
Priceline Partner Network WordPress Plugin Security & Risk Analysis
wordpress.org/plugins/priceline-partner-network-official-searchboxEasily add the Priceline travel widget to your own website in just a few clicks.
Is Priceline Partner Network WordPress Plugin Safe to Use in 2026?
Generally Safe
Score 85/100Priceline Partner Network WordPress Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "priceline-partner-network-official-searchbox" v1.1.0 exhibits a mixed security posture. On one hand, the absence of known CVEs and a lack of identified critical or high severity taint flows are positive indicators. Furthermore, all SQL queries utilize prepared statements, and there are no file operations or external HTTP requests, which are good security practices. However, the static analysis reveals significant concerns that undermine this otherwise positive outlook. The presence of 'create_function' is a major red flag, as this deprecated PHP function can be a source of remote code execution vulnerabilities if not handled with extreme care, which is often difficult to guarantee. Additionally, a critically low percentage of output escaping (1%) suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the website. The complete lack of nonce checks and capability checks on entry points, coupled with zero identified AJAX handlers or REST API routes, is unusual. While this means there's no direct attack surface exposed without authentication, it also means that any potential functionality that might exist, if triggered through indirect means or future development, would be entirely unprotected.
Key Concerns
- Dangerous function: create_function used
- Very low output escaping percentage
- No nonce checks found
- No capability checks found
Priceline Partner Network WordPress Plugin Security Vulnerabilities
Priceline Partner Network WordPress Plugin Code Analysis
Dangerous Functions Found
Output Escaping
Priceline Partner Network WordPress Plugin Attack Surface
WordPress Hooks 6
Maintenance & Trust
Priceline Partner Network WordPress Plugin Maintenance & Trust
Maintenance Signals
Community Trust
Priceline Partner Network WordPress Plugin Alternatives
Booking.com Official Search Box
bookingcom-official-searchbox
The official Booking.com search box is a user-friendly, customisable plugin to add the Booking.com search box to your own website in two easy steps.
Agoda Affiliate Partners Text Link Generator
agoda-affiliate-partners-text-link-generator
This tool was built so that our affiliate partners can easily generate text links in Wordpress.
what3words Address Field
3-word-address-validation-field
Official plugin to allow customers to enter and validate a what3words address on your checkout for accurate deliveries.
Dexonline Searchbox
dexonline-searchbox
Dexonline Searchbox is a WordPress plugin that adds a searchbox on the sidebar to easily look up Romanian words definitions on dexonline.ro.
Old-to-New Agoda Link Converter
old-to-new-agoda-link-converter
With the Old-to-New Agoda Link Converter plugin, existing old link structure Agoda affiliate links will be converted to new link structures for improv …
Priceline Partner Network WordPress Plugin Developer Profile
1 plugin · 10 total installs
How We Detect Priceline Partner Network WordPress Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/priceline-partner-network-official-searchbox/css/rs_settings.css/wp-content/plugins/priceline-partner-network-official-searchbox/js/ppn_searchbox.js/wp-content/plugins/priceline-partner-network-official-searchbox/js/ppn_searchbox.jspriceline-partner-network-official-searchbox/css/rs_settings.css?ver=priceline-partner-network-official-searchbox/js/ppn_searchbox.js?ver=HTML / DOM Fingerprints
rs_searchbox<!-- disable file editing --><!-- check if page is being loaded directly and exit -->id="rs_ajax_nonce" class="hidden" style="visibility: hidden;"rs_searchbox_optionsRS_TEXT_DOMAINRS_PLUGIN_VERSIONRS_WP_VERSION