
Basic SEO Pack Security & Risk Analysis
wordpress.org/plugins/basic-seo-packSimple but complete SEO Pack to make your site SEO Friendly. Quick way to add meta tags to your post and pages using WP custom fields.
Is Basic SEO Pack Safe to Use in 2026?
Generally Safe
Score 85/100Basic SEO Pack has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "basic-seo-pack" v1.1.4 plugin exhibits a generally strong security posture in terms of its attack surface and vulnerability history. The static analysis reveals no entry points (AJAX, REST API, shortcodes, cron), and no dangerous functions or external HTTP requests were detected. Furthermore, the plugin's vulnerability history is clean, with no recorded CVEs, suggesting a history of secure development. The use of prepared statements for all SQL queries is a significant strength.
However, a major concern arises from the output escaping. With 61 total outputs and 0% properly escaped, this plugin is highly susceptible to Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data that is reflected in the output without proper sanitization or escaping can be exploited by attackers to inject malicious scripts, leading to session hijacking, credential theft, or defacement. While the plugin has nonce and capability checks, the lack of output escaping creates a critical weakness that overshadows the otherwise positive aspects of its code and history.
In conclusion, while "basic-seo-pack" v1.1.4 demonstrates good practices in limiting its attack surface and maintaining a clean vulnerability history, the pervasive lack of output escaping presents a significant and exploitable risk. Immediate attention should be paid to addressing this XSS vulnerability to secure the plugin.
Key Concerns
- No proper output escaping detected
Basic SEO Pack Security Vulnerabilities
Basic SEO Pack Code Analysis
Output Escaping
Basic SEO Pack Attack Surface
WordPress Hooks 11
Maintenance & Trust
Basic SEO Pack Maintenance & Trust
Maintenance Signals
Community Trust
Basic SEO Pack Alternatives
Simple SEO Pack
simple-seo-pack
Simple SEO is a quick way to add HTML meta tags to your site and pages using WP integrated custom fields feature.
Dynamic URL SEO
dynamic-url-seo
This plugin is used to add meta title, keywords and description for dynamic URLs which are not available in database.
Add Meta Tag Keywords
add-meta-tag-keywords
The plugin allows you to add Meta Tag keywords for posts, pages or basically any custom post type. The Meta Keywords are important words or phrases th …
Simple Meta Tags
simple-meta-tags
Allows you to set global meta tags and customize on each individual page/post. Please Note: Does not support custom post types
Meta Keywords for Each Page
meta-keywords-for-each-page
Easily add SEO meta keywords to enhance your website's search engine optimization.
Basic SEO Pack Developer Profile
1 plugin · 800 total installs
How We Detect Basic SEO Pack
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/basic-seo-pack/images/5-stars.png/wp-content/plugins/basic-seo-pack/images/amazon.jpg/wp-content/plugins/basic-seo-pack/images/as-234x60.png/wp-content/plugins/basic-seo-pack/images/donate.jpg/wp-content/plugins/basic-seo-pack/images/twitter.jpgHTML / DOM Fingerprints
id="bseop_primary-meta-box"