Advanced 301 and 302 Redirect Security & Risk Analysis

wordpress.org/plugins/advanced-301-and-302-redirect

Advanced plugin will allow you to create 301 and 302 redirects on your site and organize them by folders.

1K active installs v1.6.9 PHP 5.2.4+ WP 5.0+ Updated Dec 10, 2025
301-redirect302-redirectadvanced-301-and-302-redirectredirect-pluginredirection
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Advanced 301 and 302 Redirect Safe to Use in 2026?

Generally Safe

Score 100/100

Advanced 301 and 302 Redirect has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "advanced-301-and-302-redirect" plugin v1.6.9 demonstrates a generally good security posture, with no recorded vulnerabilities and a robust set of checks in place for its entry points. All identified AJAX handlers and potential REST API routes are secured with appropriate checks. The absence of dangerous functions, file operations, and external HTTP requests is also a positive indicator. However, the static analysis reveals significant concerns regarding the handling of SQL queries and output escaping. A substantial percentage of SQL queries are not using prepared statements, which poses a risk of SQL injection vulnerabilities. Furthermore, over 40% of output is not properly escaped, creating potential for cross-site scripting (XSS) attacks. The taint analysis, while not flagging critical or high-severity issues, did identify five flows with unsanitized paths, suggesting potential weaknesses in how data is processed even if they didn't immediately manifest as critical vulnerabilities in the analysis. The plugin's clean vulnerability history is a strong positive, suggesting diligent maintenance, but the identified code signals warrant careful attention.

Key Concerns

  • SQL queries without prepared statements
  • Unescaped output
  • Taint flows with unsanitized paths
Vulnerabilities
None known

Advanced 301 and 302 Redirect Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Advanced 301 and 302 Redirect Code Analysis

Dangerous Functions
0
Raw SQL Queries
22
0 prepared
Unescaped Output
40
51 escaped
Nonce Checks
7
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared22 total queries

Output Escaping

56% escaped91 total outputs
Data Flows
5 unsanitized

Data Flow Analysis

5 flows5 with unsanitized paths
yydev_redirect_echo_message_if_exists (include\functions.php:47)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Advanced 301 and 302 Redirect Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_yydev_redirect_stop_notice_forevernotices.php:62
authwp_ajax_yydev_redirect_stop_notice_for_nownotices.php:84
WordPress Hooks 3
actionadmin_menuindex.php:76
filterplugin_action_linksindex.php:100
actionadmin_noticesnotices.php:274
Maintenance & Trust

Advanced 301 and 302 Redirect Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 10, 2025
PHP min version5.2.4
Downloads19K

Community Trust

Rating100/100
Number of ratings5
Active installs1K
Developer Profile

Advanced 301 and 302 Redirect Developer Profile

yydevelopment

11 plugins · 51K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
67 days
View full developer profile
Detection Fingerprints

How We Detect Advanced 301 and 302 Redirect

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advanced-301-and-302-redirect/include/style.php/wp-content/plugins/advanced-301-and-302-redirect/include/script.php
Version Parameters
advanced-301-and-302-redirect/include/style.php?ver=advanced-301-and-302-redirect/include/script.php?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Advanced 301 and 302 Redirect