
Paapi Product Search for Amazon Security & Risk Analysis
wordpress.org/plugins/paapi-product-search-for-amazonSearch and display Amazon products directly on your WordPress site with live search, filters, and beautiful themes. No ASIN hunting required.
Is Paapi Product Search for Amazon Safe to Use in 2026?
Generally Safe
Score 100/100Paapi Product Search for Amazon has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "paapi-product-search-for-amazon" plugin version 2.11.0 exhibits a mixed security posture. On the positive side, the plugin has a clean vulnerability history with no known CVEs, suggesting a generally well-maintained codebase. Furthermore, the vast majority of its outputs are properly escaped, and taint analysis reveals no critical or high-severity vulnerabilities related to unsanitized data flows. The absence of dangerous functions and unpatched vulnerabilities is also a strong positive indicator.
However, significant concerns arise from the attack surface analysis. The plugin exposes 10 AJAX handlers, with a notable 4 lacking any form of authentication checks. This is a critical oversight that could allow unauthenticated users to trigger potentially sensitive actions. Additionally, all 5 SQL queries are executed without prepared statements, increasing the risk of SQL injection vulnerabilities, especially when combined with the unprotected AJAX endpoints. The presence of file operations, though not explicitly flagged as risky, warrants caution given the lack of robust input validation on potential file paths.
While the plugin's history is spotless, the identified code analysis weaknesses create an unacceptable risk profile. The lack of authentication on multiple AJAX endpoints, coupled with raw SQL queries, presents a clear and present danger for exploitation. The bundled Freemius library, while likely not an immediate threat in itself without version context, adds to the overall complexity and potential for overlooked vulnerabilities. A robust security strategy would prioritize addressing these specific weaknesses to bring the plugin's security in line with its otherwise positive historical data.
Key Concerns
- AJAX handlers without authentication checks
- SQL queries not using prepared statements
Paapi Product Search for Amazon Security Vulnerabilities
Paapi Product Search for Amazon Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Paapi Product Search for Amazon Attack Surface
AJAX Handlers 10
Shortcodes 1
WordPress Hooks 18
Maintenance & Trust
Paapi Product Search for Amazon Maintenance & Trust
Maintenance Signals
Community Trust
Paapi Product Search for Amazon Alternatives
CodeShop Amazon Affiliate
codeshop-amazon-affiliate
CodeShop Amazon Affiliate plugin to setup a complete amazon shop solution. Simple & fast, also monetize your Wordpress posts.
AmaSync – Amazon Product Importer & Affiliate for WooCommerce
affiliate-products-importer-for-woocommerce
Easily import Amazon affiliate products into your WooCommerce store.
GothAmazon
gothamazon
Optimisez votre Affiliation Amazon comme jamais avec l'un des plugins les plus complets existants ! Développé de A à Z par un SEO qui connait les …
SF Autosuggest Product Search
sf-autosuggest-product-search
The plugin adds the functionality to use an autosuggest search for Woocommerce.
WP-Amazon-Search widget
amazon-search-widget
Add slick looking Amazon Search widgets to your blog posts in a brain-dead simple way! Just say [search] to add a Search widget anywhere on your blog.
Paapi Product Search for Amazon Developer Profile
1 plugin · 0 total installs
How We Detect Paapi Product Search for Amazon
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/paapi-product-search-for-amazon/src/assets/css/product-search.css/wp-content/plugins/paapi-product-search-for-amazon/src/assets/js/product-search.js/wp-content/plugins/paapi-product-search-for-amazon/src/assets/css/admin-style.css/wp-content/plugins/paapi-product-search-for-amazon/src/assets/js/product-search.jspaapi-product-search-for-amazon/src/assets/css/product-search.css?ver=paapi-product-search-for-amazon/src/assets/js/product-search.js?ver=paapi-product-search-for-amazon/src/assets/css/admin-style.css?ver=HTML / DOM Fingerprints
psfa-search-resultspsfa-search-formpsfa-product-titlepsfa-product-pricepsfa-product-imagepsfa-product-linkpsfa-load-more-buttonpsfa-no-results+1 more<!-- PSFA_MOCK_MODE --><!-- Add admin menu for settings --><!-- Register shortcode (prefixed per WordPress.org guidelines) --><!-- Enqueue scripts and styles -->+24 moredata-psfa-noncedata-psfa-iddata-psfa-namedata-psfa-pricedata-psfa-imagedata-psfa-url+14 morePSFA_ProductSearchpsfa_autocomplete_paramspsfa_load_more_paramspsfa_admin_params/wp-json/paapi-product-search-for-amazon/v1/settings/wp-json/paapi-product-search-for-amazon/v1/credentials/wp-json/paapi-product-search-for-amazon/v1/reset/wp-json/paapi-product-search-for-amazon/v1/cache/clear/wp-json/paapi-product-search-for-amazon/v1/cache/stats[psfa_search]