
Smart Reviews Display Security & Risk Analysis
wordpress.org/plugins/smart-reviews-displayDisplay WordPress.org, Yelp, and Google reviews via shortcode or block with responsive layouts, avatars, ratings, and smart caching.
Is Smart Reviews Display Safe to Use in 2026?
Generally Safe
Score 100/100Smart Reviews Display has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "smart-reviews-display" v1.0.5 plugin exhibits a generally strong security posture with excellent adherence to secure coding practices. The complete absence of raw SQL queries and the near-perfect output escaping are particularly commendable, significantly reducing the risk of common web vulnerabilities like SQL injection and XSS. The presence of nonce and capability checks on all identified AJAX entry points further strengthens its defenses. However, the taint analysis reveals a concerning pattern with four high-severity flows exhibiting unsanitized paths. While these do not directly translate to immediate exploitable vulnerabilities due to other security measures, they represent potential weak points that could be exploited if other defenses were bypassed or if the plugin is updated in the future with less stringent checks. The plugin's clean vulnerability history is a positive indicator, suggesting a commitment to security by the developers. Despite the identified taint flow concerns, the overall security of this version is good, with the primary area for improvement being the sanitization of the identified high-severity taint flows.
Key Concerns
- High severity unsanitized taint flows
Smart Reviews Display Security Vulnerabilities
Smart Reviews Display Release Timeline
Smart Reviews Display Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Smart Reviews Display Attack Surface
AJAX Handlers 7
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
Smart Reviews Display Maintenance & Trust
Maintenance Signals
Community Trust
Smart Reviews Display Alternatives
Reviews Feed – Add Testimonials and Customer Reviews From Google Reviews, Yelp, TripAdvisor, and More
reviews-feed
No API key required. Display Yelp and Google reviews for any business in a clean, customizable feed on your site.
RicReviews
ricreviews
Display Google Places reviews on your WordPress site using a simple shortcode. Fetches reviews from Google Places API (New).
Rich Showcase for Google Reviews
widget-google-reviews
Display up to 10 Google reviews in less than a minute. Continue collecting new reviews. No limits on connected places, widgets, shortcodes and blocks.
Site Reviews
site-reviews
Site Reviews is a complete review management solution that integrates with WooCommerce and SureCart and works similarly to reviews on Amazon, Tripadvi …
WP Google Review Slider
wp-google-places-review-slider
Display Google reviews on your site and even show user images! No address, no problem! Also works with Service Area Businesses and Products! Lightwei …
Smart Reviews Display Developer Profile
7 plugins · 70 total installs
How We Detect Smart Reviews Display
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/smart-reviews-display/assets/frontend.csssmart-reviews-display/assets/frontend.css?ver=HTML / DOM Fingerprints
smart-reviews-displaysmart-reviews-aggregatedata-review-slugdata-review-typedata-review-sourcedata-review-limitdata-review-titledata-review-description+6 more[smart_reviews<em>[smart_reviews] error: Review with ID