
REST API Search Security & Risk Analysis
wordpress.org/plugins/rest-api-searchThis adds the missing functionality of Search into the WordPress REST API.
Is REST API Search Safe to Use in 2026?
Generally Safe
Score 85/100REST API Search has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis and vulnerability history, the "rest-api-search" v1.4 plugin exhibits a strong security posture. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits its attack surface. Furthermore, the code analysis reveals a commendable lack of dangerous functions, SQL queries that are not prepared, unescaped output, file operations, and external HTTP requests. The complete absence of any known CVEs, let alone unpatched ones, suggests a history of secure development or prompt patching of any past issues.
The plugin demonstrates good practices by not bundling external libraries and showing no taint analysis findings, indicating a robust approach to handling data flow and preventing common injection vulnerabilities. The primary concern, if any, stems from the complete lack of any security checks (nonce or capability) being explicitly reported. While this might be a limitation of the analysis tool in detecting checks within its limited scope of entry points, it's an area to be mindful of if the plugin were to introduce new entry points in the future. Overall, for version 1.4, this plugin appears to be very secure and well-developed with no immediate critical or high-risk vulnerabilities identified.
REST API Search Security Vulnerabilities
REST API Search Release Timeline
REST API Search Code Analysis
REST API Search Attack Surface
WordPress Hooks 1
Maintenance & Trust
REST API Search Maintenance & Trust
Maintenance Signals
Community Trust
REST API Search Alternatives
REST API for Relevanssi
rest-api-for-relevanssi
The plugin provides a REST API endpoint for the Relevanssi search plugin.
SearchWP API
searchwp-api
Run advanced searches via the WordPress REST API and SearchWP.
Site Kit by Google – Analytics, Search Console, AdSense, Speed
google-site-kit
Site Kit is a one-stop solution for WordPress users to use everything Google has to offer to make them successful on the web.
Rank Math SEO – AI SEO Tools to Dominate SEO Rankings
seo-by-rank-math
Rank Math SEO is the best WordPress SEO plugin with the features of many SEO and AI SEO tools in a single package to help multiply your SEO traffic.
All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic
all-in-one-seo-pack
AIOSEO is the most powerful WordPress SEO plugin. Improve SEO rankings and traffic with comprehensive SEO tools and smart AI SEO optimizations!
REST API Search Developer Profile
1 plugin · 20 total installs
How We Detect REST API Search
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rest-api-search/css/search-filters.css/wp-content/plugins/rest-api-search/js/search-filters.js/wp-content/plugins/rest-api-search/js/search-filters.jsrest-api-search/css/search-filters.css?ver=rest-api-search/js/search-filters.js?ver=HTML / DOM Fingerprints
/wp-json/rest-api-search/v1/search