common WordPress security vulnerabilities. The absence of any recorded CVEs further supports this positive assessment.
However, a significant concern arises from the output escaping. With 56% of outputs properly escaped, this leaves a considerable portion (44%) vulnerable to Cross-Site Scripting (XSS) attacks. This is a common and impactful vulnerability type that could be exploited if user-provided data is not properly sanitized before being displayed. The plugin also makes external HTTP requests, which, while not inherently insecure, introduce potential risks if the target endpoints are compromised or if the data sent/received is not handled securely.
In conclusion, while the plugin demonstrates a commendable effort in securing its core functionalities and minimizing attack vectors, the unescaped output presents a tangible risk. The vulnerability history is currently clean, but the static analysis highlights a clear area for improvement in output sanitization to prevent potential XSS vulnerabilities.
Key Concerns
- Significant portion of outputs not properly escaped
- External HTTP requests present
Reviews for Elementor Security Vulnerabilities
Reviews for Elementor Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Reviews for Elementor Attack Surface
AJAX Handlers 1
WordPress Hooks 15
Maintenance & Trust
Reviews for Elementor Maintenance & Trust
Maintenance Signals
Community Trust
Reviews for Elementor Alternatives
Widgets for Google Reviews
wp-reviews-plugin-for-google
Embed Google reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Google reviews.
Reviews Feed – Add Testimonials and Customer Reviews From Google Reviews, Yelp, TripAdvisor, and More
reviews-feed
No API key required. Display Yelp and Google reviews for any business in a clean, customizable feed on your site.
Rich Showcase for Google Reviews
widget-google-reviews
Display up to 10 Google reviews in less than a minute. Continue collecting new reviews. No limits on connected places, widgets, shortcodes and blocks.
WP Google Review Slider
wp-google-places-review-slider
Display Google reviews on your site and even show user images! No address, no problem! Also works with Service Area Businesses and Products! Lightwei …
WP Social Ninja – Embed Social Feeds, User Reviews & Chat Widgets
wp-social-reviews
Add Facebook feeds, Instagram feeds, TikTok feeds, Facebook reviews, WhatsApp Chat, Messenger chat, Testimonial, and others using a single dashboard.
Reviews for Elementor Developer Profile
4 plugins · 110 total installs
How We Detect Reviews for Elementor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/reviews-for-elementor/assets/js/widgets.js/wp-content/plugins/reviews-for-elementor/assets/css/widgets.css/wp-content/plugins/reviews-for-elementor/assets/css/style_reviews.css/wp-content/plugins/reviews-for-elementor/assets/js/bdt-uikit.js/wp-content/plugins/reviews-for-elementor/assets/js/bdt-uikit-icons.js/wp-content/plugins/reviews-for-elementor/assets/js/widgets.js/wp-content/plugins/reviews-for-elementor/assets/js/bdt-uikit.js/wp-content/plugins/reviews-for-elementor/assets/js/bdt-uikit-icons.jsreviews-for-elementor/assets/js/widgets.js?ver=reviews-for-elementor/assets/css/widgets.css?ver=reviews-for-elementor/assets/css/style_reviews.css?ver=reviews-for-elementor/assets/js/bdt-uikit.js?ver=reviews-for-elementor/assets/js/bdt-uikit-icons.js?ver=HTML / DOM Fingerprints
elementor-widget-testimonial-grid-widgetdata-elementor-iddata-elementor-post-typedata-elementor-typeRFE_PLG_URL