
Trustpilot Reviews Security & Risk Analysis
wordpress.org/plugins/trustpilot-reviewsGenerate reviews, add TrustBox for your Woocommerce site with Trustpilot reviews plugin
Is Trustpilot Reviews Safe to Use in 2026?
Generally Safe
Score 99/100Trustpilot Reviews has a strong security track record. Known vulnerabilities have been patched promptly.
The trustpilot-reviews plugin v3.11.0 exhibits a mixed security posture. While it demonstrates good practices such as using prepared statements for all SQL queries and a high percentage of properly escaped output, there are significant concerns regarding its attack surface and historical vulnerability patterns. The presence of three AJAX handlers without authentication checks is a notable risk, as these could potentially be exploited by unauthenticated users to perform unintended actions or expose sensitive information.
Taint analysis revealed one flow with unsanitized paths, which, although not classified as critical or high severity in this report, warrants attention as it indicates a potential pathway for injection vulnerabilities if not properly handled. The plugin's history includes one medium-severity CVE, and while currently unpatched vulnerabilities are zero, the common vulnerability type being 'Missing Authorization' is a red flag. This suggests a recurring issue with securing entry points, which aligns with the static analysis finding of unprotected AJAX handlers.
In conclusion, the plugin has strengths in its data handling and output sanitization. However, the unprotected AJAX endpoints and past authorization issues present clear security weaknesses that require immediate remediation. Addressing the unprotected entry points and ensuring robust authorization checks are implemented across all handlers would significantly improve the plugin's overall security posture.
Key Concerns
- Unprotected AJAX handlers
- Flow with unsanitized paths
- Medium severity CVE in history
- Common vulnerability type: Missing Authorization
Trustpilot Reviews Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Trustpilot Reviews <= 2.5.925 - Missing Authorization
Trustpilot Reviews Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Trustpilot Reviews Attack Surface
AJAX Handlers 6
WordPress Hooks 12
Maintenance & Trust
Trustpilot Reviews Maintenance & Trust
Maintenance Signals
Community Trust
Trustpilot Reviews Alternatives
Widgets for Google Reviews
wp-reviews-plugin-for-google
Embed Google reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Google reviews.
Rich Showcase for Google Reviews
widget-google-reviews
Display up to 10 Google reviews in less than a minute. Continue collecting new reviews. No limits on connected places, widgets, shortcodes and blocks.
Social Icons
social-icons
Social Icons provides you with an easy way to display various popular social icons via widgets and shortcode
WP Testimonials
testimonial-widgets
Display your Testimonials on your website fast and easily. 21 widget types, 25 widget styles available. (Free Plugin)
Widgets for Booking.com Reviews
review-widgets-for-booking-com
Embed Booking.com reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Booking.com reviews.
Trustpilot Reviews Developer Profile
1 plugin · 30K total installs
How We Detect Trustpilot Reviews
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/trustpilot-reviews/assets/css/admin-styles.css/wp-content/plugins/trustpilot-reviews/assets/css/tp-styles.css/wp-content/plugins/trustpilot-reviews/assets/js/admin-scripts.js/wp-content/plugins/trustpilot-reviews/assets/js/tp-scripts.js/wp-content/plugins/trustpilot-reviews/assets/js/tp-scripts.js/wp-content/plugins/trustpilot-reviews/assets/js/admin-scripts.jstrustpilot-reviews/assets/css/admin-styles.css?ver=trustpilot-reviews/assets/css/tp-styles.css?ver=trustpilot-reviews/assets/js/admin-scripts.js?ver=trustpilot-reviews/assets/js/tp-scripts.js?ver=HTML / DOM Fingerprints
trustpilot-reviews<!-- trustpilot --><!-- Trustpilot Widget -->data-tp-widgetTrustpilot/wp-json/trustpilot-reviews/[trustpilot_reviews]