
Frequently Searched Words Security & Risk Analysis
wordpress.org/plugins/wp-frequently-searched-wordsIt is possible to register and display frequently searched words in site search.
Is Frequently Searched Words Safe to Use in 2026?
Generally Safe
Score 85/100Frequently Searched Words has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-frequently-searched-words" v2.1.3 plugin exhibits a generally positive security posture based on the static analysis provided. The absence of known CVEs and a clean vulnerability history are strong indicators of good development practices and diligence in addressing security issues.
The static analysis reveals a very small attack surface with zero entry points, and importantly, zero unprotected ones. This suggests that the plugin's functionality is not directly exposed to common web attack vectors like AJAX, REST API, or shortcodes without appropriate authorization. The code also avoids dangerous functions and file operations, and does not make external HTTP requests, further reducing potential risks.
However, there are areas for concern. The analysis flags two "flows with unsanitized paths," indicating that user-supplied input might be handled in a way that could lead to path traversal or other file-related vulnerabilities if an attacker can influence these paths. While the overall output escaping rate is decent at 71%, this still means that nearly 30% of outputs are not properly escaped, posing a risk of cross-site scripting (XSS) vulnerabilities if sensitive data is displayed without sanitization. The complete lack of nonce and capability checks, while mitigated by the small attack surface, represents a missed opportunity for robust authorization, especially if the plugin's functionality were to expand in the future.
Key Concerns
- Flows with unsanitized paths detected
- Significant portion of outputs not properly escaped
- No nonce checks implemented
- No capability checks implemented
Frequently Searched Words Security Vulnerabilities
Frequently Searched Words Release Timeline
Frequently Searched Words Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Frequently Searched Words Attack Surface
WordPress Hooks 4
Maintenance & Trust
Frequently Searched Words Maintenance & Trust
Maintenance Signals
Community Trust
Frequently Searched Words Alternatives
YITH WooCommerce Ajax Search
yith-woocommerce-ajax-search
YITH WooCommerce Ajax Search allows your users to search products in real time.
Shortcodes Finder
shortcodes-finder
Shortcodes Finder helps you to find, test, clean and get informations about the shortcodes in your WordPress website posts, pages and custom contents.
Woo AJAX Search
woo-ajax-search
Woo AJAX search is a product searching plugins for WooCommerce with product category.
DVLA Search
dvla-search
The DVLA Search Plugin provides subscribers to the DVLA Search API a widget, customisable results page, and shortcodes for use on custom pages.
Shortcode Search | WordPress Search Bar Shortcode Plugin
shortcode-search
Shortcode Search is a simple plugin that lets users add a search bar anywhere on their WordPress website using the shortcode [search].
Frequently Searched Words Developer Profile
1 plugin · 100 total installs
How We Detect Frequently Searched Words
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-frequently-searched-words/css/style.csswp-frequently-searched-words/css/style.css?ver=HTML / DOM Fingerprints
[wp-frequently-searched-words]