Search and Replace for Block Editor Security & Risk Analysis

wordpress.org/plugins/search-replace-for-block-editor

Search and Replace text within the WordPress Block Editor just like Microsoft Word or Google Docs. It's super fast, easy & just works!

2K active installs v1.8.0 PHP 7.4+ WP 6.0+ Updated Dec 12, 2025
blockeditorreplacesearchtext
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Search and Replace for Block Editor Safe to Use in 2026?

Generally Safe

Score 100/100

Search and Replace for Block Editor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The static analysis of search-replace-for-block-editor v1.8.0 reveals a strong security posture based on the provided metrics. The absence of dangerous functions, SQL queries using prepared statements exclusively, and fully escaped output are excellent indicators of secure coding practices. Furthermore, the lack of file operations and external HTTP requests minimizes potential attack vectors. The plugin also exhibits zero known CVEs, which is highly favorable and suggests a well-maintained and secure history.

However, it's important to note the complete absence of identified entry points through AJAX, REST API, shortcodes, or cron events. While this contributes to a low attack surface, it also means there are no explicit security checks (like nonce or capability checks) to analyze. The absence of taint analysis results, while potentially indicating no issues were found, could also mean the analysis was not exhaustive or did not cover all code paths.

In conclusion, the plugin demonstrates a high level of security through its current code implementation and vulnerability history. The identified strengths are significant. The primary area of caution stems from the complete lack of exposed entry points and the subsequent absence of any observed security checks, which, while not indicating an immediate vulnerability, means the security of these hypothetical points remains unverified by the provided data. This leaves room for potential future misconfigurations or overlooked entry points.

Vulnerabilities
None known

Search and Replace for Block Editor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Search and Replace for Block Editor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Search and Replace for Block Editor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionenqueue_block_editor_assetssearch-replace-for-block-editor.php:35
actioninitsearch-replace-for-block-editor.php:70
Maintenance & Trust

Search and Replace for Block Editor Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedDec 12, 2025
PHP min version7.4
Downloads14K

Community Trust

Rating100/100
Number of ratings2
Active installs2K
Developer Profile

Search and Replace for Block Editor Developer Profile

badasswp

13 plugins · 5K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Search and Replace for Block Editor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/search-replace-for-block-editor/dist/app.js
Script Paths
/wp-content/plugins/search-replace-for-block-editor/dist/app.js
Version Parameters
search-replace-for-block-editor/dist/app.js?ver=

HTML / DOM Fingerprints

JS Globals
srfbe
FAQ

Frequently Asked Questions about Search and Replace for Block Editor