
User Recent Search History Security & Risk Analysis
wordpress.org/plugins/user-recent-search-historyThis plugin is to show user's recent search history.
Is User Recent Search History Safe to Use in 2026?
Generally Safe
Score 85/100User Recent Search History has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "user-recent-search-history" plugin version 1.1 exhibits a generally good security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. Furthermore, the lack of dangerous functions, file operations, and external HTTP requests reduces potential vectors for exploitation. The plugin also has no known past vulnerabilities, which is a positive indicator of its development history. However, there are areas for improvement. The low percentage of SQL queries using prepared statements (17%) and a concerningly low 13% of outputs being properly escaped present potential risks. While taint analysis shows no issues, the low escape rate means that any data processed and displayed could be vulnerable to cross-site scripting (XSS) if input is not strictly validated at the point of entry. The absence of nonce checks and capability checks on entry points, though currently moot due to the lack of entry points, would be critical if any were introduced without proper security measures.
Key Concerns
- Low SQL prepared statement usage
- Low output escaping rate
- Missing nonce checks on entry points
- Missing capability checks on entry points
User Recent Search History Security Vulnerabilities
User Recent Search History Code Analysis
SQL Query Safety
Output Escaping
User Recent Search History Attack Surface
WordPress Hooks 3
Maintenance & Trust
User Recent Search History Maintenance & Trust
Maintenance Signals
Community Trust
User Recent Search History Alternatives
User Recent Search History Developer Profile
2 plugins · 20 total installs
How We Detect User Recent Search History
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
widget_your_searchyour-searches-titleyour-searches-numberursh_init_sessionursh_initursh_create_search_tableursh_save_searchursh_register_widgetsUser_Search_History_Widget+3 more