Search Support For WPML with Algolia Security & Risk Analysis

wordpress.org/plugins/search-wpml-algolia

Add multilingual support to your Algolia search results.

50 active installs v1.0.0 PHP 7.2+ WP 5.0+ Updated Jun 25, 2022
algolialanguagesearchwpml
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Search Support For WPML with Algolia Safe to Use in 2026?

Generally Safe

Score 85/100

Search Support For WPML with Algolia has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "search-wpml-algolia" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of any detected dangerous functions, raw SQL queries, file operations, or external HTTP requests is a significant positive indicator. Furthermore, the perfect record of output escaping and the lack of any identified taint flows suggest that the developers have implemented robust input validation and output sanitization practices. The plugin also demonstrates good practice by not exposing functionality without appropriate authorization checks, as evidenced by the zero unprotected entry points across AJAX, REST API, shortcodes, and cron events.

However, the analysis does highlight a critical area of concern: the complete absence of nonce and capability checks across all entry points. While the current version might not have exploitable vulnerabilities due to other protective measures, this lack of explicit authorization checks represents a significant oversight. It creates a potential weakness that could be exploited if new vulnerabilities are introduced in future updates or if the plugin's interaction with other WordPress components changes. The zero vulnerability history is encouraging, but it's important to remember that this is a snapshot in time and doesn't guarantee future security.

In conclusion, "search-wpml-algolia" v1.0.0 has a commendable baseline security foundation, with no immediate critical flaws evident in its code. The diligent use of prepared statements and proper output escaping are significant strengths. The primary weakness lies in the complete reliance on implicit security measures rather than explicit authorization checks like nonces and capabilities. This, coupled with the lack of any recorded vulnerability history, makes it difficult to gauge its long-term resilience against novel attack vectors. The plugin is currently secure from a static analysis perspective, but the missing authorization checks are a notable concern that could become a critical vulnerability in the future.

Key Concerns

  • Missing nonce checks on all entry points
  • Missing capability checks on all entry points
Vulnerabilities
None known

Search Support For WPML with Algolia Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Search Support For WPML with Algolia Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Search Support For WPML with Algolia Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
filteralgolia_searchable_post_shared_attributessearch-wpml-algolia.php:32
filteralgolia_post_shared_attributessearch-wpml-algolia.php:33
filteralgolia_posts_index_settingssearch-wpml-algolia.php:48
filteralgolia_searchable_posts_index_settingssearch-wpml-algolia.php:49
filteralgolia_search_paramssearch-wpml-algolia.php:68
filteralgolia_configsearch-wpml-algolia.php:92
filteralgolia_default_templatesearch-wpml-algolia.php:110
Maintenance & Trust

Search Support For WPML with Algolia Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.0
Last updatedJun 25, 2022
PHP min version7.2
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs50
Developer Profile

Search Support For WPML with Algolia Developer Profile

I. Kancijan

2 plugins · 80 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Search Support For WPML with Algolia

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/search-wpml-algolia/templates/

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Search Support For WPML with Algolia