Advanced Redirect Manager 301 Security & Risk Analysis

wordpress.org/plugins/advanced-redirect-manager

Manage 301 redirects, monitor 404 errors, and fix broken links. A complete redirect manager and broken link checker for WordPress SEO.

60 active installs v1.0.3 PHP 7.4+ WP 5.2+ Updated Dec 14, 2025
301404broken-linkslink-scannerredirect
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Advanced Redirect Manager 301 Safe to Use in 2026?

Generally Safe

Score 100/100

Advanced Redirect Manager 301 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The 'advanced-redirect-manager' plugin v1.0.3 exhibits a generally good security posture with several strengths. All identified AJAX handlers have authentication checks, and there are no unauthenticated REST API routes, shortcodes, or cron events. The plugin also demonstrates good practices regarding SQL query sanitization, with 57% using prepared statements, and a high rate of properly escaped outputs (87%). Furthermore, the absence of any known CVEs or past vulnerabilities suggests a commitment to security or a lack of prior exploitation.

However, the taint analysis reveals two flows with unsanitized paths, both flagged as high severity. While these do not currently have associated CVEs, they represent potential security risks if exploited. The presence of external HTTP requests also introduces a minor dependency on external systems, which could be a vector for supply chain attacks if the target system is compromised.

Overall, the plugin is well-protected against common web vulnerabilities and shows good development practices. The main area of concern lies in the two high-severity taint flows, which warrant further investigation and mitigation to ensure the plugin's robustness against potential attacks.

Key Concerns

  • High severity taint flows with unsanitized paths
  • External HTTP requests present
Vulnerabilities
None known

Advanced Redirect Manager 301 Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Advanced Redirect Manager 301 Code Analysis

Dangerous Functions
0
Raw SQL Queries
17
23 prepared
Unescaped Output
12
78 escaped
Nonce Checks
11
Capability Checks
9
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

57% prepared40 total queries

Output Escaping

87% escaped90 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
ajax_save_redirect (includes\class-arm-db.php:39)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Advanced Redirect Manager 301 Attack Surface

Entry Points6
Unprotected0

AJAX Handlers 6

authwp_ajax_ncb_arm_scanner_startadmin\class-arm-link-scanner.php:12
authwp_ajax_ncb_arm_scanner_chunkadmin\class-arm-link-scanner.php:13
authwp_ajax_ncb_arm_get_redirectsincludes\class-arm-db.php:18
authwp_ajax_ncb_arm_save_redirectincludes\class-arm-db.php:19
authwp_ajax_ncb_arm_delete_redirectincludes\class-arm-db.php:20
authwp_ajax_ncb_arm_smart_searchincludes\class-arm-db.php:21
WordPress Hooks 15
actionadmin_initadmin\class-arm-tools.php:5
actionadmin_noticesadmin\class-arm-tools.php:60
actionadmin_noticesadmin\class-arm-tools.php:64
actionadmin_noticesadmin\class-arm-tools.php:101
actionadmin_noticesadmin\class-arm-tools.php:178
actionadmin_noticesadmin\class-arm-tools.php:185
actionadmin_noticesadmin\class-arm-tools.php:194
actionadmin_noticesadmin\class-arm-tools.php:211
actionadmin_noticesadmin\class-arm-tools.php:273
actioninitincludes\class-advanced-redirect-manager.php:49
actiontemplate_redirectincludes\class-advanced-redirect-manager.php:50
actionadmin_enqueue_scriptsincludes\class-advanced-redirect-manager.php:58
actionadmin_enqueue_scriptsincludes\class-advanced-redirect-manager.php:59
actionadmin_menuincludes\class-advanced-redirect-manager.php:60
actionwp_dashboard_setupincludes\class-advanced-redirect-manager.php:61
Maintenance & Trust

Advanced Redirect Manager 301 Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 14, 2025
PHP min version7.4
Downloads690

Community Trust

Rating100/100
Number of ratings1
Active installs60
Developer Profile

Advanced Redirect Manager 301 Developer Profile

NewCodeByte

3 plugins · 190 total installs

100
trust score
Avg Security Score
100/100
Avg Patch Time
2 days
View full developer profile
Detection Fingerprints

How We Detect Advanced Redirect Manager 301

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advanced-redirect-manager/assets/css/arm-admin-styles.css/wp-content/plugins/advanced-redirect-manager/assets/css/arm-flyout.css/wp-content/plugins/advanced-redirect-manager/assets/js/arm-admin-scripts.js/wp-content/plugins/advanced-redirect-manager/assets/js/arm-flyout.js
Script Paths
/wp-content/plugins/advanced-redirect-manager/assets/js/arm-admin-scripts.js/wp-content/plugins/advanced-redirect-manager/assets/js/arm-flyout.js
Version Parameters
advanced-redirect-manager?ver=1.0.3arm-admin-styles.css?ver=1.0.3arm-flyout.css?ver=1.0.3arm-admin-scripts.js?ver=1.0.3arm-flyout.js?ver=1.0.3

HTML / DOM Fingerprints

JS Globals
window.ncbArm
FAQ

Frequently Asked Questions about Advanced Redirect Manager 301