TargetBay Product and Site Reviews Security & Risk Analysis

wordpress.org/plugins/targetbay-product-and-site-reviews

Generate tons of product reviews for your WooCommerce site with TargetBay

30 active installs v1.4.5 PHP 8.0+ WP 6.0+ Updated Mar 14, 2025
custom-questions-for-reviewscustomer-feedback-and-ratingspicture-and-video-reviewsproduct-and-site-reviewsquestion-answer-engagement
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is TargetBay Product and Site Reviews Safe to Use in 2026?

Generally Safe

Score 92/100

TargetBay Product and Site Reviews has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "targetbay-product-and-site-reviews" v1.4.5 exhibits a generally strong security posture based on the static analysis. The absence of any identified attack surface points, such as unprotected AJAX handlers, REST API routes, or shortcodes, significantly limits the potential for external exploitation. Furthermore, the code signals indicate good practices, with 100% of SQL queries using prepared statements and a high percentage of output being properly escaped. The presence of nonce and capability checks, though limited in number, further contributes to its defensibility.

However, a notable area of concern is the presence of external HTTP requests (2) without explicit mention of authentication or sanitization, which could potentially be leveraged for various attacks if the data sent or received is not handled securely. While taint analysis found no issues, this often relies on specific taint sources being present and detectable. The vulnerability history being completely clean is a positive indicator, suggesting a history of secure development or prompt patching, but it doesn't negate potential zero-day vulnerabilities that might exist in any software.

In conclusion, this plugin appears to be developed with security in mind, demonstrating good practices in core areas. The primary risk lies in the unaddressed nature of the external HTTP requests, which warrants further investigation. The lack of any historical vulnerabilities is a strong positive, but vigilance against potential undiscovered issues should always be maintained.

Key Concerns

  • External HTTP requests without clear auth/sanitization
  • Some output not properly escaped (19%)
Vulnerabilities
None known

TargetBay Product and Site Reviews Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

TargetBay Product and Site Reviews Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
11
46 escaped
Nonce Checks
4
Capability Checks
1
File Operations
0
External Requests
2
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

81% escaped57 total outputs
Attack Surface

TargetBay Product and Site Reviews Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionadmin_initincludes\class-tbwc-targetbay-settings.php:99
actionadmin_menuincludes\class-tbwc-targetbay-settings.php:100
actionwoocommerce_after_single_product_summaryincludes\class-tbwc-targetbay-tracking.php:324
actionwoocommerce_single_product_summaryincludes\class-tbwc-targetbay-tracking.php:325
actionwoocommerce_shop_loop_item_titleincludes\class-tbwc-targetbay-tracking.php:330
actionwoocommerce_thankyouincludes\class-tbwc-targetbay-tracking.php:334
actioninittargetbay-product-and-site-reviews.php:181
actionall_admin_noticestargetbay-product-and-site-reviews.php:255
actionadmin_inittargetbay-product-and-site-reviews.php:258
actionplugins_loadedtargetbay-product-and-site-reviews.php:352
Maintenance & Trust

TargetBay Product and Site Reviews Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 14, 2025
PHP min version8.0
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Alternatives

TargetBay Product and Site Reviews Alternatives

No alternatives data available yet.

Developer Profile

TargetBay Product and Site Reviews Developer Profile

targetbay

1 plugin · 30 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect TargetBay Product and Site Reviews

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/targetbay-product-and-site-reviews/assets/css/targetbay-reviews.css/wp-content/plugins/targetbay-product-and-site-reviews/assets/js/targetbay-reviews.js/wp-content/plugins/targetbay-product-and-site-reviews/assets/js/targetbay-reviews-admin.js
Generator Patterns
TargetBay Product and Site Reviews
Script Paths
/wp-content/plugins/targetbay-product-and-site-reviews/assets/js/targetbay-reviews.js/wp-content/plugins/targetbay-product-and-site-reviews/assets/js/targetbay-reviews-admin.js
Version Parameters
targetbay-product-and-site-reviews/assets/css/targetbay-reviews.css?ver=targetbay-product-and-site-reviews/assets/js/targetbay-reviews.js?ver=targetbay-product-and-site-reviews/assets/js/targetbay-reviews-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
targetbay-reviews-wrapper
Data Attributes
data-tb-product-iddata-tb-site-iddata-tb-review-id
JS Globals
TargetBayReviews
REST Endpoints
/wp-json/targetbay-reviews/v1/get-reviews
Shortcode Output
[targetbay_reviews][targetbay_product_reviews]
FAQ

Frequently Asked Questions about TargetBay Product and Site Reviews