Search Exclude HTML Tags Security & Risk Analysis

wordpress.org/plugins/search-exclude-html-tags

Makes the built-in search ignore HTML tags in post content.

30 active installs v1.0 PHP + WP 3.0+ Updated Dec 4, 2011
search
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Search Exclude HTML Tags Safe to Use in 2026?

Generally Safe

Score 85/100

Search Exclude HTML Tags has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 14yr ago
Risk Assessment

The "search-exclude-html-tags" plugin version 1.0 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, file operations, external HTTP requests, and the exclusive use of prepared statements for SQL queries are significant strengths. Furthermore, all identified SQL queries are properly escaped, and there are no unescaped outputs or taint analysis issues. This indicates a well-written codebase with good security practices implemented. The plugin's attack surface is also remarkably clean, with no identified AJAX handlers, REST API routes, shortcodes, or cron events, and importantly, no unprotected entry points. The vulnerability history is also completely clean, with no recorded CVEs, which further reinforces its current security. The primary concern, albeit a minor one, is the lack of nonce and capability checks. While the current attack surface is zero, if functionality were to be added in the future, the absence of these checks could present an immediate security risk without further development. Overall, this plugin is currently very secure, but future development should incorporate standard WordPress security practices like nonce and capability checks to maintain this posture.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Search Exclude HTML Tags Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Search Exclude HTML Tags Release Timeline

v1.0Current
Code Analysis
Analyzed Apr 16, 2026

Search Exclude HTML Tags Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
3 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared3 total queries
Attack Surface

Search Exclude HTML Tags Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filterposts_searchsearch-exclude-html-tags.php:71
Maintenance & Trust

Search Exclude HTML Tags Maintenance & Trust

Maintenance Signals

WordPress version tested3.2.1
Last updatedDec 4, 2011
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs30
Developer Profile

Search Exclude HTML Tags Developer Profile

superann

4 plugins · 690 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Search Exclude HTML Tags

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
fnStripTags
FAQ

Frequently Asked Questions about Search Exclude HTML Tags