ReviewsJet Security & Risk Analysis

wordpress.org/plugins/reviewsjet

ReviewsJet by FlexByt, Inc. is designed to make review management affordable without compromising on quality.

0 active installs v1.0.0 PHP 7.2+ WP 5.2+ Updated Mar 20, 2025
customer-reviewsreviewssocial-prooftestimonialswidgets
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is ReviewsJet Safe to Use in 2026?

Generally Safe

Score 92/100

ReviewsJet has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The reviewsjet plugin v1.0.0 exhibits a generally strong security posture based on the static analysis, with a significant emphasis on secure coding practices. All SQL queries utilize prepared statements, and all output is properly escaped, which are excellent indicators of a well-developed plugin. The absence of file operations and external HTTP requests further reduces the potential attack surface. However, the presence of two AJAX handlers without authentication checks presents a notable concern. While there are no known vulnerabilities (CVEs) recorded for this plugin, the lack of historical data also means there's limited information to assess its long-term security track record. The plugin's overall security is good, but the unprotected AJAX endpoints require immediate attention to mitigate potential risks.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

ReviewsJet Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

ReviewsJet Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

ReviewsJet Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
0
45 escaped
Nonce Checks
3
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

100% escaped45 total outputs
Attack Surface
2 unprotected

ReviewsJet Attack Surface

Entry Points4
Unprotected2

AJAX Handlers 3

authwp_ajax_generate_jwt_redirectincludes/admin-page.php:12
authwp_ajax_reviewsjet_store_authreviewsjet.php:65
authwp_ajax_reviewsjet_logoutreviewsjet.php:90

Shortcodes 1

[rj-form] includes/shortcodes.php:55
WordPress Hooks 6
actionadmin_menuincludes/admin-page.php:10
actionadmin_enqueue_scriptsincludes/admin-page.php:11
actioninitincludes/shortcodes.php:42
actionwp_enqueue_scriptsincludes/shortcodes.php:43
actionwp_footerincludes/shortcodes.php:44
actionwp_footerincludes/shortcodes.php:45
Maintenance & Trust

ReviewsJet Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 20, 2025
PHP min version7.2
Downloads335

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

ReviewsJet Developer Profile

FlexByt, Inc.

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ReviewsJet

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/reviewsjet/assets/css/admin.css/wp-content/plugins/reviewsjet/assets/js/admin.js/wp-content/plugins/reviewsjet/assets/images/logo-crown.svg
Script Paths
/wp-content/plugins/reviewsjet/assets/js/admin.js
Version Parameters
reviewsjet/assets/css/admin.css?ver=reviewsjet/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
reviewsjet-admin-pagemain-containerauth-wrapperauth-formauth-titleform-groupform-labellogin-form+1 more
Data Attributes
data-shortcode
JS Globals
reviewsjetAdmin
REST Endpoints
/reviewsjet/v1
FAQ

Frequently Asked Questions about ReviewsJet