
ThePerfectWedding.nl Widget Security & Risk Analysis
wordpress.org/plugins/theperfectweddingnl-widgetMet deze widget is het mogelijk het gemiddelde cijfer van uw ervaringen op ThePerfectWedding.nl op uw WordPress website te publiceren.
Is ThePerfectWedding.nl Widget Safe to Use in 2026?
Generally Safe
Score 90/100ThePerfectWedding.nl Widget has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin "theperfectweddingnl-widget" v2.11 exhibits a mixed security posture. On the positive side, static analysis reveals a remarkably small attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed without authentication. The absence of dangerous functions and file operations is also a good sign. Furthermore, all SQL queries utilize prepared statements, and there's a clear attempt to implement security measures with one nonce check observed. However, concerns arise from the output escaping, with only 40% of outputs being properly escaped, suggesting a potential for Cross-Site Scripting (XSS) vulnerabilities. The vulnerability history is also a significant concern, indicating a past high-severity vulnerability, specifically Cross-Site Request Forgery (CSRF). While the current version has no unpatched vulnerabilities, the recurring nature of CSRF issues in its history warrants caution and suggests a potential recurring weakness in handling user input or state management. Despite the current clean bill of health from static analysis, the history and escaping issues point to areas needing improvement.
Key Concerns
- Low percentage of properly escaped output
- Past high severity vulnerability (CSRF)
ThePerfectWedding.nl Widget Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
ThePerfectWedding.nl Widget <= 2.8 - Cross-Site Request Forgery to Stored Cross-Site Scripting
ThePerfectWedding.nl Widget Code Analysis
Output Escaping
Data Flow Analysis
ThePerfectWedding.nl Widget Attack Surface
WordPress Hooks 3
Maintenance & Trust
ThePerfectWedding.nl Widget Maintenance & Trust
Maintenance Signals
Community Trust
ThePerfectWedding.nl Widget Alternatives
Site Reviews
site-reviews
Site Reviews is a complete review management solution that integrates with WooCommerce and SureCart and works similarly to reviews on Amazon, Tripadvi …
Reviews and Rating – Google Reviews
g-business-reviews-rating
Completely restriction-free Google reviews and rating as Shortcode/Widget. Extensive display options; delicious themes; includes Structured Data.
WP Testimonials
testimonial-widgets
Display your Testimonials on your website fast and easily. 21 widget types, 25 widget styles available. (Free Plugin)
Absolute Reviews
absolute-reviews
Add beautiful responsive and modern review boxes with valid JSON-LD schema to your posts with the “Advanced Reviews” plugin.
Embedder for Google Reviews
embedder-for-google-reviews
This Google Reviews Plugin pulls reviews from Google profiles and displays them on your website.
ThePerfectWedding.nl Widget Developer Profile
1 plugin · 300 total installs
How We Detect ThePerfectWedding.nl Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/theperfectweddingnl-widget/css/tpw-widget-styles.css/wp-content/plugins/theperfectweddingnl-widget/js/tpw-widget-script.js/wp-content/plugins/theperfectweddingnl-widget/js/tpw-widget-script.jstheperfectweddingnl-widget/css/tpw-widget-styles.css?ver=theperfectweddingnl-widget/js/tpw-widget-script.js?ver=HTML / DOM Fingerprints
tpw-widgettpw-rating-starstpw-review-itemdata-tpw-idtpwWidgetSettings[tpw_widget]