
SFR Directory Map Security & Risk Analysis
wordpress.org/plugins/sfr-directory-mapDisplay your Directorist directory listings on beautiful interactive maps with OpenStreetMap, marker clustering, and rich popups.
Is SFR Directory Map Safe to Use in 2026?
Generally Safe
Score 100/100SFR Directory Map has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The sfr-directory-map plugin v1.6.4 demonstrates generally good security practices, with a high percentage of SQL queries using prepared statements and a very low rate of unescaped output. The lack of known CVEs and the plugin's history of being unpatched is a positive indicator. However, the analysis reveals two critical security concerns. Firstly, there are two AJAX handlers that lack authentication checks, presenting a significant attack surface. Secondly, the taint analysis identified four high-severity flows with unsanitized paths, indicating potential for malicious input to be processed without proper sanitization, which could lead to various vulnerabilities. While the overall code quality is good, these specific weaknesses require immediate attention.
Key Concerns
- Unprotected AJAX handlers detected
- High severity taint flows with unsanitized paths
SFR Directory Map Security Vulnerabilities
SFR Directory Map Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
SFR Directory Map Attack Surface
AJAX Handlers 12
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
SFR Directory Map Maintenance & Trust
Maintenance Signals
Community Trust
SFR Directory Map Alternatives
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters
wp-google-map-plugin
WordPress map plugin for Google Maps, OpenStreetMap & Mapbox with store locator, filterable listings & custom markers.
ThemeCanvas Locations for Elementor with OpenStreetMap
themecanvas-locations-for-elementor
Add beautiful OpenStreetMap locations to Elementor with manual coordinate entry and custom pin colors.
OSM Categories
osm-categories
OpenStreetMap plugin to embed a map with markers to articles from different categories in different map layers.
Maps by G
leaflet-address-map
Display addresses on beautiful, interactive maps using OpenStreetMap. An open-source alternative to Google Maps that requires no API key.
LocalPoint
localpoint
Display your business location, opening hours and contact info using OpenStreetMap and Leaflet.js.
SFR Directory Map Developer Profile
6 plugins · 70 total installs
How We Detect SFR Directory Map
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sfr-directory-map/assets/css/markerclusterer.min.css/wp-content/plugins/sfr-directory-map/assets/css/leaflet.css/wp-content/plugins/sfr-directory-map/assets/css/sfrdm.css/wp-content/plugins/sfr-directory-map/assets/js/leaflet.js/wp-content/plugins/sfr-directory-map/assets/js/leaflet.markercluster.js/wp-content/plugins/sfr-directory-map/assets/js/sfrdm-public.js/wp-content/plugins/sfr-directory-map/assets/js/leaflet.js/wp-content/plugins/sfr-directory-map/assets/js/leaflet.markercluster.js/wp-content/plugins/sfr-directory-map/assets/js/sfrdm-public.jssfr-directory-map/assets/css/markerclusterer.min.css?ver=sfr-directory-map/assets/css/leaflet.css?ver=sfr-directory-map/assets/css/sfrdm.css?ver=sfr-directory-map/assets/js/leaflet.js?ver=sfr-directory-map/assets/js/leaflet.markercluster.js?ver=sfr-directory-map/assets/js/sfrdm-public.js?ver=HTML / DOM Fingerprints
sfrdm-map-containerdata-map-iddata-map-optionsdata-listings-urldata-cluster-spiderfyonsideSFRDM_DATA/wp-json/sfrdm/v1/listings[sfr_directory_map