
Zetpy Product Review Security & Risk Analysis
wordpress.org/plugins/zetpy-product-reviewAdvanced product review system with verified purchases and media uploads for WooCommerce.
Is Zetpy Product Review Safe to Use in 2026?
Generally Safe
Score 100/100Zetpy Product Review has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "zetpy-product-review" v1.0.4 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of unprotected entry points, 100% use of prepared statements for SQL queries, and comprehensive output escaping indicate good development practices. The significant number of nonce and capability checks further contribute to its robustness against common web attacks. The plugin also boasts no known historical vulnerabilities, which is a positive indicator.
However, a significant concern arises from the taint analysis, which revealed 8 high-severity flows with unsanitized paths. While these do not appear to be directly exploitable due to the lack of direct AJAX or REST API exposure without checks, they suggest potential weaknesses in how user-supplied data is handled internally. The single file operation, while not inherently malicious, could be a vector if not properly secured. The presence of these high-severity taint flows, even without immediate exploitability in the current configuration, warrants attention to ensure data sanitization is robust throughout the plugin's internal logic.
In conclusion, the plugin has many strengths, particularly in its handling of direct web-facing threats. The primary weakness lies in the identified high-severity taint flows, which, while not currently leading to direct vulnerabilities, represent a potential area for future exploitation or misconfiguration if not addressed. Continued vigilance and code review focusing on these internal data handling paths are recommended.
Key Concerns
- High severity taint flows with unsanitized paths
- File operations present
Zetpy Product Review Security Vulnerabilities
Zetpy Product Review Release Timeline
Zetpy Product Review Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Zetpy Product Review Attack Surface
AJAX Handlers 17
WordPress Hooks 32
Maintenance & Trust
Zetpy Product Review Maintenance & Trust
Maintenance Signals
Community Trust
Zetpy Product Review Alternatives
RaveCapture Reviews For Woocommerce
trustspot-reviews-for-woocommerce
RaveCapture provides brands with a comprehensive solution to capture ratings & reviews, video testimonials, photos, product Q&A and more.
Revio Reviews
revio-reviews
Collect and showcase real customer testimonials for WooCommerce. Customers can record or upload video reviews directly from their browsers.
Revoty – Sales Booster for WooCommerce
revoty
Transform your WooCommerce store with photo reviews! Let customers share authentic product photos, build trust, and boost conversions.
Photo Reviews for WooCommerce
woo-photo-reviews
Let customers attach photos to reviews, enhanced with filterable grids and overall ratings. Auto-send review reminders and coupon emails
ReviewX – Multi-Criteria Reviews for WooCommerce with Google Reviews & Schema
reviewx
Drive woocommerce business growth with social proof: gather product reviews with multicriteria ratings, auto-reminder emails, discounts, and more.
Zetpy Product Review Developer Profile
2 plugins · 0 total installs
How We Detect Zetpy Product Review
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/zetpy-product-review/assets/css/frontend.css/wp-content/plugins/zetpy-product-review/assets/css/magnific-popup.css/wp-content/plugins/zetpy-product-review/assets/css/owl.carousel.min.css/wp-content/plugins/zetpy-product-review/assets/css/style.css/wp-content/plugins/zetpy-product-review/assets/js/frontend.js/wp-content/plugins/zetpy-product-review/assets/js/magnific-popup.js/wp-content/plugins/zetpy-product-review/assets/js/owl.carousel.min.js/wp-content/plugins/zetpy-product-review/assets/js/script.js/wp-content/plugins/zetpy-product-review/assets/js/frontend.js/wp-content/plugins/zetpy-product-review/assets/js/magnific-popup.js/wp-content/plugins/zetpy-product-review/assets/js/owl.carousel.min.js/wp-content/plugins/zetpy-product-review/assets/js/script.js/wp-content/plugins/zetpy-product-review/assets/css/frontend.css?ver=/wp-content/plugins/zetpy-product-review/assets/css/magnific-popup.css?ver=/wp-content/plugins/zetpy-product-review/assets/css/owl.carousel.min.css?ver=/wp-content/plugins/zetpy-product-review/assets/css/style.css?ver=/wp-content/plugins/zetpy-product-review/assets/js/frontend.js?ver=/wp-content/plugins/zetpy-product-review/assets/js/magnific-popup.js?ver=/wp-content/plugins/zetpy-product-review/assets/js/owl.carousel.min.js?ver=/wp-content/plugins/zetpy-product-review/assets/js/script.js?ver=HTML / DOM Fingerprints
zetpy-product-review-formzetpy-review-listzetpy-single-reviewzetpy-my-reviewszetpy-review-form-wrapperzetpy-reviews-main-wrapperzetpy-review-item<!-- Zetpy Product Review Options --><!-- Zetpy Product Review Section --><!-- Zetpy Product Review Form --><!-- Zetpy Single Review -->+3 moredata-product-iddata-review-iddata-max-ratingdata-min-ratingdata-item-idzetpyProductReviewzetpy_frontend_paramsZetpyProductReviewFrontend/wp-json/zetpy-product-review/v1/submit-review/wp-json/zetpy-product-review/v1/get-reviews/wp-json/zetpy-product-review/v1/delete-review[zetpy_product_review_form][zetpy_product_reviews][zetpy_my_reviews]