[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$ffbzCEPeXKhv66jCkGODzxWDQysqjHzmgftPo_OzYNKg":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":34,"analysis":129,"fingerprints":237},"heyday-search","HeyDay – Search More","1.1.0","heydaysearch","https:\u002F\u002Fprofiles.wordpress.org\u002Fheydaysearch\u002F","\u003Cp>\u003Cstrong>HeyDay Search More\u003C\u002Fstrong> boosts engagement and conversions, especially for merchants with large product inventories. It helps reduce customer abandonment by keeping users on your site and turning potential exits into sales. Ideal for optimizing the shopping experience, the app supports revenue growth by retaining customers.\u003C\u002Fp>\n\u003Ch3>Key Features:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Site Search:\u003C\u002Fstrong> Real-time, responsive search for WooCommerce stores. Indexes your products to deliver fast and accurate search results.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Search More:\u003C\u002Fstrong> Display additional search suggestions when users attempt to leave your site. Encourages further browsing and product discovery, increasing conversions.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple Language Support:\u003C\u002Fstrong> The search is available in English, Spanish, German, Hebrew, Armenian, Italian, Japanese, Dutch, French, Danish, and Polish.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Product Feed Generation:\u003C\u002Fstrong> Generates a product feed link for your WooCommerce store, enabling enhanced search functionality.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Seamless Setup:\u003C\u002Fstrong> Automatically registers your site and user with the HeyDay service.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Settings Management:\u003C\u002Fstrong> Manage the feed from the WordPress admin panel with an easy-to-use settings page.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Analytics Dashboard:\u003C\u002Fstrong> Redirects to the HeyDay management system for configuration, analytics, and advanced settings.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Provides real-time site search for WooCommerce stores.\u003C\u002Fli>\n\u003Cli>Displays search suggestions to retain users.\u003C\u002Fli>\n\u003Cli>Generates a product feed link for enhanced search functionality.\u003C\u002Fli>\n\u003Cli>Redirects users to the HeyDay admin system for advanced configuration and analytics.\u003C\u002Fli>\n\u003Cli>Supports multiple languages including English, Spanish, and German.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This plugin is licensed under the GPLv2 or later. \u003Ca href=\"https:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html\" rel=\"nofollow ugc\">Read more\u003C\u002Fa>.\u003C\u002Fp>\n","Boost engagement and conversions by keeping users on your site with HeyDay Search More’s enhanced search suggestions and real-time product discovery.",0,1225,"2025-02-26T10:25:00.000Z","6.6.5","3.1","7.0",[18,19,20,21,22],"autocomplete","search-engine","search-more","site-search","suggestions","https:\u002F\u002Fheyday.io\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fheyday-search.zip",92,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":30,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":31,"trust_score":32,"computed_at":33},1,30,88,"2026-04-05T09:56:47.527Z",[35,60,80,96,111],{"slug":36,"name":37,"version":38,"author":39,"author_profile":40,"description":41,"short_description":42,"active_installs":43,"downloaded":44,"rating":45,"num_ratings":46,"last_updated":47,"tested_up_to":48,"requires_at_least":49,"requires_php":50,"tags":51,"homepage":55,"download_link":56,"security_score":57,"vuln_count":58,"unpatched_count":11,"last_vuln_date":59,"fetched_at":27},"searchiq","SearchIQ – The Search Solution","5.1","SearchIQ","https:\u002F\u002Fprofiles.wordpress.org\u002Fsearchiq\u002F","\u003Cp>SearchIQ provides an enhanced search experience to your WordPress site by delivering fast and accurate search results as you type. Your SearchIQ account also includes a realtime analytics dashboard that helps you understand your users’ search intent so you can optimize your content strategy to help your site grow.