Realty Portal – Advanced Search Security & Risk Analysis

wordpress.org/plugins/realty-portal-advanced-search

Stable tag: 0.3.3 License: GPLv2 or later License URI: http://www.gnu.org/licenses/gpl-2.0.html An add-on to manage agents and their information rig …

40 active installs v0.3.9 PHP + WP 4.5+ Updated Mar 22, 2019
listingspropertyproperty-listingsproperty-managementreal-estate
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Realty Portal – Advanced Search Safe to Use in 2026?

Generally Safe

Score 85/100

Realty Portal – Advanced Search has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The security posture of realty-portal-advanced-search v0.3.9 appears to be a mixed bag, leaning towards concerning. While the plugin boasts zero known CVEs and a seemingly small attack surface with no reported vulnerabilities in its history, the static analysis reveals significant weaknesses. The complete absence of capability checks and nonce checks on any entry points, combined with a concerning 100% of SQL queries not using prepared statements, indicates a high likelihood of SQL injection vulnerabilities. Furthermore, over 40% of output is not properly escaped, posing a risk of cross-site scripting (XSS) attacks. The lack of any recorded vulnerabilities in the past might be due to the plugin's age, limited adoption, or simply the absence of thorough security audits in the past. However, based on the current code signals, the potential for severe security issues is substantial.

Key Concerns

  • 100% of SQL queries not using prepared statements
  • 56% of output properly escaped (44% unescaped)
  • 0 Capability checks found
  • 0 Nonce checks found
Vulnerabilities
None known

Realty Portal – Advanced Search Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Realty Portal – Advanced Search Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
0 prepared
Unescaped Output
28
35 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared2 total queries

Output Escaping

56% escaped63 total outputs
Attack Surface

Realty Portal – Advanced Search Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
filterRP_Tab_Setting/Configincludes\class-advanced-search-dashboard.php:18
actionRP_Tab_Setting_Content/Config_Afterincludes\class-advanced-search-dashboard.php:19
filterrp_list_shortcodeincludes\class-advanced-search-shortcode.php:18
actionwp_enqueue_scriptsrealty-portal-advanced-search.php:34
actioninitrealty-portal-advanced-search.php:36
actionwidgets_initrealty-portal-advanced-search.php:41
actionnetwork_admin_noticesrealty-portal-advanced-search.php:53
actionadmin_noticesrealty-portal-advanced-search.php:58
actionrp_init_agentrealty-portal-advanced-search.php:470
Maintenance & Trust

Realty Portal – Advanced Search Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedMar 22, 2019
PHP min version
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

Realty Portal – Advanced Search Developer Profile

NooTheme

13 plugins · 350 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Realty Portal – Advanced Search

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/realty-portal-advanced-search/assets/css/realty-portal-advanced-search.css

HTML / DOM Fingerprints

CSS Classes
rp_search_frontend
Data Attributes
data-show_mapdata-show_controlsdata-styledata-latitudedata-longitudedata-zoom+36 more
JS Globals
rp_advanced_search_params
FAQ

Frequently Asked Questions about Realty Portal – Advanced Search