
Reviews Sorted Security & Risk Analysis
wordpress.org/plugins/reviews-sortedCollect and display verified customer reviews with star ratings, schema markup, and Google reviews on your site.
Is Reviews Sorted Safe to Use in 2026?
Mostly Safe
Score 78/100Reviews Sorted is generally safe to use. 1 past CVE were resolved. Keep it updated.
The "reviews-sorted" plugin version 2.4.3 exhibits a generally positive security posture due to its consistent use of prepared statements for all SQL queries and a high percentage of properly escaped output. The presence of nonce and capability checks on its entry points further reinforces good security practices. However, there are notable areas for concern. The taint analysis revealed two flows with unsanitized paths, specifically categorized as high severity. While the static analysis did not directly pinpoint a vulnerability from these flows, their presence indicates potential for sensitive data exposure or unexpected behavior if not handled carefully. The plugin's vulnerability history, while showing only one medium severity CVE, is concerning because it is currently unpatched. The nature of the previous vulnerability being Cross-site Scripting (XSS) suggests that unsanitized input handling could be a recurring issue. Therefore, while the plugin is built on a solid foundation of secure coding principles, the identified taint flows and the unpatched XSS vulnerability warrant attention and mitigation to ensure comprehensive security.
Key Concerns
- High severity unsanitized taint flows
- Unpatched medium severity CVE
Reviews Sorted Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Reviews Sorted <= 2.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'space' Shortcode Attribute
Reviews Sorted Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Reviews Sorted Attack Surface
AJAX Handlers 3
Shortcodes 8
WordPress Hooks 12
Maintenance & Trust
Reviews Sorted Maintenance & Trust
Maintenance Signals
Community Trust
Reviews Sorted Alternatives
WP Social Ninja – Embed Social Feeds, User Reviews & Chat Widgets
wp-social-reviews
Add Facebook feeds, Instagram feeds, TikTok feeds, Facebook reviews, WhatsApp Chat, Messenger chat, Testimonial, and others using a single dashboard.
ReviewX – Multi-Criteria Reviews for WooCommerce with Google Reviews & Schema
reviewx
Drive woocommerce business growth with social proof: gather product reviews with multicriteria ratings, auto-reminder emails, discounts, and more.
Customer Reviews Collector for WooCommerce
customer-reviews-collector-for-woocommerce
Collect reviews on Google, Facebook, Yelp, Trustindex and other platforms automatically, with the help of our system.
Merchant Center Reviews for Woocommerce
merchant-center-reviews-for-woocommerce
Merchant Center Reviews for WooCommerce automates the process of requesting reviews via Google Merchant Center, helping you collect valuable feedback.
Collect Reviews
collect-reviews
The ultimate WordPress plugin for automatically collecting reviews on any platform like Google or Facebook.
Reviews Sorted Developer Profile
1 plugin · 20 total installs
How We Detect Reviews Sorted
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/reviews-sorted/assets/css/style.css/wp-content/plugins/reviews-sorted/assets/css/reviews-sorted-responsive.css/wp-content/plugins/reviews-sorted/assets/js/reviews-sorted.js/wp-content/plugins/reviews-sorted/assets/js/reviews-sorted.jsreviews-sorted/assets/css/style.css?ver=reviews-sorted/assets/css/reviews-sorted-responsive.css?ver=reviews-sorted/assets/js/reviews-sorted.js?ver=HTML / DOM Fingerprints
review-sorted-noticedata-rs-idReviewsSortedFrontend