Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl Security & Risk Analysis

wordpress.org/plugins/quiqowl

QuiqOwl integrates seamlessly with WooCommerce, offering customizable search options, smart filtering, and advanced indexing.

400 active installs v1.0.3 PHP 7.3+ WP 5.8+ Updated Apr 30, 2025
ajax-searchblockblocksproduct-searchwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl Safe to Use in 2026?

Generally Safe

Score 100/100

Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The quiqowl plugin v1.0.3 exhibits a generally strong security posture based on the provided static analysis. All identified AJAX entry points are protected with authentication checks, and there are no exposed REST API routes, shortcodes, or cron events that could serve as unauthenticated entry points. The code demonstrates good practices with 100% of SQL queries utilizing prepared statements and a very high rate of output escaping (98%). The absence of dangerous functions, file operations, and external HTTP requests further contributes to a secure foundation. Taint analysis shows no identified flows with unsanitized paths, indicating no immediate risks of code injection or data manipulation through user input.

Key Concerns

  • Bundled Freemius v1.0 library may be outdated
  • Zero capability checks on AJAX handlers
  • Some AJAX handlers lack nonce checks
Vulnerabilities
None known

Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
8 prepared
Unescaped Output
3
152 escaped
Nonce Checks
6
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

SQL Query Safety

100% prepared8 total queries

Output Escaping

98% escaped155 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
quiqowl_product_search_results (admin\functions.php:709)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl Attack Surface

Entry Points12
Unprotected0

AJAX Handlers 12

authwp_ajax_quiqowl_product_search_resultsadmin\functions.php:704
noprivwp_ajax_quiqowl_product_search_resultsadmin\functions.php:705
authwp_ajax_quiqowl_add_to_cartadmin\functions.php:872
noprivwp_ajax_quiqowl_add_to_cartadmin\functions.php:873
authwp_ajax_quiqowl_lightbox_dataadmin\functions.php:897
noprivwp_ajax_quiqowl_lightbox_dataadmin\functions.php:898
authwp_ajax_quiqowl_ajax_load_dataadmin\functions.php:1171
noprivwp_ajax_quiqowl_ajax_load_dataadmin\functions.php:1172
authwp_ajax_quiqowl_update_product_viewadmin\functions.php:1324
noprivwp_ajax_quiqowl_update_product_viewadmin\functions.php:1325
authwp_ajax_quiqowl_admin_render_product_cart_dataadmin\functions.php:1346
noprivwp_ajax_quiqowl_admin_render_product_cart_dataadmin\functions.php:1347
WordPress Hooks 14
filterquiqowl_update_cart_detailsadmin\functions.php:242
filterquiqowl_apply_html_render_sanitizationadmin\functions.php:340
actionwoocommerce_add_to_cartadmin\functions.php:356
actionrest_api_initincludes\Api\Quiqowl_Server.php:31
actionadmin_enqueue_scriptsincludes\Quiqowl_Admin.php:30
actioninitincludes\Quiqowl_Admin.php:31
actionadmin_menuincludes\Quiqowl_Admin.php:34
actionplugins_loadedincludes\Quiqowl_Block.php:51
actioninitincludes\Quiqowl_Block.php:55
actioninitincludes\Quiqowl_Init.php:55
actionplugins_loadedincludes\Quiqowl_Init.php:57
actionbefore_woocommerce_initincludes\Quiqowl_Init.php:101
actionenqueue_block_editor_assetsincludes\Quiqowl_Resources.php:37
actioninitincludes\Quiqowl_Resources.php:40
Maintenance & Trust

Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 30, 2025
PHP min version7.3
Downloads6K

Community Trust

Rating0/100
Number of ratings0
Active installs400
Developer Profile

Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl Developer Profile

Untapwp

2 plugins · 410 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quiqowl/admin/assets/css/quiqowl-admin-style.css/wp-content/plugins/quiqowl/admin/assets/js/quiqowl-admin-script.js/wp-content/plugins/quiqowl/resources/js/swiper-bundle.js/wp-content/plugins/quiqowl/resources/css/swiper-bundle.css
Script Paths
/wp-content/plugins/quiqowl/admin/assets/js/quiqowl-admin-script.js/wp-content/plugins/quiqowl/resources/js/swiper-bundle.js
Version Parameters
quiqowl/admin/assets/css/quiqowl-admin-style.css?ver=quiqowl/admin/assets/js/quiqowl-admin-script.js?ver=quiqowl/resources/js/swiper-bundle.js?ver=quiqowl/resources/css/swiper-bundle.css?ver=

HTML / DOM Fingerprints

CSS Classes
quiqowl-admin-style
Data Attributes
data-quiqowl-widget-id
JS Globals
adminObjectquiqowl_ajax_object
REST Endpoints
/wp-json/quiqowl/v1/products/wp-json/quiqowl/v1/search
Shortcode Output
[quiqowl_search][quiqowl_filter]
FAQ

Frequently Asked Questions about Ajax Search for WooCommerce, Product Search Gutenberg Block for WooCommerce – QuiqOwl