
Advanced Custom Fields – Address Field add-on Security & Risk Analysis
wordpress.org/plugins/advanced-custom-fields-address-field-add-onAdds an Address Field to Advanced Custom Fields. Pick and choose the components and layout of the address.
Is Advanced Custom Fields – Address Field add-on Safe to Use in 2026?
Generally Safe
Score 85/100Advanced Custom Fields – Address Field add-on has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'advanced-custom-fields-address-field-add-on' version 1.0.1 demonstrates a generally strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits its attack surface. Furthermore, the lack of dangerous functions, file operations, external HTTP requests, and the use of prepared statements for all SQL queries are excellent security practices. However, the analysis does reveal some areas for improvement. Notably, only 20% of output escaping is properly handled, which presents a potential risk for cross-site scripting (XSS) vulnerabilities if user-supplied data is displayed without adequate sanitization. The absence of nonce checks and capability checks, while not directly leading to immediate vulnerabilities in this static analysis given the limited attack surface, could become a concern if new entry points are introduced in future versions. The plugin also has no recorded vulnerability history, which is a positive indicator, suggesting past development focused on security or that the plugin has not been a target for exploits. Overall, the plugin is currently in a good state, but the low percentage of properly escaped output is a weakness that should be addressed to prevent potential XSS issues.
Key Concerns
- Low percentage of properly escaped output
- No nonce checks
- No capability checks
Advanced Custom Fields – Address Field add-on Security Vulnerabilities
Advanced Custom Fields – Address Field add-on Code Analysis
Output Escaping
Advanced Custom Fields – Address Field add-on Attack Surface
WordPress Hooks 4
Maintenance & Trust
Advanced Custom Fields – Address Field add-on Maintenance & Trust
Maintenance Signals
Community Trust
Advanced Custom Fields – Address Field add-on Alternatives
Advanced Custom Fields – Taxonomy Field add-on
advanced-custom-fields-taxonomy-field-add-on
Adds a Taxonomy Field to Advanced Custom Fields. Select one or more taxonomy terms and assign them to the post.
Advanced Custom Fields: NextGEN Gallery Field add-on
advanced-custom-fields-nextgen-gallery-field-add-on
Adds a NextGEN Gallery Field to Advanced Custom Fields. Select one or more NextGEN Galleries and assign them to the post.
ACF Google Maps Radius Search
acf-google-maps-radius-search
Turns ACF address field into a distance radius search on a search results page. Useful for developers.
Advanced Custom Fields (ACF®)
advanced-custom-fields
ACF helps customize WordPress with powerful, professional and intuitive fields. Proudly powering over 2 million sites, WordPress developers love ACF.
ACF Content Analysis for Yoast SEO
acf-content-analysis-for-yoast-seo
WordPress plugin that adds the content of all ACF fields to the Yoast SEO score analysis.
Advanced Custom Fields – Address Field add-on Developer Profile
3 plugins · 1K total installs
How We Detect Advanced Custom Fields – Address Field add-on
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/advanced-custom-fields-address-field-add-on/address-field.css/wp-content/plugins/advanced-custom-fields-address-field-add-on/address-field.js/wp-content/plugins/advanced-custom-fields-address-field-add-on/address-field.jsadvanced-custom-fields-address-field-add-on/address-field.css?ver=advanced-custom-fields-address-field-add-on/address-field.js?ver=HTML / DOM Fingerprints
acf-address-field-wrapacf-address-fielddata-address-componentsdata-address-layoutacf_address_field_l10n_domain