
Wiremo – Customer reviews for WordPress Security & Risk Analysis
wordpress.org/plugins/wp-reviews-by-wiremoCustomer review platform for WordPress. Automatically gather, control and display your best reviews without tech hassles. Free up time to grow your br …
Is Wiremo – Customer reviews for WordPress Safe to Use in 2026?
Generally Safe
Score 92/100Wiremo – Customer reviews for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-reviews-by-wiremo" v1.2.24 plugin exhibits a mixed security posture. While it has no known CVEs and the taint analysis shows no critical or high severity issues, the static analysis reveals several areas for concern. A significant number of entry points (6 out of 20) lack proper authentication or permission checks, which could expose them to unauthorized access or manipulation. Furthermore, the complete absence of prepared statements for SQL queries is a major red flag, making the plugin highly susceptible to SQL injection vulnerabilities. The low percentage of properly escaped output also increases the risk of cross-site scripting (XSS) attacks. The plugin's history of no vulnerabilities might indicate a lack of targeted attacks or a fortunate absence of exploitable issues thus far, but the current static analysis findings point to a potentially fragile security foundation that requires immediate attention, especially regarding the unprotected entry points and unparameterized SQL queries.
Key Concerns
- Unprotected AJAX handlers
- Unprotected REST API routes
- Raw SQL queries without prepared statements
- Low output escaping percentage
- Flows with unsanitized paths (Taint Analysis)
Wiremo – Customer reviews for WordPress Security Vulnerabilities
Wiremo – Customer reviews for WordPress Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Wiremo – Customer reviews for WordPress Attack Surface
AJAX Handlers 16
REST API Routes 2
Shortcodes 2
WordPress Hooks 32
Maintenance & Trust
Wiremo – Customer reviews for WordPress Maintenance & Trust
Maintenance Signals
Community Trust
Wiremo – Customer reviews for WordPress Alternatives
Stars Testimonials — Responsive Reviews & Star Ratings
stars-testimonials-with-slider-and-masonry-grid
Testimonials & reviews WordPress plugin for your website. Display responsive website testimonials and customer reviews with ease ⭐
Review Deck
review-deck
Manage and display customer reviews using shortcodes. Includes form, list, slider, masonry, column, summary, and floating widget display options.
Reviews Feed – Add Testimonials and Customer Reviews From Google Reviews, Yelp, TripAdvisor, and More
reviews-feed
No API key required. Display Yelp and Google reviews for any business in a clean, customizable feed on your site.
Rich Showcase for Google Reviews
widget-google-reviews
Display up to 10 Google reviews in less than a minute. Continue collecting new reviews. No limits on connected places, widgets, shortcodes and blocks.
Site Reviews
site-reviews
Site Reviews is a complete review management solution that integrates with WooCommerce and SureCart and works similarly to reviews on Amazon, Tripadvi …
Wiremo – Customer reviews for WordPress Developer Profile
2 plugins · 830 total installs
How We Detect Wiremo – Customer reviews for WordPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-reviews-by-wiremo/assets/css/admin-fonts.css/wp-content/plugins/wp-reviews-by-wiremo/assets/css/font-awesome.min.css/wp-content/plugins/wp-reviews-by-wiremo/assets/css/style.css/wp-content/plugins/wp-reviews-by-wiremo/assets/js/shortcode.js/wp-content/plugins/wp-reviews-by-wiremo/src/initBlocks.php/wp-content/plugins/wp-reviews-by-wiremo/appsero/src/Client.phpHTML / DOM Fingerprints
rateonclick="window.open('https://wiremo.co/getreviews.php?rating=window.open('https://wiremo.co/getreviews.php?rating=