
Advanced Custom Fields Viewer Security & Risk Analysis
wordpress.org/plugins/advanced-custom-fields-viewerView Advanced Custom Fields names & data on the front end of your theme while developing.
Is Advanced Custom Fields Viewer Safe to Use in 2026?
Generally Safe
Score 85/100Advanced Custom Fields Viewer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "advanced-custom-fields-viewer" v1.2.2 presents a generally good security posture, with no reported CVEs and a clean taint analysis. The static analysis reveals a very small attack surface, with no AJAX handlers, REST API routes, shortcodes, or cron events exposed. Furthermore, all identified SQL queries utilize prepared statements, indicating a strong defense against SQL injection vulnerabilities. The absence of dangerous functions, file operations, and external HTTP requests further bolsters its security profile.
However, a significant concern arises from the output escaping signals. With 100% of outputs not properly escaped (4 total outputs), this plugin is highly susceptible to Cross-Site Scripting (XSS) vulnerabilities. This is a critical oversight that could allow attackers to inject malicious scripts into the WordPress site through the plugin's output, potentially leading to session hijacking, defacement, or other malicious actions. While the plugin has no known historical vulnerabilities, this lack of proper output escaping represents a substantial and unaddressed risk within its current codebase.
Key Concerns
- All outputs are unescaped
Advanced Custom Fields Viewer Security Vulnerabilities
Advanced Custom Fields Viewer Release Timeline
Advanced Custom Fields Viewer Code Analysis
Output Escaping
Advanced Custom Fields Viewer Attack Surface
WordPress Hooks 5
Maintenance & Trust
Advanced Custom Fields Viewer Maintenance & Trust
Maintenance Signals
Community Trust
Advanced Custom Fields Viewer Alternatives
ACF Content Analysis for Yoast SEO
acf-content-analysis-for-yoast-seo
WordPress plugin that adds the content of all ACF fields to the Yoast SEO score analysis.
Advanced Custom Fields: Font Awesome Field
advanced-custom-fields-font-awesome
Adds a new 'Font Awesome Icon' field to the popular Advanced Custom Fields plugin.
Table Field Add-on for ACF and SCF
advanced-custom-fields-table-field
A Table Field Add-on for the Advanced Custom Fields and Secure Custom Fields Plugin.
ACF: Better Search
acf-better-search
This plugin adds to default WordPress search engine the ability to search by content from selected fields of Advanced Custom Fields plugin.
WP All Import – Import Add-On for ACF
csv-xml-import-for-acf
Drag & drop to import any CSV, Excel, XML, or Google Sheets file into Advanced Custom Fields. Supports repeaters, flexible content, galleries, and …
Advanced Custom Fields Viewer Developer Profile
4 plugins · 2K total installs
How We Detect Advanced Custom Fields Viewer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/advanced-custom-fields-viewer/themes/dark.css/wp-content/plugins/advanced-custom-fields-viewer/themes/light.css/wp-content/plugins/advanced-custom-fields-viewer/themes/transparent.css/wp-content/plugins/advanced-custom-fields-viewer/js/acfv-frontend.js/wp-content/plugins/advanced-custom-fields-viewer/js/acfv-frontend.jsHTML / DOM Fingerprints
acfv-btnacfv-btn-iconacfv-btn-colacfv-spaceracfv-linkacfv-footeracfv-wrapacfv-click-layer+7 more<!-- create settings menu --><!-- call register settings function --><!-- Output Function -->id="acfv-toggle"id="acfv-click-layer"id="acfv-wrap"id="acfv-btn-close"id="acfv-btn-custom"id="acfv-btn-current"+8 morevar acfv<pre id="acfv-current-viewer"><pre id="acfv-options-viewer"><pre id="acfv-custom-viewer">