Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg) Security & Risk Analysis

wordpress.org/plugins/responsive-accordion-and-collapse

Accordion And Collapse is the most easiest drag & drop accordion builder for WordPress. You can add multiple accordion and collapse with this.

40K active installs v2.5.3 PHP + WP 5.0+ Updated Oct 15, 2025
accordioncollapsefaqfrequently-asked-questionsresponsive-accordion
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg) Safe to Use in 2026?

Generally Safe

Score 100/100

Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "responsive-accordion-and-collapse" plugin v2.5.3 exhibits a generally good security posture, with strong practices in several key areas. The absence of known CVEs and a clean vulnerability history are positive indicators. Furthermore, the code shows excellent adherence to secure coding standards by utilizing prepared statements for all SQL queries and properly escaping nearly all output, which significantly mitigates risks related to common web vulnerabilities like SQL injection and Cross-Site Scripting (XSS).

However, two "dangerous functions" were identified: `unserialize`. While the static analysis didn't reveal any specific taint flows associated with `unserialize` in this version, its presence alone warrants caution. If user-supplied data is ever used in conjunction with `unserialize` without proper sanitization or validation, it could lead to Remote Code Execution (RCE) or other severe vulnerabilities. The plugin also lacks explicit nonce checks and capability checks on its single shortcode entry point, which, while not an immediate critical risk given the limited attack surface and lack of identified taint, represents a potential area for improvement in robustness against certain types of attacks.

Key Concerns

  • Use of unserialize function
  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg) Code Analysis

Dangerous Functions
2
Raw SQL Queries
0
0 prepared
Unescaped Output
2
101 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Dangerous Functions Found

unserialize$Accordion_Settings = unserialize(get_post_meta( $post_id, 'Accordion_Settings', true));front\ac-content.php:10
unserialize$accordion_data = unserialize(get_post_meta( get_the_ID(), 'wpsm_accordion_data', true));front\ac-content.php:43

Output Escaping

98% escaped103 total outputs
Attack Surface

Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg) Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[WPSM_AC] front\shortcode.php:3
Maintenance & Trust

Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg) Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 15, 2025
PHP min version
Downloads1.3M

Community Trust

Rating92/100
Number of ratings674
Active installs40K
Developer Profile

Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg) Developer Profile

wpshopmart

8 plugins · 86K total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
986 days
View full developer profile
Detection Fingerprints

How We Detect Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/responsive-accordion-and-collapse/front/style.php

HTML / DOM Fingerprints

CSS Classes
wpsm_panel-groupwpsm_panelwpsm_panel-defaultwpsm_panel-headingwpsm_panel-titleac_open_cl_iconac_title_classwpsm_panel-collapse+1 more
HTML Comments
Inner panel StartInner panel End
Data Attributes
data-parentdata-target
JS Globals
wpshopmart_accordion_directory_pathwpshopmart_accordion_directory_urlwpshopmart_accordion_text_domain
Shortcode Output
[WPSM_AC id=
FAQ

Frequently Asked Questions about Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg)