WP Post Redirection – 301, 404 Redirects Security & Risk Analysis

wordpress.org/plugins/advance-wp-redirect

WP Post Redirection – 301, 404 Redirects lets you quickly redirect pages, posts, custom types, and URLs to new locations for seamless navigation.

60 active installs v1.0.0 PHP 7.0+ WP 4.4.0+ Updated Apr 24, 2025
301302404redirectionseo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is WP Post Redirection – 301, 404 Redirects Safe to Use in 2026?

Generally Safe

Score 100/100

WP Post Redirection – 301, 404 Redirects has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The 'advance-wp-redirect' v1.0.0 plugin exhibits a significant security concern due to its extensive attack surface with unprotected AJAX handlers. All six identified AJAX entry points lack authentication checks, meaning any authenticated user could potentially trigger these functions, leading to unauthorized actions. While the plugin demonstrates good practices in other areas like using prepared statements for all SQL queries and not engaging in file operations or external HTTP requests (which can be points of vulnerability), the absence of capability checks and nonce verification on its AJAX endpoints is a major weakness. The vulnerability history is clean, with no recorded CVEs, which might suggest a lack of prior scrutiny or that the plugin has been fortunate. However, the static analysis clearly highlights inherent risks that could be exploited if an attacker gains access to an authenticated session. The lack of taint analysis results (0 flows analyzed) is also noteworthy, as it means potentially dangerous data flows might not have been identified.

Key Concerns

  • Unprotected AJAX handlers
  • No nonce checks on AJAX handlers
  • No capability checks on AJAX handlers
  • Insufficient output escaping
Vulnerabilities
None known

WP Post Redirection – 301, 404 Redirects Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Post Redirection – 301, 404 Redirects Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

60% escaped5 total outputs
Attack Surface
6 unprotected

WP Post Redirection – 301, 404 Redirects Attack Surface

Entry Points6
Unprotected6

AJAX Handlers 6

noprivwp_ajax_xsawrlite_get_nf_linkincludes\classes\class-xsawrlite-main.php:64
authwp_ajax_xsawrlite_add_redirectsincludes\classes\class-xsawrlite-main.php:66
authwp_ajax_xsawrlite_delincludes\classes\class-xsawrlite-main.php:67
authwp_ajax_xsawrlite_edit_redirectsincludes\classes\class-xsawrlite-main.php:68
authwp_ajax_xsawrlite_get_nf_linkincludes\classes\class-xsawrlite-main.php:69
authwp_ajax_xsawrlite_send_mailincludes\classes\class-xsawrlite-main.php:70
WordPress Hooks 7
actioninitincludes\classes\class-xsawrlite-main.php:59
actionadmin_menuincludes\classes\class-xsawrlite-main.php:60
actionadmin_enqueue_scriptsincludes\classes\class-xsawrlite-main.php:62
actionwp_enqueue_scriptsincludes\classes\class-xsawrlite-main.php:63
actionadmin_initincludes\classes\class-xsawrlite-main.php:65
actioninitincludes\classes\class-xsawrlite-main.php:71
actionwpincludes\classes\class-xsawrlite-main.php:72
Maintenance & Trust

WP Post Redirection – 301, 404 Redirects Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 24, 2025
PHP min version7.0
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs60
Developer Profile

WP Post Redirection – 301, 404 Redirects Developer Profile

Xfinitysoft

9 plugins · 4K total installs

99
trust score
Avg Security Score
99/100
Avg Patch Time
6 days
View full developer profile
Detection Fingerprints

How We Detect WP Post Redirection – 301, 404 Redirects

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advance-wp-redirect/assets/css/xsawrlite.material.min.css/wp-content/plugins/advance-wp-redirect/assets/css/xsawrlite.custom.css/wp-content/plugins/advance-wp-redirect/assets/js/xsawrlite.material.min.js/wp-content/plugins/advance-wp-redirect/assets/js/xsawrlite.custom.js/wp-content/plugins/advance-wp-redirect/assets/js/xsawrlite.frontend.js

HTML / DOM Fingerprints

CSS Classes
xsawrlite-row-
Data Attributes
xsawrlite-masteroptions
JS Globals
frontend_ajax
FAQ

Frequently Asked Questions about WP Post Redirection – 301, 404 Redirects