
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Security & Risk Analysis
wordpress.org/plugins/baidu-submit-link多合一搜索自动推送管理插件(原百度搜索推送管理插件)是一款针对WP开发的功能非常强大的百度、Google、Bing、IndexNow、Yandex和头条搜索引擎链接推送插件。协助站长将网站资源快速推送至各大搜索引擎,有利于提升网站的搜索引擎收录效率;该插件还提供文章百度收录查询功能。
Is 多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Safe to Use in 2026?
Generally Safe
Score 92/100多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "baidu-submit-link" plugin v4.2.11 demonstrates generally good security practices. The static analysis reveals a well-secured attack surface, with all identified entry points (AJAX handlers) protected by authentication checks. The code shows a high percentage of SQL queries utilizing prepared statements and a near-perfect rate of output escaping, significantly mitigating common web vulnerabilities like SQL injection and Cross-Site Scripting (XSS). The absence of critical or high-severity taint flows further reinforces this positive posture.
However, a past medium-severity Cross-Site Request Forgery (CSRF) vulnerability, though patched, warrants attention. While the current version shows no unpatched CVEs, the existence of a previous CSRF issue suggests that such vulnerabilities could potentially reappear if input handling or nonce management were to be relaxed in future updates. The plugin also makes a significant number of external HTTP requests, which, while not inherently a vulnerability, could become a vector for other types of attacks if the target endpoints are compromised or if the plugin fails to properly validate responses from these external sources.
Overall, the plugin appears to be developed with security in mind, exhibiting strong adherence to best practices for sanitization and authorization. The limited attack surface and robust code signaling are commendable. The primary area for continued vigilance would be the prevention of CSRF, given its history, and careful management of external HTTP requests.
Key Concerns
- Past medium severity CSRF vulnerability
- Significant number of external HTTP requests
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 <= 4.2.5 - Cross-Site Request Forgery
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Release Timeline
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Attack Surface
AJAX Handlers 2
WordPress Hooks 37
Scheduled Events 4
Maintenance & Trust
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Maintenance & Trust
Maintenance Signals
Community Trust
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Alternatives
Smart Keywords Tool – 智能关键词插件
smart-keywords-tool
智能关键词插件(Smart Keywords Tool)是一款集即时关键词推荐、关键词选词工具、文章智能标签及关键词库功能于一体的WordPress网站SEO优化插件。
CrawlWP SEO – Instant Search Engine Indexing & SEO Performance Monitor
mihdan-index-now
Improve your WordPress SEO with instant search-engine indexing, SEO insights, and indexing status tracking.
ReCrawler
recrawler
ReCrawler is a small WordPress Plugin for quickly notifying search engines whenever their website content is created, updated, or deleted.
Spider Analyser – WordPress搜索引擎蜘蛛分析插件
spider-analyser
Spider Analyser是一款用于跟踪WordPress网站各种搜索引擎蜘蛛爬行日志的插件,并进行详细的蜘蛛爬行数据统计、蜘蛛行为分析、蜘蛛爬取分析及伪蜘蛛拦截等。
VS Meta Description
very-simple-meta-description
With this lightweight plugin you can add a meta description to your website.
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条 Developer Profile
11 plugins · 17K total installs
How We Detect 多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/baidu-submit-link/assets/css/bsl-backend.css/wp-content/plugins/baidu-submit-link/assets/css/bsl-frontend.css/wp-content/plugins/baidu-submit-link/assets/js/bsl-backend.js/wp-content/plugins/baidu-submit-link/assets/js/bsl-frontend.js/wp-content/plugins/baidu-submit-link/assets/js/bsl-backend.js/wp-content/plugins/baidu-submit-link/assets/js/bsl-frontend.jsbaidu-submit-link/assets/css/bsl-backend.css?ver=baidu-submit-link/assets/css/bsl-frontend.css?ver=baidu-submit-link/assets/js/bsl-backend.js?ver=baidu-submit-link/assets/js/bsl-frontend.js?ver=HTML / DOM Fingerprints
bsl-backend-wrapbsl-push-wrapper<!-- WBOLT<!-- WBOLT--><!--WBOLT--><!-- WBOLTdata-bsl-iddata-bsl-noncebsl_options/wp-json/bsl/v1/push_urls