
FindWord TSW Security & Risk Analysis
wordpress.org/plugins/findword-tswSearch helper for on-page, article word search.
Is FindWord TSW Safe to Use in 2026?
Generally Safe
Score 100/100FindWord TSW has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "findword-tsw" v1.1.8 plugin exhibits a generally strong security posture based on the provided static analysis. There are no identified dangerous functions, SQL queries are exclusively executed using prepared statements, and a high percentage of output is properly escaped, indicating good practices in preventing common web vulnerabilities like XSS. The lack of file operations and external HTTP requests further limits potential attack vectors. The absence of any known CVEs, both historically and currently, is a positive indicator.
However, there are notable areas of concern that prevent an entirely clean bill of health. The plugin has one entry point via a shortcode, and while the static analysis reports zero unprotected entry points and zero capability checks, this combination raises a flag. Shortcodes can be an attack vector, and the absence of explicit capability checks or nonce verification for this entry point suggests a potential for privilege escalation or unauthorized execution if the shortcode's functionality is not inherently secured or if there are undiscovered vulnerabilities within its implementation. The zero taint analysis flows, while seemingly good, might also indicate that the static analysis tooling was unable to effectively analyze the plugin's execution paths or that the plugin's functionality is too limited to generate exploitable taint flows.
Key Concerns
- Shortcode without clear auth/capability checks
- No nonce checks on entry points
- Zero taint flows analyzed may hide risks
FindWord TSW Security Vulnerabilities
FindWord TSW Release Timeline
FindWord TSW Code Analysis
Output Escaping
FindWord TSW Attack Surface
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
FindWord TSW Maintenance & Trust
Maintenance Signals
Community Trust
FindWord TSW Alternatives
Accounting Records Copywriter
accounting-records-copywriter
Упрощение работы администратора с копиратером рерайтером на вашем блоге / Admin’s work simplification with copywriter rewriter for your blog
Search by GOGO GET
search-by-gogo-get
GOGO GET analyzes your site with AI, then dynamically creates an integrated Search bar without coding. Dashboard views show live Search analytics etc.
String locator
string-locator
Find and edit code or texts in your themes and plugins
Surfer – WordPress Plugin
surferseo
Connect Surfer's Content Editor to WordPress. Write and optimize your articles for SEO, find new keyword ideas and publish straight to WordPress.
Keyword Research Tool
keyword-research-tool
Keyword Research made simple for Wordpress. Enter your keyword and quickly discover keyword opportunities related to your topic.
FindWord TSW Developer Profile
19 plugins · 2K total installs
How We Detect FindWord TSW
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/findword-tsw/public/css/findword-tsw-public.css/wp-content/plugins/findword-tsw/public/js/findword-tsw-public.jsFindword TSW v1.1.8/wp-content/plugins/findword-tsw/public/js/findword-tsw-public.jsfindword-tsw/public/css/findword-tsw-public.css?ver=findword-tsw/public/js/findword-tsw-public.js?ver=HTML / DOM Fingerprints
findword-tsw-main-wrap<!-- ADD YOUR HTML HERE -->data-plugin='findword-tsw'window.findword_tsw_data[findword-tsw]