Keyideas Jewelry Filter & Search Security & Risk Analysis

wordpress.org/plugins/keyideas-jewelry-ring-filter-search

https://www.youtube.com/playlist?list=PLxIkMlb2za2UbligOxt8k82ITiUSn1o1z

0 active installs v1.2.5 PHP + WP 5.5+ Updated Feb 16, 2026
engagement-ring-builderjewelrywedding-rings
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Keyideas Jewelry Filter & Search Safe to Use in 2026?

Generally Safe

Score 100/100

Keyideas Jewelry Filter & Search has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "keyideas-jewelry-ring-filter-search" plugin v1.2.5 demonstrates generally good security practices with a strong emphasis on prepared statements for SQL queries and a very high percentage of properly escaped output. The plugin also incorporates a reasonable number of nonce and capability checks, indicating an awareness of common WordPress security vulnerabilities. However, a significant concern arises from the presence of two AJAX handlers that lack authentication checks. This creates a direct attack vector where unauthenticated users could potentially interact with sensitive plugin functionalities.

The taint analysis reveals a concerning flow with a "High" severity, even though it's not classified as critical. Combined with the unsanitized paths identified, this suggests a potential for privilege escalation or data manipulation if exploited. The absence of any recorded vulnerabilities in its history is a positive sign, suggesting a generally stable codebase. However, the presence of these identified code-level risks, particularly the unprotected AJAX handlers and the high-severity taint flow, necessitate careful consideration.

In conclusion, while the plugin has strong foundational security in areas like SQL handling and output escaping, the unprotected AJAX endpoints and the identified high-severity taint flow represent clear and actionable security risks. These weaknesses, even with a clean vulnerability history, should be addressed to ensure a more robust security posture. The plugin's strengths lie in its diligent SQL practices and output escaping, but its vulnerabilities are concentrated in critical entry points.

Key Concerns

  • AJAX handlers without auth checks
  • High severity taint flow
  • Flows with unsanitized paths
Vulnerabilities
None known

Keyideas Jewelry Filter & Search Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Keyideas Jewelry Filter & Search Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
7
808 escaped
Nonce Checks
5
Capability Checks
3
File Operations
0
External Requests
3
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

99% escaped815 total outputs
Data Flows
3 unsanitized

Data Flow Analysis

4 flows3 with unsanitized paths
krfsapp_getVisitorIpDetails (admin\partials\plugin_activation_form.php:6)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

Keyideas Jewelry Filter & Search Attack Surface

Entry Points7
Unprotected2

AJAX Handlers 6

authwp_ajax_krfs_load_more_prodsajax-handler.php:7
noprivwp_ajax_krfs_load_more_prodsajax-handler.php:8
authwp_ajax_krfs_filter_productsajax-handler.php:9
noprivwp_ajax_krfs_filter_productsajax-handler.php:10
authwp_ajax_krfs_get_attribute_termsajax-handler.php:11
noprivwp_ajax_krfs_get_attribute_termsajax-handler.php:12

Shortcodes 1

[KRFS-EngagementBuilder-Listing] krfs_hooks.php:75
WordPress Hooks 5
actionadmin_menukeyideas-jewelry-ring-filter-search.php:68
actionwp_enqueue_scriptskrfs_hooks.php:18
actioninitkrfs_hooks.php:85
actionadmin_initkrfs_hooks.php:149
actionadmin_noticeskrfs_hooks.php:177
Maintenance & Trust

Keyideas Jewelry Filter & Search Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 16, 2026
PHP min version
Downloads980

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Keyideas Jewelry Filter & Search Developer Profile

Keyideas Infotech Private Limited

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Keyideas Jewelry Filter & Search

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/keyideas-jewelry-ring-filter-search/assets/krfs-base.css/wp-content/plugins/keyideas-jewelry-ring-filter-search/assets/libs/bootstrap.min.css/wp-content/plugins/keyideas-jewelry-ring-filter-search/assets/libs/bootstrap.min.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/assets/libs/numeral-languages.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/assets/libs/numeral.min.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/src/theme-zero/assets/style-krfs.min.css/wp-content/plugins/keyideas-jewelry-ring-filter-search/admin/scripts/admin.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/admin/scripts/admin-activation-form.js+2 more
Script Paths
/wp-content/plugins/keyideas-jewelry-ring-filter-search/assets/libs/bootstrap.min.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/admin/scripts/admin.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/admin/scripts/admin-activation-form.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/admin/scripts/admin-tab-language.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/assets/libs/numeral-languages.js/wp-content/plugins/keyideas-jewelry-ring-filter-search/assets/libs/numeral.min.js
Version Parameters
keyideas-jewelry-ring-filter-search/assets/krfs-base.css?ver=keyideas-jewelry-ring-filter-search/assets/libs/bootstrap.min.css?ver=keyideas-jewelry-ring-filter-search/assets/libs/bootstrap.min.js?ver=keyideas-jewelry-ring-filter-search/admin/scripts/admin.js?ver=keyideas-jewelry-ring-filter-search/admin/scripts/admin-activation-form.js?ver=keyideas-jewelry-ring-filter-search/admin/scripts/admin-tab-language.js?ver=keyideas-jewelry-ring-filter-search/assets/libs/numeral-languages.js?ver=keyideas-jewelry-ring-filter-search/assets/libs/numeral.min.js?ver=keyideas-jewelry-ring-filter-search/src/theme-zero/assets/style-krfs.min.css?ver=

HTML / DOM Fingerprints

CSS Classes
krfs_main_sectionkrfs_highlight_img_btnkrfs_highlight_svg
HTML Comments
Powered By: Keyideas Infotech Pvt. Ltd.
Data Attributes
data-toggle="tab"
JS Globals
KRFS_GLOBALS
Shortcode Output
[KRFS-EngagementBuilder-Listing]
FAQ

Frequently Asked Questions about Keyideas Jewelry Filter & Search