
Autocomplete For Relevanssi Security & Risk Analysis
wordpress.org/plugins/autocomplete-for-relevanssiAutocompletion functionality for WordPress search input when Relevanssi plugin is installed.
Is Autocomplete For Relevanssi Safe to Use in 2026?
Generally Safe
Score 85/100Autocomplete For Relevanssi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'autocomplete-for-relevanssi' v0.1 exhibits a concerning lack of fundamental security best practices, despite its seemingly small attack surface. The static analysis reveals a significant number of SQL queries (5) that are not protected by prepared statements, indicating a high risk of SQL injection vulnerabilities. Furthermore, none of the 7 output operations are properly escaped, exposing the site to potential Cross-Site Scripting (XSS) attacks. The absence of any nonce or capability checks on the identified entry points (though none are listed as unprotected, the lack of checks in general is problematic) is a major security oversight. The vulnerability history is clean, with no known CVEs, which might suggest either good development practices up to this point or a lack of significant adoption and targeted attacks. However, the inherent coding flaws present a clear and present danger regardless of past vulnerability data. The plugin's current state, with its unmitigated risks in SQL and output handling, poses a substantial security threat. While the attack surface appears minimal, the lack of basic security hardening within the code makes it a prime target for attackers exploiting these common vulnerabilities.
Key Concerns
- Raw SQL queries without prepared statements
- Output escaping is not properly implemented
- No nonce checks on entry points
- No capability checks on entry points
Autocomplete For Relevanssi Security Vulnerabilities
Autocomplete For Relevanssi Release Timeline
Autocomplete For Relevanssi Code Analysis
SQL Query Safety
Output Escaping
Autocomplete For Relevanssi Attack Surface
WordPress Hooks 6
Maintenance & Trust
Autocomplete For Relevanssi Maintenance & Trust
Maintenance Signals
Community Trust
Autocomplete For Relevanssi Alternatives
Autocomplete WooCommerce Orders
autocomplete-woocommerce-orders
Enhance your WooCommerce store with Autocomplete Orders. Automatically complete orders after payment, perfect for virtual goods and subscriptions.
WP Console – WordPress PHP Console powered by PsySH
wp-console
An in-browser PHP console for WordPress powered by PsySH
WP Search with Algolia
wp-search-with-algolia
Use the power of Algolia AI Search & Discovery to enhance your website's search. Enable AI-powered Autocomplete and InstantSearch for fast, a …
Order Status Control for WooCommerce
order-status-control-for-woocommerce
Auto Complete orders for virtual-downloadable products after a successful payment or predefine status.
Advanced Product Search For WooCommerce
advanced-product-search-for-woo
Popup Cart Lite for WooCommerce for WooCommerce plugin that displays popup cart for add to cart action.
Autocomplete For Relevanssi Developer Profile
2 plugins · 930 total installs
How We Detect Autocomplete For Relevanssi
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/autocomplete-for-relevanssi/afr.min.css/wp-content/plugins/autocomplete-for-relevanssi/awesomplete-gh-pages/awesomplete.css/wp-content/plugins/autocomplete-for-relevanssi/awesomplete-gh-pages/awesomplete.js/wp-content/plugins/autocomplete-for-relevanssi/awesomplete-gh-pages/awesomplete.jsautocomplete-for-relevanssi/awesomplete-gh-pages/awesomplete.js?ver=HTML / DOM Fingerprints
Awesomplete