
Geweb AI Search Security & Risk Analysis
wordpress.org/plugins/geweb-ai-searchAI-powered search for WordPress using Google Gemini. Smart answers, source links, and instant autocomplete — all in one modal.
Is Geweb AI Search Safe to Use in 2026?
Generally Safe
Score 100/100Geweb AI Search has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "geweb-ai-search" v2.1.1 plugin demonstrates a generally strong security posture, adhering to several best practices. Notably, all identified AJAX handlers include nonce checks, and all SQL queries utilize prepared statements, which significantly mitigates common injection vulnerabilities. The plugin also shows excellent output escaping, with all 28 identified outputs being properly escaped, preventing cross-site scripting (XSS) issues. Furthermore, the absence of any recorded vulnerabilities, including CVEs, is a positive indicator of its security track record.
However, the static analysis does highlight a potential area of concern: the taint analysis revealed 3 flows with unsanitized paths. While no critical or high-severity issues were flagged from these, unsanitized paths can indicate a risk of file inclusion or path traversal vulnerabilities if not handled with extreme care, especially if these paths are derived from user input. Additionally, the plugin makes 3 external HTTP requests, which, while not inherently a vulnerability, could become one if the target endpoints are compromised or if sensitive data is transmitted insecurely. The plugin's vulnerability history being entirely clear is reassuring, suggesting a proactive approach to security from the developers or a lack of prior exploitation.
Key Concerns
- Taint flows with unsanitized paths
- External HTTP requests detected
Geweb AI Search Security Vulnerabilities
Geweb AI Search Code Analysis
Output Escaping
Data Flow Analysis
Geweb AI Search Attack Surface
AJAX Handlers 5
WordPress Hooks 10
Maintenance & Trust
Geweb AI Search Maintenance & Trust
Maintenance Signals
Community Trust
Geweb AI Search Alternatives
AI Provider for Google
ai-provider-for-google
Google AI (Gemini) provider for the PHP AI Client SDK.
AI Search – Intelligent Search for WooCommerce and WordPress
ai-search
Replaces the default WordPress search with an AI-powered semantic search system. Perfect for WooCommerce stores and eCommerce sites. ---
Did You Mean
did-you-mean
This plugin can fix typing errors (TYPO) in URLs and search by visitors.
OC3 Semantic box
oc3-semantic-box
Semantic search of website content with meaning...
QuarkCode AI Basic
quarkcode-ai-basic
Generate and edit images using Google's Gemini AI with advanced customization options and user management.
Geweb AI Search Developer Profile
1 plugin · 0 total installs
How We Detect Geweb AI Search
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/geweb-ai-search/assets/css/chat.css/wp-content/plugins/geweb-ai-search/assets/css/main.css/wp-content/plugins/geweb-ai-search/assets/js/chat.js/wp-content/plugins/geweb-ai-search/assets/js/search.js/wp-content/plugins/geweb-ai-search/assets/js/chat.js/wp-content/plugins/geweb-ai-search/assets/js/search.jsgeweb-ai-search/assets/css/chat.css?ver=geweb-ai-search/assets/css/main.css?ver=geweb-ai-search/assets/js/chat.js?ver=geweb-ai-search/assets/js/search.js?ver=HTML / DOM Fingerprints
geweb-ai-search-modalgeweb-ai-search-chat-bubblegeweb-ai-search-input-wrappergeweb-ai-search-buttondata-geweb-ai-search-idgewebAISearchGewebAISearch/wp-json/geweb-ai-search/v1/search/wp-json/geweb-ai-search/v1/chat[geweb_ai_search][geweb_ai_chat]