
WP Keyword Suggest Security & Risk Analysis
wordpress.org/plugins/wp-keyword-suggestThis SEO plugin offers keyword suggestions, taken from autocomplete google, yahoo, bing... up to 250 keywords ideas
Is WP Keyword Suggest Safe to Use in 2026?
Generally Safe
Score 85/100WP Keyword Suggest has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-keyword-suggest v1.2 plugin exhibits a mixed security posture. While it boasts no known CVEs and utilizes prepared statements for its SQL queries, indicating some good development practices, significant concerns arise from its static analysis. The plugin presents a single entry point via an AJAX handler that lacks any authentication checks, creating a direct avenue for unauthorized access or manipulation if this handler can be triggered externally. Furthermore, the analysis reveals a complete absence of output escaping for all identified output points. This is a critical weakness, as it leaves the plugin highly susceptible to Cross-Site Scripting (XSS) attacks. The taint analysis also flagged two flows with unsanitized paths, though these were not classified as critical or high severity, suggesting potential for subtle vulnerabilities. Given the lack of historical vulnerabilities, the plugin may have had a clean record, but the current analysis highlights critical security flaws that need immediate attention. The primary strengths are the absence of known CVEs and the use of prepared statements, but these are heavily outweighed by the severe risks posed by the unauthenticated AJAX endpoint and the pervasive lack of output escaping.
Key Concerns
- Unprotected AJAX handler (1)
- Output escaping: 0% properly escaped (3 outputs)
- Taint flows with unsanitized paths (2)
WP Keyword Suggest Security Vulnerabilities
WP Keyword Suggest Code Analysis
Output Escaping
Data Flow Analysis
WP Keyword Suggest Attack Surface
AJAX Handlers 1
WordPress Hooks 3
Maintenance & Trust
WP Keyword Suggest Maintenance & Trust
Maintenance Signals
Community Trust
WP Keyword Suggest Alternatives
Surfer – WordPress Plugin
surferseo
Connect Surfer's Content Editor to WordPress. Write and optimize your articles for SEO, find new keyword ideas and publish straight to WordPress.
Keyword Research Tool
keyword-research-tool
Keyword Research made simple for Wordpress. Enter your keyword and quickly discover keyword opportunities related to your topic.
Writer's Block
writers-block
Writer's Block uses the GrepWords.com API to make content suggestions based on keywords. Coming up with content ideas has never been easier.
GetGenie – AI Content Writer with Keyword Research & SEO Tracking Tools
getgenie
GPT-4o powered AI content writer with 37+ templates, chatbot, AI image, NLP keyword research, SEO analysis for WordPress, Gutenberg & Elementor.
Simple SEO
cds-simple-seo
Allows the modification of META titles, descriptions and keywords for all pages and posts. Also allows for default setting for of META title, descript …
WP Keyword Suggest Developer Profile
2 plugins · 610 total installs
How We Detect WP Keyword Suggest
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-keyword-suggest/css/jquery.gcomplete.default-themes.css/wp-content/plugins/wp-keyword-suggest/css/wp-keyword-suggest.css/wp-content/plugins/wp-keyword-suggest/js/jquery.gcomplete.0.1.2.js/wp-content/plugins/wp-keyword-suggest/js/wp-keyword-suggest.js/wp-content/plugins/wp-keyword-suggest/js/jquery.gcomplete.0.1.2.js/wp-content/plugins/wp-keyword-suggest/js/wp-keyword-suggest.jswp-keyword-suggest/js/jquery.gcomplete.0.1.2.js?ver=wp-keyword-suggest/js/wp-keyword-suggest.js?ver=wp-keyword-suggest/css/jquery.gcomplete.default-themes.css?ver=wp-keyword-suggest/css/wp-keyword-suggest.css?ver=HTML / DOM Fingerprints
wp-keyword-suggest-meta-box-resultswp-keyword-suggest-meta-box-sectionwpks-keyword-inputwpks-suggest<!-- -->tabindex="20001"tabindex="20002"objectL10n/wp-json/wpks_keyword_suggestions/v1/ajax_suggestions