
WP Live Post Search Security & Risk Analysis
wordpress.org/plugins/wp-live-post-searchThe plugin provides a search form which provides live search functionality of any posts/pages.
Is WP Live Post Search Safe to Use in 2026?
Generally Safe
Score 85/100WP Live Post Search has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-live-post-search plugin v1.0.0 exhibits a mixed security posture. On the positive side, it demonstrates good practices by not utilizing dangerous functions, avoiding file operations, and making no external HTTP requests. Crucially, all SQL queries are properly prepared, which is a significant strength in preventing SQL injection vulnerabilities. The absence of any recorded vulnerabilities in its history is also a positive indicator. However, there are notable areas of concern. The plugin exposes two AJAX handlers, both of which lack authentication checks. This presents a direct attack vector for unauthenticated users to interact with potentially sensitive functionality. Furthermore, the lack of nonce checks on these AJAX endpoints amplifies the risk, making them susceptible to Cross-Site Request Forgery (CSRF) attacks. While taint analysis shows no issues, this is based on zero flows analyzed, meaning the analysis might be incomplete. The combination of unprotected entry points and missing essential security checks like nonces on AJAX handlers creates a significant risk that needs to be addressed.
Key Concerns
- AJAX handlers without authentication
- AJAX handlers without nonce checks
- Low output escaping coverage
WP Live Post Search Security Vulnerabilities
WP Live Post Search Code Analysis
Output Escaping
WP Live Post Search Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
WP Live Post Search Maintenance & Trust
Maintenance Signals
Community Trust
WP Live Post Search Alternatives
Advanced Product Search For WooCommerce
advanced-product-search-for-woo
Popup Cart Lite for WooCommerce for WooCommerce plugin that displays popup cart for add to cart action.
Events Search For The Events Calendar
events-search-addon-for-the-events-calendar
Adds an AJAX-based events search bar on any page via shortcode to quickly find any upcoming event created with The Events Calendar plugin.
Search Live
search-live
Search Live supplies integrated live search facilities and advanced search features.
Fast Fuzzy Search – WordPress & WooCommerce Live Search
fast-fuzzy-search
Blazing fast, typo-tolerant, AJAX-powered search for WordPress and WooCommerce. Built for conversions and optimized for massive product catalogs.
WPSOLR Search — WordPress Search Plugin
wpsolr-free
Enterprise WordPress search plugin. Post types Search, WooCommerce Search, Live Search, Filters, Facets, Recommendations.
WP Live Post Search Developer Profile
4 plugins · 90 total installs
How We Detect WP Live Post Search
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-live-post-search/public/css/wp-live-post-search-public.css/wp-content/plugins/wp-live-post-search/public/js/npm-vue.js/wp-content/plugins/wp-live-post-search/public/js/vue.js/wp-content/plugins/wp-live-post-search/public/js/wp-live-post-search-public.js/wp-content/plugins/wp-live-post-search/public/css/wp-live-post-search-public.css/wp-content/plugins/wp-live-post-search/public/js/npm-vue.js/wp-content/plugins/wp-live-post-search/public/js/vue.js/wp-content/plugins/wp-live-post-search/public/js/wp-live-post-search-public.jswp-live-post-search/public/css/wp-live-post-search-public.css?ver=wp-live-post-search/public/js/wp-live-post-search-public.js?ver=HTML / DOM Fingerprints
wpls-search-inputwpls-resultswpls-result-metawpls-itemwpls-layoutwp-search-holderwp-list-resultsv-modelv-forv-bind:keyv-ifWPLS[WPLS_SEARCH_FORM]