
Accordion & FAQs Security & Risk Analysis
wordpress.org/plugins/accordion-boxAccordion & FAQ is the most simplest accordion builder for WordPress. You can add multiple accordion and faqs & view more content with collaps …
Is Accordion & FAQs Safe to Use in 2026?
Generally Safe
Score 92/100Accordion & FAQs has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "accordion-box" v2.7 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by using prepared statements for all SQL queries, performing numerous output escapes, and avoiding dangerous functions or file operations. The absence of any recorded CVEs or past vulnerabilities is also a significant strength, suggesting a generally well-maintained codebase.
However, there are notable security concerns stemming from the static analysis. The plugin has a small attack surface, but one of its two entry points, an AJAX handler, lacks any authentication checks. This oversight could potentially allow unauthenticated users to trigger this handler, although the extent of risk depends on what actions the handler performs. The taint analysis also identified one flow with unsanitized paths, which, while not flagged as critical or high severity in this analysis, warrants attention as it represents a potential avenue for malicious input to influence file operations or other path-dependent actions.
In conclusion, while the plugin benefits from a clean vulnerability history and good SQL and output handling, the unprotected AJAX endpoint and the unsanitized path flow introduce a clear risk. Further investigation into the specific functionality of the unprotected AJAX handler and the nature of the unsanitized path is recommended to fully assess and mitigate these potential vulnerabilities.
Key Concerns
- AJAX handler without auth checks
- Flow with unsanitized paths
- 70% output escaping (30% unescaped)
Accordion & FAQs Security Vulnerabilities
Accordion & FAQs Release Timeline
Accordion & FAQs Code Analysis
Output Escaping
Data Flow Analysis
Accordion & FAQs Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 11
Maintenance & Trust
Accordion & FAQs Maintenance & Trust
Maintenance Signals
Community Trust
Accordion & FAQs Alternatives
Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg)
responsive-accordion-and-collapse
Accordion And Collapse is the most easiest drag & drop accordion builder for WordPress. You can add multiple accordion and collapse with this.
Accordions
accordions
Create sleek accordions, tabs, FAQs, and image accordions with a React builder featuring advanced styling, animations, OpenAI support, and customizati …
Meks Flexible Shortcodes
meks-flexible-shortcodes
Add some cool elements to your post/page content with flexible shortcodes.
Arconix FAQ
arconix-faq
Arconix FAQ provides an easy way to add FAQ items to your website.
Gutena Accordion – Beautiful FAQ Accordion Block
gutena-accordion
Gutena Accordion is a WordPress Plugin which makes accordion dropdown creation really easy inside the block editor. Furthermore, it is very light weig …
Accordion & FAQs Developer Profile
3 plugins · 30 total installs
How We Detect Accordion & FAQs
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/accordion-box/admin/assets/js/cdlzr-accbox-admin.js/wp-content/plugins/accordion-box/admin/assets/css/bootstrap.min.css/wp-content/plugins/accordion-box/admin/assets/css/admin-css.css/wp-content/plugins/accordion-box/admin/assets/css/fontawesome/css/all.min.css/wp-content/plugins/accordion-box/admin/assets/js/custom-js.js/wp-content/plugins/accordion-box/admin/assets/js/bootstrap.min.js/wp-content/plugins/accordion-box/admin/assets/css/bootstrap-side-modals.cssadmin/assets/js/cdlzr-accbox-admin.jsadmin/assets/js/custom-js.jsadmin/assets/js/bootstrap.min.jsaccordion-box/admin/assets/js/cdlzr-accbox-admin.js?ver=accordion-box/admin/assets/css/bootstrap.min.css?ver=accordion-box/admin/assets/css/admin-css.css?ver=accordion-box/admin/assets/css/fontawesome/css/all.min.css?ver=accordion-box/admin/assets/js/custom-js.js?ver=accordion-box/admin/assets/js/bootstrap.min.js?ver=accordion-box/admin/assets/css/bootstrap-side-modals.css?ver=HTML / DOM Fingerprints
cdlzr-acc-design-boxcdlzr-acc-boxcdlzr-acc-scodecdlzr-acc-settingscdlzr-acc-template-settingcdlzr-acc-box-settingscdlzr-acc-rating-settingcdlzr-acc-design-boxcdlzr-acc-boxcdlzr-acc-scodecdlzr-acc-settingscdlzr-acc-template-settingcdlzr-acc-box-settings+1 moreAjaxObj