\u003C\u002Fp>\n\u003Cp>Scalable from tens to millions of documents, SearchIQ powers sites ranging from small blogs to large enterprises.\u003C\u002Fp>\n\u003Ch3>KEY Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Easy to setup – just minutes to implement\u003C\u002Fli>\n\u003Cli>Customizable UI\u003C\u002Fli>\n\u003Cli>Results optimization to prioritize relevant content\u003C\u002Fli>\n\u003Cli>AI to handle typos, synonyms, fuzzy matches, etc. \u003C\u002Fli>\n\u003Cli>Search against custom fields and taxonomies\u003C\u002Fli>\n\u003Cli>A passionate, world-wide support staff available (nearly all hours) at support@searchiq.co\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Pricing\u003C\u002Fh3>\n\u003Cp>SearchIQ is absolutely free to get started with.   For businesses in need of advanced features such as PDF, Facet, CDN or custom branding; we offer simple and affordable packages that are easy to turn on. For more information on premium features, visit \u003Ca href=\"https:\u002F\u002Fwww.searchiq.co\u002Fpricing.html\" rel=\"nofollow ugc\">pricing page\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Installation Video\u003C\u002Fh3>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FbarL-u6t7Ok?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Ch3>Demo Site\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fdemo.searchiq.co\" rel=\"nofollow ugc\">Demo site link\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>More Information\u003C\u002Fh3>\n\u003Cp>Visit \u003Ca href=\"https:\u002F\u002Fsearchiq.com\" rel=\"nofollow ugc\">https:\u002F\u002Fsearchiq.com\u003C\u002Fa> or contact us at contact@searchiq.co\u003C\u002Fp>\n","Our FREE plugin makes your website’s search fast and more relevant. searchIQ helps you to manage content more effectively with real-time analytics.",1000,93578,98,198,"2025-10-03T14:30:00.000Z","6.8.5","3.7","",[52,18,53,54,21],"ajax-search","better-search","search","https:\u002F\u002Fsearchiq.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsearchiq.5.1.zip",96,7,"2025-03-27 00:00:00",{"slug":61,"name":62,"version":63,"author":64,"author_profile":65,"description":66,"short_description":67,"active_installs":68,"downloaded":69,"rating":70,"num_ratings":30,"last_updated":71,"tested_up_to":72,"requires_at_least":73,"requires_php":74,"tags":75,"homepage":50,"download_link":79,"security_score":70,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"audible-site-search","Audible Site Search","1.4","OYM","https:\u002F\u002Fprofiles.wordpress.org\u002Foym\u002F","\u003Cp>\u003Cstrong>Audible Site Search\u003C\u002Fstrong> enhances your WordPress site by enabling voice-powered search input along with real-time AJAX-based search suggestions. It’s lightweight, easy to install, and works out of the box.\u003C\u002Fp>\n\u003Cp>Use the shortcode \u003Ccode>[audisise_voice_search]\u003C\u002Fcode> to display the voice search bar anywhere on your site—inside posts, pages, or sidebar widgets.\u003C\u002Fp>\n\u003Cp>Features include:\u003Cbr \u002F>\n– Voice recognition for search queries (Web Speech API)\u003Cbr \u002F>\n– AJAX-powered live search suggestions\u003Cbr \u002F>\n– Lightweight and responsive design\u003Cbr \u002F>\n– Works with default WordPress search\u003C\u002Fp>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cp>Built and maintained by OYM — https:\u002F\u002Fwww.onyourmark.com\u003C\u002Fp>\n","Audible Site Search adds voice-powered search and AJAX search suggestions to your WordPress site.",90,840,100,"2026-03-09T14:19:00.000Z","6.9.4","5.0","7.2",[52,76,21,77,78],"search-suggestions","speech-recognition","voice-search","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faudible-site-search.1.4.zip",{"slug":81,"name":82,"version":83,"author":84,"author_profile":85,"description":86,"short_description":87,"active_installs":31,"downloaded":88,"rating":11,"num_ratings":11,"last_updated":89,"tested_up_to":72,"requires_at_least":90,"requires_php":91,"tags":92,"homepage":50,"download_link":95,"security_score":70,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"yext-ai-search","Yext AI Search","1.0.6","Yext","https:\u002F\u002Fprofiles.wordpress.org\u002Fyext\u002F","\u003Cp>Your customers have questions. Can your website answer them?