Hound – AJAX Search Lite Security & Risk Analysis

wordpress.org/plugins/hound-lite

Search all posts and pages of a WordPress website instantly. Get search result as you keep typing your keyword.

0 active installs v1.0.1 PHP 7.4+ WP 5.0+ Updated Dec 18, 2023
ajax-searchinstant-searchlive-searchpost-searchsearch-blog
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Hound – AJAX Search Lite Safe to Use in 2026?

Generally Safe

Score 85/100

Hound – AJAX Search Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The hound-lite v1.0.1 plugin exhibits a generally strong security posture, demonstrating good development practices. The static analysis reveals no dangerous functions, all SQL queries are properly prepared, and there are no reported file operations or external HTTP requests, which are common vectors for vulnerabilities. The plugin also has a robust implementation of nonce and capability checks, and the taint analysis shows no critical or high-severity flows with unsanitized paths, indicating a low risk of common injection vulnerabilities. Furthermore, the plugin has no recorded vulnerability history (CVEs), suggesting a stable and well-maintained codebase over time.

However, there are some minor areas for improvement. While the overall output escaping is at 70%, which is acceptable, a 30% rate of unescaped output could still present a cross-site scripting (XSS) risk in specific, though perhaps less likely, scenarios. The presence of 7 AJAX handlers, while all protected, contributes to a moderate attack surface. Despite these minor points, the plugin's strengths significantly outweigh its weaknesses. The lack of past vulnerabilities and the secure coding practices observed in the static analysis indicate a reliable plugin. The overall risk is low, with the primary concern being the potential for unescaped output in edge cases.

Key Concerns

  • Unescaped output detected
Vulnerabilities
None known

Hound – AJAX Search Lite Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Hound – AJAX Search Lite Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
229
535 escaped
Nonce Checks
14
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

70% escaped764 total outputs
Data Flows
All sanitized

Data Flow Analysis

4 flows
csf_export (includes\admin\settings\codestar-framework\functions\actions.php:62)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Hound – AJAX Search Lite Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 7

authwp_ajax_csf-get-iconsincludes\admin\settings\codestar-framework\functions\actions.php:50
authwp_ajax_csf-exportincludes\admin\settings\codestar-framework\functions\actions.php:87
authwp_ajax_csf-importincludes\admin\settings\codestar-framework\functions\actions.php:123
authwp_ajax_csf-resetincludes\admin\settings\codestar-framework\functions\actions.php:150
authwp_ajax_csf-chosenincludes\admin\settings\codestar-framework\functions\actions.php:189
authwp_ajax_hound_ajax_searchincludes\AJAX_Handler.php:7
noprivwp_ajax_hound_ajax_searchincludes\AJAX_Handler.php:8

