
REST API Manager For ACF Security & Risk Analysis
wordpress.org/plugins/rest-api-manager-for-acfCustom REST API endpoint plugin to return ACF fields, post meta (selected keys), or a mixed object. Fully configurable from the admin settings page.
Is REST API Manager For ACF Safe to Use in 2026?
Generally Safe
Score 100/100REST API Manager For ACF has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "rest-api-manager-for-acf" v1.0.2 reveals a generally strong security posture with no identified attack surface points, dangerous functions, direct SQL queries, or external HTTP requests. The plugin also demonstrates good practices by utilizing prepared statements for all SQL queries. However, a significant concern arises from the low percentage (38%) of properly escaped output. This indicates a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not consistently sanitized before being displayed.
The vulnerability history further reinforces the perception of a secure plugin, with zero known CVEs and no recorded past vulnerabilities. This suggests a history of responsible development and maintenance. Despite the lack of identified critical issues in taint analysis and the absence of common vulnerability types, the insufficient output escaping remains a notable weakness that could be exploited. The plugin's strength lies in its limited attack surface and adherence to secure data handling for database operations, but it needs to improve its output sanitization practices.
Key Concerns
- Insufficient output escaping detected
REST API Manager For ACF Security Vulnerabilities
REST API Manager For ACF Code Analysis
Output Escaping
REST API Manager For ACF Attack Surface
WordPress Hooks 4
Maintenance & Trust
REST API Manager For ACF Maintenance & Trust
Maintenance Signals
Community Trust
REST API Manager For ACF Alternatives
Custom API for WP
custom-api-for-wp
Connect WordPress with External APIs and create no-code custom WordPress REST API endpoints to interact with the WordPress database to perform SQL ope …
Advanced Custom Routes – Custom Endpoints for WP REST API
advanced-custom-routes-custom-endpoints-for-wp-rest-api
The easiest way to create custom WP REST API Routes without writing a line of code.
SapientSEO
sapientseo
Adds secured custom REST API endpoints to integrate WordPress with the SapientSEO app.
WP REST API POST/ PAGE CUSTOM FIELDS
wp-rest-api-post-page-custom-fields
Adds Custom Field output to the WP REST API for posts, pages, users, and taxonomies.
Behamics Organic Automation
behamics-organic-automation
Secure REST API endpoints for WordPress automation with Elementor and ACF support.
REST API Manager For ACF Developer Profile
1 plugin · 20 total installs
How We Detect REST API Manager For ACF
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rest-api-manager-for-acf/assets/js/admin.js/wp-content/plugins/rest-api-manager-for-acf/assets/js/admin.jsrest-api-manager-for-acf/assets/js/admin.js?ver=1.0.2HTML / DOM Fingerprints
name="ramacf_api_base"name="ramacf_api_data_type"name="ramacf_api_meta_keys[]"/wp-json/ramacf/v1/page/(?P<id>\d+)