\u003Cbr \u002F>\nBoost conversion, reduce support costs, and gain new customer intelligence by adding Yext Answers site search to your WordPress-powered website. The Yext Answers Site Search plugin allows you to seamlessly integrate your Yext Answers search bar and search results page to your existing WordPress pages. If you don’t currently work with Yext but would like to add the world’s best site search to your WordPress site, get started today at \u003Ca href=\"https:\u002F\u002Fwww.yext.com\u002Ftry\u002Fwordpress\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.yext.com\u002Ftry\u002Fwordpress\u002F\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>With the Yext AI Search plugin, you can now:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Easily index WordPress data to Yext with pre-built connectors, and use that data to power your Answers experience\u003C\u002Fli>\n\u003Cli>Schedule automatic data syncs to keep your search results up to date\u003C\u002Fli>\n\u003Cli>Live edit the styling of your search bar, no coding background required!\u003C\u002Fli>\n\u003Cli>Drag and drop your Answers experience onto any page of your WordPress site with Gutenberg blocks\u003C\u002Fli>\n\u003Cli>Replace all instances of native WordPress search with the click of a button\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>To use this plugin you must have a Yext account. The Yext Answers Site Search plugin is search-as-a-service; upon download, you will be asked to provide your Answers API key and a few other pieces of information in order for the plugin to work. We’ll be calling the Answers Javascript SDK (and its CSS and templates) in order to render the search bar and Javascript from our Pages platform to load the search results page.\u003Cbr \u002F>\nUsing Yext Answers is subject to the agreement entered into between you and Yext. View Yext’s privacy policy here: \u003Ca href=\"https:\u002F\u002Fwww.yext.com\u002Fprivacy-policy\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.yext.com\u002Fprivacy-policy\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>WHY DO I NEED ANSWERS?\u003C\u002Fh3>\n\u003Ch3>Answer Customers’ Questions.\u003C\u002Fh3>\n\u003Cp>Deliver a cutting-edge search experience on your website that understands natural language questions, provides direct answers (not blue links), and paves the path from search to conversion.\u003C\u002Fp>\n\u003Cp>Use the Yext Answers Site Search plugin to power a variety of onsite search experiences — from job finders to store locators, or even full site search — on your WordPress site.\u003C\u002Fp>\n\u003Ch3>Operate Efficiently.\u003C\u002Fh3>\n\u003Cp>The Yext Answers Site Search plugin is an out-of-the-box solution that minimizes the need for IT to manage and optimize an effective search experience. Once you’ve downloaded the plugin, all you need to do is use the provided shortcodes for the Answers search bar and search results page.\u003C\u002Fp>\n\u003Ch3>Retain Traffic and Boost Conversion.\u003C\u002Fh3>\n\u003Cp>When your website answers your customers’ questions, they’re more likely to stay on your site, instead of bouncing to a search engine or a competitor.\u003C\u002Fp>\n\u003Cp>And, customizable CTAs pave the path from search to conversion: early adopters have seen Yext Answers driving a 36% higher website conversion rate than legacy keyword-based search providers.\u003C\u002Fp>\n\u003Ch3>Reduce Support Costs.\u003C\u002Fh3>\n\u003Cp>When your website can answer more customers’ questions, fewer of them will turn to your call center or live chat — saving you valuable resources.\u003C\u002Fp>\n\u003Ch3>Gain New Customer Insights.\u003C\u002Fh3>\n\u003Cp>If you could see every question a customer asked on your website, would you adjust your content to better suit their needs? With insights from Yext Answers, you can learn what matters to your customers and give them more of what they’re looking for.