
Wow FullText Search Security & Risk Analysis
wordpress.org/plugins/wow-fulltext-searchFast fulltext search provided by Search Engine software replacing default WordPress functionality.
Is Wow FullText Search Safe to Use in 2026?
Generally Safe
Score 85/100Wow FullText Search has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wow-fulltext-search" plugin v1.0 exhibits a mixed security posture. On the positive side, it has no known vulnerabilities or CVEs, and the code generally demonstrates good practices with a high percentage of prepared statements and output escaping. The absence of dangerous functions, file operations, and bundled libraries is also a strength. However, there are significant concerns regarding its attack surface. The presence of a single unprotected AJAX handler is a critical weakness, as it represents a direct entry point for potential attackers without any authentication or authorization checks. While the taint analysis shows no critical or high severity unsanitized paths, the one flow with an unsanitized path, even if categorized lower, warrants attention in conjunction with the unprotected AJAX handler. The limited vulnerability history is a good sign, suggesting the plugin has been relatively secure in the past, but this should not breed complacency, especially with the identified unprotected entry point.
Key Concerns
- Unprotected AJAX handler
- Flow with unsanitized path (low severity)
- Output escaping only 63% proper
Wow FullText Search Security Vulnerabilities
Wow FullText Search Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Wow FullText Search Attack Surface
AJAX Handlers 1
WordPress Hooks 14
Maintenance & Trust
Wow FullText Search Maintenance & Trust
Maintenance Signals
Community Trust
Wow FullText Search Alternatives
WP Fast Total Search – The Power of Indexed Search
fulltext-search
Extends the default fulltext search with relevance, jet speed and ability to search any posts, metadata, taxonomy, shortcode content and more data.
Full-Text Search
full-text-search
Replaces site search with full-text search.
Bing Custom Search for WordPress
wp-bing-search
Improve the search functionality on your site by using Bing Custom Search for WordPress.
Relevanssi – A Better Search
relevanssi
Relevanssi replaces the default search with a partial-match search that sorts results by relevance. It also indexes comments and shortcode content.
Ajax Search Lite – Live Search & Filter
ajax-search-lite
The Best Ajax Live Search and Filter for WordPress. Live suggestions, Custom Post types, Custom fields, Categories, WooCommerce & Elementor support
Wow FullText Search Developer Profile
2 plugins · 2K total installs
How We Detect Wow FullText Search
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wow-fulltext-search/AdminPage_View.js/wp-content/plugins/wow-fulltext-search/AdminPage_View.jswow_search1.0HTML / DOM Fingerprints
wowfts__obtain_api_keywowfts__obtain_api_key_formid="wowfts__obtain_api_key"id="wowfts__obtain_api_key_form"id="wowfts__obtain_api_key_email"id="wowfts__obtain_api_key2"wow_search_noncewow_mlf_state