SP Feedbacks – Your eBay in Your Site Security & Risk Analysis

wordpress.org/plugins/siliconplex-ebay-feedback-listing

Looking forward to integrate your Ebay Feedbacks on your wordpress site "SP Ebay Feedback Listing" does the job for you.

10 active installs v1.0.0 PHP 7.1+ WP 5.3+ Updated Dec 18, 2019
ebay-feedbacksebay-reviewsfeedbacksreviews
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is SP Feedbacks – Your eBay in Your Site Safe to Use in 2026?

Generally Safe

Score 85/100

SP Feedbacks – Your eBay in Your Site has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The siliconplex-ebay-feedback-listing plugin version 1.0.0 presents a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, exclusively using prepared statements, and has no known historical vulnerabilities, suggesting a potentially stable codebase. However, significant concerns arise from the attack surface analysis. The plugin exposes two AJAX handlers without any authentication checks, creating a clear vulnerability for unauthorized access and potential manipulation.

Furthermore, the code signals reveal a severe lack of output escaping, with only 13% of outputs being properly sanitized. This is a critical weakness that can easily lead to Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the website. The absence of capability checks on AJAX handlers and the overall low percentage of proper output escaping are particularly worrying. While the taint analysis showed no immediate critical or high severity flows, this is likely due to the limited scope of the analysis or the lack of exploitable paths within the examined code. The absence of historical vulnerabilities is a positive, but it does not negate the immediate risks posed by the current code's insecure implementations.

Key Concerns

  • AJAX handlers without authentication checks
  • Low percentage of properly escaped output
  • AJAX handlers without capability checks
Vulnerabilities
None known

SP Feedbacks – Your eBay in Your Site Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

SP Feedbacks – Your eBay in Your Site Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
1 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

13% escaped8 total outputs
Attack Surface
2 unprotected

SP Feedbacks – Your eBay in Your Site Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 2

noprivwp_ajax_sp_ebay_review_fetchincludes\Base\Enqueue.php:25
authwp_ajax_sp_ebay_review_fetchincludes\Base\Enqueue.php:26

Shortcodes 1

[sp_sc_ebay_feedbacks] templates\public\feedbacks\feedbacks_shortcode.php:67
WordPress Hooks 4
actionadmin_menuincludes\Api\SettingsApi.php:29
actionadmin_initincludes\Api\SettingsApi.php:33
actionadmin_enqueue_scriptsincludes\Base\Enqueue.php:23
actionwp_enqueue_scriptsincludes\Base\Enqueue.php:24
Maintenance & Trust

SP Feedbacks – Your eBay in Your Site Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedDec 18, 2019
PHP min version7.1
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

SP Feedbacks – Your eBay in Your Site Developer Profile

usamasiliconplex

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SP Feedbacks – Your eBay in Your Site

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/siliconplex-ebay-feedback-listing/assets/admin/css/style.css/wp-content/plugins/siliconplex-ebay-feedback-listing/assets/admin/js/script.js/wp-content/plugins/siliconplex-ebay-feedback-listing/assets/public/css/ebay_feedbacks.css/wp-content/plugins/siliconplex-ebay-feedback-listing/assets/public/js/ebay_feedbacks.js
Script Paths
/wp-content/plugins/siliconplex-ebay-feedback-listing/assets/admin/js/script.js/wp-content/plugins/siliconplex-ebay-feedback-listing/assets/public/js/ebay_feedbacks.js

HTML / DOM Fingerprints

CSS Classes
sp-ebay-feedback-containeranimate-bottomtabletable-striped
Data Attributes
id="sp-ebay-feedback-container"id="div_feedbacks"id="span_TotalNumberOfEntries"id="span_PageNumber"id="span_TotalNumberOfPages"id="tblFeedback"+2 more
JS Globals
sp_ebay_reviewgetEbayFeedbacks
REST Endpoints
/wp-json/wp/v2/users
Shortcode Output
<div id="sp-ebay-feedback-container"><h3>Ebay Feedbacks</h3><div id="div_feedbacks" class="animate-bottom"><p>
FAQ

Frequently Asked Questions about SP Feedbacks – Your eBay in Your Site