\u003C\u002Fp>\n","Add the world's best search experience to your website in minutes.",4046,"2025-12-08T10:33:00.000Z","5.8","7.4",[18,93,54,21,94],"relevant-search","yext","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fyext-ai-search.1.0.6.zip",{"slug":97,"name":98,"version":99,"author":84,"author_profile":85,"description":100,"short_description":101,"active_installs":102,"downloaded":103,"rating":70,"num_ratings":104,"last_updated":105,"tested_up_to":106,"requires_at_least":107,"requires_php":16,"tags":108,"homepage":50,"download_link":109,"security_score":110,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"yext-answers","Yext Answers Site Search","1.0.4","\u003Cp>This plugin is no longer being maintained. If you are looking to add Answers to your WordPress site, please use our new plugin: https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fyext-ai-search\u002F.\u003C\u002Fp>\n","This plugin is no longer being maintained. If you are looking to add Answers to your Wordpress site, please use our new plugin: https:\u002F\u002Fwordpress.",20,3091,2,"2022-02-23T20:40:00.000Z","5.8.13","4.9.8",[18,93,54,21,94],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fyext-answers.1.0.4.zip",85,{"slug":112,"name":113,"version":114,"author":115,"author_profile":116,"description":117,"short_description":118,"active_installs":119,"downloaded":120,"rating":70,"num_ratings":104,"last_updated":50,"tested_up_to":48,"requires_at_least":121,"requires_php":16,"tags":122,"homepage":126,"download_link":127,"security_score":70,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":128},"searchplus","SearchPlus","1.7.1","ailchev","https:\u002F\u002Fprofiles.wordpress.org\u002Failchev\u002F","\u003Cp>\u003Cem>Search+\u003C\u002Fem> upgrades you search box to a fast and modern navigation utility.\u003C\u002Fp>\n\u003Cp>Major features include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Voice recognition\u003C\u002Fli>\n\u003Cli>Type ahead\u003C\u002Fli>\n\u003Cli>Word suggestions\u003C\u002Fli>\n\u003Cli>Transliteration\u003C\u002Fli>\n\u003Cli>Usage statistics\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Once the plugin is activated, you will have to go to the \u003Cem>Search+\u003C\u002Fem> configuration page (from the left menu) and complete the account creation – it takes a single click!\u003C\u002Fp>\n\u003Cp>A step by step guide is available at \u003Ca href=\"https:\u002F\u002Fsearchplus.pro\u002Fwiki\u002Fen-US\u002Findex.php?title=WordPress\" rel=\"nofollow ugc\">our wiki\u003C\u002Fa>.\u003C\u002Fp>\n","Upgrades you search box to a fast and modern navigation utility.",10,2779,"4.6",[123,54,22,124,125],"autocomplete-type-ahead","transliteration","voice","https:\u002F\u002Fsearchplus.pro","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsearchplus.1.7.1.zip","2026-03-15T10:48:56.248Z",{"attackSurface":130,"codeSignals":177,"taintFlows":191,"riskAssessment":224,"analyzedAt":236},{"hooks":131,"ajaxHandlers":166,"restRoutes":167,"shortcodes":175,"cronEvents":176,"entryPointCount":30,"unprotectedCount":30},[132,138,143,146,149,153,156,157,162],{"type":133,"name":134,"callback":135,"file":136,"line":137},"action","wp_enqueue_scripts","heyday_merchant_feed_enqueue_script","heyday-sm.php",26,{"type":133,"name":139,"callback":140,"file":141,"line":142},"woocommerce_update_product","closure","includes\\feed.php",401,{"type":133,"name":144,"callback":140,"file":141,"line":145},"woocommerce_new_product",405,{"type":133,"name":147,"callback":140,"file":141,"line":148},"woocommerce_delete_product",409,{"type":133,"name":150,"callback":151,"file":141,"line":152},"rest_api_init","heyday_search_register_api_routes",414,{"type":133,"name":134,"callback":135,"file":154,"line":155},"includes\\install.php",34,{"type":133,"name":134,"callback":135,"file":154,"line":70},{"type":133,"name":158,"callback":159,"file":160,"line":161},"admin_menu","heyday_add_settings_page","includes\\settings-page.php",11,{"type":133,"name":163,"callback":164,"file":160,"line":165},"admin_enqueue_scripts","heyday_enqueue_admin_styles_scripts",132,[],[168],{"namespace":169,"route":170,"methods":171,"callback":173,"permissionCallback":26,"file":141,"line":174},"heyday-search\u002Fv1","\u002Fitems-pagination",[172],"GET","heyday_search_get_all_items_pagination",299,[],[],{"dangerousFunctions":178,"sqlUsage":179,"outputEscaping":181,"fileOperations":11,"externalRequests":189,"nonceChecks":11,"capabilityChecks":11,"bundledLibraries":190},[],{"prepared":104,"raw":11,"locations":180},[],{"escaped":182,"rawEcho":104,"locations":183},33,[184,187],{"file":160,"line":185,"context":186},86,"raw output",{"file":160,"line":188,"context":186},108,5,[],[192,214],{"entryPoint":193,"graph":194,"unsanitizedCount":30,"severity":213},"heyday_render_settings_page (includes\\settings-page.php:23)",{"nodes":195,"edges":209},[196,200,204],{"id":197,"type":198,"label":199,"file":160,"line":57},"n0","source","$_POST",{"id":201,"type":202,"label":203,"file":160,"line":57},"n1","transform","→ heyday_force_update_option()",{"id":205,"type":206,"label":207,"file":154,"line":119,"wp_function":208},"n2","sink","update_option() [Settings Manipulation]","update_option",[210,212],{"from":197,"to":201,"sanitized":211},false,{"from":201,"to":205,"sanitized":211},"low",{"entryPoint":215,"graph":216,"unsanitizedCount":30,"severity":213},"\u003Csettings-page> (includes\\settings-page.php:0)",{"nodes":217,"edges":221},[218,219,220],{"id":197,"type":198,"label":199,"file":160,"line":57},{"id":201,"type":202,"label":203,"file":160,"line":57},{"id":205,"type":206,"label":207,"file":154,"line":119,"wp_function":208},[222,223],{"from":197,"to":201,"sanitized":211},{"from":201,"to":205,"sanitized":211},{"summary":225,"deductions":226},"The heyday-search plugin v1.1.0 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL query sanitation, exclusively using prepared statements, and has a high rate of properly escaped output. The absence of known CVEs and historical vulnerabilities is a significant strength, suggesting a generally stable and well-maintained codebase.  However, the static analysis reveals critical security concerns primarily related to its attack surface.  The presence of one unprotected REST API route represents a direct entry point for potential malicious activity without any authentication or permission checks.  Furthermore, the lack of nonce checks on any of its entry points, combined with zero capability checks, exacerbates this risk, making it easier for unauthenticated or low-privileged users to trigger unintended actions. The taint analysis also shows flows with unsanitized paths, although these are not flagged as critical or high severity, they still warrant attention in conjunction with the exposed entry points.  The plugin's reliance on external HTTP requests, while not inherently a vulnerability, increases its potential attack surface and dependency on external services.  In conclusion, while the plugin is free from known vulnerabilities and uses good practices for database interactions and output handling, the unprotected REST API route and the absence of robust authorization mechanisms present a notable security risk that should be addressed.",[227,229,231,233],{"reason":228,"points":119},"Unprotected REST API route",{"reason":230,"points":189},"No nonce checks on entry points",{"reason":232,"points":189},"No capability checks on entry points",{"reason":234,"points":235},"Taint flows with unsanitized paths",3,"2026-03-17T07:10:41.098Z",{"wat":238,"direct":247},{"assetPaths":239,"generatorPatterns":243,"scriptPaths":244,"versionParams":246},[240,241,242],"\u002Fwp-content\u002Fplugins\u002Fheyday-search\u002Fincludes\u002Finstall.php","\u002Fwp-content\u002Fplugins\u002Fheyday-search\u002Fincludes\u002Ffeed.php","\u002Fwp-content\u002Fplugins\u002Fheyday-search\u002Fincludes\u002Fsettings-page.php",[],[245],"https:\u002F\u002Fcdn.heyday.io\u002Fcstmst\u002FheyDayMain.js",[],{"cssClasses":248,"htmlComments":249,"htmlAttributes":250,"restEndpoints":251,"jsGlobals":252,"shortcodeOutput":253},[],[],[],[],[],[]]