
WDV Ajax Search Security & Risk Analysis
wordpress.org/plugins/wdv-ajax-searchWith this plugin you can create different search forms for different post types and put their shortcode on the corresponding page.
Is WDV Ajax Search Safe to Use in 2026?
Generally Safe
Score 92/100WDV Ajax Search has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'wdv-ajax-search' plugin version 1.0.5 presents several significant security concerns. While the plugin avoids dangerous functions, file operations, and external HTTP requests, and its SQL query usage is largely secured with prepared statements, these strengths are overshadowed by critical weaknesses in its attack surface and code security signals. The presence of six AJAX handlers lacking any authentication or capability checks creates a wide, unprotected entry point for potential attackers. Furthermore, taint analysis reveals two high-severity flows with unsanitized paths, indicating potential vulnerabilities where user-supplied data could be misused. The absence of any recorded vulnerability history, while seemingly positive, can also be a double-edged sword. It might suggest the plugin has been overlooked or has not yet been thoroughly scrutinized, rather than an inherent robustness. The plugin's overall security posture is therefore concerning due to the unprotected AJAX endpoints and identified taint flows, despite some good practices in other areas.
Key Concerns
- AJAX handlers without auth checks
- High severity taint flows
- Lack of nonce checks
- Lack of capability checks
- Unsanitized paths in taint flows
- Outputs not properly escaped
WDV Ajax Search Security Vulnerabilities
WDV Ajax Search Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WDV Ajax Search Attack Surface
AJAX Handlers 6
Shortcodes 2
WordPress Hooks 8
Maintenance & Trust
WDV Ajax Search Maintenance & Trust
Maintenance Signals
Community Trust
WDV Ajax Search Alternatives
Advanced Product Search For WooCommerce
advanced-product-search-for-woo
Popup Cart Lite for WooCommerce for WooCommerce plugin that displays popup cart for add to cart action.
Events Search For The Events Calendar
events-search-addon-for-the-events-calendar
Adds an AJAX-based events search bar on any page via shortcode to quickly find any upcoming event created with The Events Calendar plugin.
Search Live
search-live
Search Live supplies integrated live search facilities and advanced search features.
Fast Fuzzy Search – WordPress & WooCommerce Live Search
fast-fuzzy-search
Blazing fast, typo-tolerant, AJAX-powered search for WordPress and WooCommerce. Built for conversions and optimized for massive product catalogs.
WPSOLR Search — WordPress Search Plugin
wpsolr-free
Enterprise WordPress search plugin. Post types Search, WooCommerce Search, Live Search, Filters, Facets, Recommendations.
WDV Ajax Search Developer Profile
6 plugins · 1K total installs
How We Detect WDV Ajax Search
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wdv-ajax-search/admin/css/wdv-ajax-search-admin.css/wp-content/plugins/wdv-ajax-search/admin/js/wdv-ajax-search-admin.js/wp-content/plugins/wdv-ajax-search/admin/js/wdv-ajax-search-admin.jswdv-ajax-search/css/wdv-ajax-search-admin.css?ver=wdv-ajax-search/js/wdv-ajax-search-admin.js?ver=HTML / DOM Fingerprints
MyAjax