
Display FAQ – Responsive Accordion and Product FAQ For WooCommerce Security & Risk Analysis
wordpress.org/plugins/wp-display-faqCreate and display responsive Accordions, FAQs in a webpage. Also create Product FAQ for WooCommerce and display them in a single product page.
Is Display FAQ – Responsive Accordion and Product FAQ For WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Display FAQ – Responsive Accordion and Product FAQ For WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-display-faq plugin v1.4.7 demonstrates a strong security posture based on the provided static analysis and vulnerability history. The absence of AJAX handlers, REST API routes without permission callbacks, cron events, and file operations significantly limits the potential attack surface. Furthermore, the code utilizes prepared statements for all SQL queries and includes both nonce and capability checks, indicating good development practices for input validation and authorization. The healthy vulnerability history with zero recorded CVEs further reinforces this positive assessment.
While the code analysis shows a high percentage of properly escaped output, the fact that 32% is not is a minor concern. This leaves a potential for Cross-Site Scripting (XSS) vulnerabilities if the unescaped output is user-controlled. The inclusion of the Freemius SDK, while common for licensing and updates, could present a risk if the SDK itself has vulnerabilities, though no specific version issues are highlighted here. Overall, the plugin appears to be well-secured with minimal immediate threats, with the primary area for potential improvement being the consistent escaping of all output.
Key Concerns
- Unescaped output detected
- Bundled Freemius SDK v1.0
Display FAQ – Responsive Accordion and Product FAQ For WooCommerce Security Vulnerabilities
Display FAQ – Responsive Accordion and Product FAQ For WooCommerce Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Display FAQ – Responsive Accordion and Product FAQ For WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
Display FAQ – Responsive Accordion and Product FAQ For WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Display FAQ – Responsive Accordion and Product FAQ For WooCommerce Alternatives
Squelch Tabs and Accordions Shortcodes
squelch-tabs-and-accordions-shortcodes
Shortcodes for creating accordions, horizontal accordions and tabs.
CM FAQ – Simplify support with an intuitive FAQ management tool
cm-faq
Create and manage a user-friendly FAQ section on your site with this FAQ plugin. Answer common questions and improve user experience.
Easy Accordion – Responsive Accordion FAQ Builder and Product FAQ
easy-accordion-free
Easily create Accordions, FAQs, and Product FAQ for WooCommerce. Customizable drag & drop WordPress FAQ builder plugin.
Advanced Accordion Gutenberg Block – Create Beautiful FAQs, Content Accordions & Interactive Tabs
advanced-accordion-block
Create stunning FAQ & accordion blocks. SEO-optimized, fully accessible, zero performance impact. No coding needed.
Iks Menu – WordPress Category Accordion Menu & FAQs
iks-menu
Super customizable WordPress plugin for displaying custom menus, taxonomy/category terms and FAQs as accordion menu (with images support).
Display FAQ – Responsive Accordion and Product FAQ For WooCommerce Developer Profile
13 plugins · 8K total installs
How We Detect Display FAQ – Responsive Accordion and Product FAQ For WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-display-faq/assets/css/fontawesome/css/all.min.css/wp-content/plugins/wp-display-faq/assets/css/fontawesome-iconpicker.min.css/wp-content/plugins/wp-display-faq/assets/css/wfp-admin.css/wp-content/plugins/wp-display-faq/assets/js/fontawesome-iconpicker.min.js/wp-content/plugins/wp-display-faq/assets/js/wfp-admin.js/wp-content/plugins/wp-display-faq/assets/js/fontawesome-iconpicker.min.js/wp-content/plugins/wp-display-faq/assets/js/wfp-admin.jswp-display-faq/assets/css/fontawesome/css/all.min.css?ver=wp-display-faq/assets/css/fontawesome-iconpicker.min.css?ver=wp-display-faq/assets/css/wfp-admin.css?ver=wp-display-faq/assets/js/fontawesome-iconpicker.min.js?ver=wp-display-faq/assets/js/wfp-admin.js?ver=HTML / DOM Fingerprints
wfp_metabox_contentwfp_metabox_wrapwfp_display_faq_form_wrapwfp_display_faq_formwfp_faq_search_formwfp_faq_search_inputwfp_faq_search_buttonwfp_faq_list+3 more<!-- FOR FAQ --><!-- FAQ SETTING TAB --><!-- FAQ CATEGORY TAB --><!-- FAQ STYLE TAB -->+1 moredata-wfp-faq-iddata-wfp-faq-slugdata-wfp-faq-categoryWFP_AJAX_URLwfp_ajax_object/wp-json/wp-display-faq/v1/settings[display_faq][display_faq category="uncategorized"][display_faq category_slug="uncategorized"][display_faq search="true"]