SV Proven Expert
SV Proven Expert has 3 disclosed vulnerabilities in the WordSec catalog, reported between 2022 and 2025; 2 are fixed and 1 remains unpatched as of September 2026. Their average CVSS score is 5.6, and the most serious one scores 6.3 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (33%). Other recurring categories include Cross-Site Scripting, Missing Authorization.
2 of the records (67%) have a vendor fix, while 1 remain unpatched. The oldest unresolved one dates back to 2025.
2 independent researchers contributed these findings, one record each. SV Proven Expert is installed on roughly 800 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.5.10.
CVE-2025-58010SV Proven Expert <= 2.0.06 - Cross-Site Request Forgery
Read the full analysisVulnerability Records

SV Proven Expert
Author
straightvisions GmbH
Requires: CuRL PHP extension Proven Expert PLUS plan or higher Service Description ProvenExpert is a service for company reviews. A key feature (“PLUS” plan required) is showing the company review stars on your website. These will be retrieved from different review-providers like Google, Facebook etc. Plugin Description This plugin is build to show review stars retrieved via ProvenExpert on your site – additionally this enables review stars of your website’s entries in Google’s search engine result pages. Team Developed and maintained by STRAIGHTVISIONS Missing a feature? Please use the plugin support forum here on WordPress.org. We will add your wish – if achievable – on our todo list. Please note that we can not give any time estimate for that list or any feature request. Paid Services Nevertheless, feel free to contact our WordPress Agency if you have any of the following needs: get a customization get a feature rapidly / on time get a custom WordPress plugin or theme developed to exactly fit your needs.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C