Shortcodes 1

[themexplosion_hound] includes\Frontend.php:6
WordPress Hooks 48
actionplugins_loadedhound.php:37
actionadmin_enqueue_scriptshound.php:39
actionwp_enqueue_scriptshound.php:40
actionwp_enqueue_scriptsincludes\admin\settings\codestar-framework\classes\abstract.class.php:20
actionadmin_menuincludes\admin\settings\codestar-framework\classes\admin-options.class.php:107
actionadmin_bar_menuincludes\admin\settings\codestar-framework\classes\admin-options.class.php:108
actionnetwork_admin_menuincludes\admin\settings\codestar-framework\classes\admin-options.class.php:112
filteradmin_footer_textincludes\admin\settings\codestar-framework\classes\admin-options.class.php:432
actionadd_meta_boxes_commentincludes\admin\settings\codestar-framework\classes\comment-options.class.php:38
actionedit_commentincludes\admin\settings\codestar-framework\classes\comment-options.class.php:39
actioncustomize_registerincludes\admin\settings\codestar-framework\classes\customize-options.class.php:44
actioncustomize_save_afterincludes\admin\settings\codestar-framework\classes\customize-options.class.php:45
actionwp_enqueue_scriptsincludes\admin\settings\codestar-framework\classes\customize-options.class.php:49
actionadd_meta_boxesincludes\admin\settings\codestar-framework\classes\metabox-options.class.php:50
actionsave_postincludes\admin\settings\codestar-framework\classes\metabox-options.class.php:51
actionedit_attachmentincludes\admin\settings\codestar-framework\classes\metabox-options.class.php:52
actionwp_nav_menu_item_custom_fieldsincludes\admin\settings\codestar-framework\classes\nav-menu-options.class.php:32
actionwp_update_nav_menu_itemincludes\admin\settings\codestar-framework\classes\nav-menu-options.class.php:33
filterwp_edit_nav_menu_walkerincludes\admin\settings\codestar-framework\classes\nav-menu-options.class.php:35
actionadmin_initincludes\admin\settings\codestar-framework\classes\profile-options.class.php:32
actionshow_user_profileincludes\admin\settings\codestar-framework\classes\profile-options.class.php:44
actionedit_user_profileincludes\admin\settings\codestar-framework\classes\profile-options.class.php:45
actionpersonal_options_updateincludes\admin\settings\codestar-framework\classes\profile-options.class.php:47
actionedit_user_profile_updateincludes\admin\settings\codestar-framework\classes\profile-options.class.php:48
actionafter_setup_themeincludes\admin\settings\codestar-framework\classes\setup.class.php:73
actioninitincludes\admin\settings\codestar-framework\classes\setup.class.php:74
actionswitch_themeincludes\admin\settings\codestar-framework\classes\setup.class.php:75
actionadmin_enqueue_scriptsincludes\admin\settings\codestar-framework\classes\setup.class.php:76
actionwp_enqueue_scriptsincludes\admin\settings\codestar-framework\classes\setup.class.php:77
actionwp_headincludes\admin\settings\codestar-framework\classes\setup.class.php:78
filteradmin_body_classincludes\admin\settings\codestar-framework\classes\setup.class.php:79
actionadmin_footerincludes\admin\settings\codestar-framework\classes\shortcode-options.class.php:47
actioncustomize_controls_print_footer_scriptsincludes\admin\settings\codestar-framework\classes\shortcode-options.class.php:48
actionelementor/editor/before_enqueue_scriptsincludes\admin\settings\codestar-framework\classes\shortcode-options.class.php:59
actionelementor/editor/footerincludes\admin\settings\codestar-framework\classes\shortcode-options.class.php:60
actionelementor/editor/footerincludes\admin\settings\codestar-framework\classes\shortcode-options.class.php:61
actionenqueue_block_editor_assetsincludes\admin\settings\codestar-framework\classes\shortcode-options.class.php:258
actionmedia_buttonsincludes\admin\settings\codestar-framework\classes\shortcode-options.class.php:262
actionadmin_initincludes\admin\settings\codestar-framework\classes\taxonomy-options.class.php:41
actionadmin_footerincludes\admin\settings\codestar-framework\fields\icon\icon.php:41
actioncustomize_controls_print_footer_scriptsincludes\admin\settings\codestar-framework\fields\icon\icon.php:42
actionadmin_print_footer_scriptsincludes\admin\settings\codestar-framework\fields\link\link.php:65
actionprint_default_editor_scriptsincludes\admin\settings\codestar-framework\fields\wp_editor\wp_editor.php:62
actionadmin_menuincludes\admin\settings\codestar-framework\views\welcome.php:19
filterplugin_action_linksincludes\admin\settings\codestar-framework\views\welcome.php:20
filterplugin_row_metaincludes\admin\settings\codestar-framework\views\welcome.php:21
actioninitincludes\admin\settings\settings-parts\common\get-post-types.php:4
actionadmin_menuincludes\Admin.php:9
Maintenance & Trust

Hound – AJAX Search Lite Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedDec 18, 2023
PHP min version7.4
Downloads584

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Hound – AJAX Search Lite Developer Profile

Themexplosion

3 plugins · 1K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Hound – AJAX Search Lite

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/hound-lite/assets/css/hound-admin.css/wp-content/plugins/hound-lite/assets/js/hound-admin.js/wp-content/plugins/hound-lite/assets/css/hound-frontend.css/wp-content/plugins/hound-lite/assets/js/hound-search.js
Script Paths
/wp-content/plugins/hound-lite/assets/js/hound-admin.js/wp-content/plugins/hound-lite/assets/js/hound-search.js
Version Parameters
hound-admin?ver=hound-frontend?ver=hound-search?ver=

HTML / DOM Fingerprints

JS Globals
hound_search_params
FAQ

Frequently Asked Questions about Hound – AJAX Search Lite