• EDIT: Since my first review, the developer has released an update of the plugin, solving the issues mentioned below. I have therefore adjusted my rating and will continue testing the plugin.

    I tried to install Link Whisper Free on my website, and while the feature set looks quite compelling, my experience was not so much.

    • Although I have admin rights, I was unable to open the settings screen due to some access rights issue.
    • WPVulnerability reports two unpatched vulnerabilities for this plugin:
      • CVE-2025-62970 (published on 2025-10-27)
      • CVE-2026-22357 (published on 2026-04-01)
    • According to the developer, this plugin is only tested up to WordPress 6.7.5, so it’s not tested for the two latest major releases.
    • The developer recommends to post support tickets not on ww.wp.xz.cn but on Freshdesk instead – but the linked URL does no longer exist.

    All this does not look trustworthy.

Viewing 1 replies (of 1 total)
  • Plugin Author Matt_Bissett

    (@mattbissett)

    Hey Martin,

    Thank you for your feedback and for continuing to work with Link Whisper, I appreciate it and look forward to any other thoughts you have.

    Just to touch briefly on your feedback, the first point sounds like something support can help with, and I’ve updated the “How to get help” listing on our support forums so it points to the new portal.

    For the vulnerabilities, we’re in the process of getting those taken care of. Both vulnerabilities are currently fixed, we’re now working through validating everything with the reporting sites so they can all be confident that things are working.

    The readme mystifies me though, both 0.9.1 and 0.9.2 were tested on 6.9.1. I double checked the plugin files, just to be sure, and they both list it as 6.9.1. So I don’t know what’s going on there. 🙂

    Thanks again for your thoughts.

    Warm regards,
    Matt

Viewing 1 replies (of 1 total)

You must be logged in to reply to this review.