BoldGrid Easy SEO – Simple and Effective SEO Security & Risk Analysis

wordpress.org/plugins/boldgrid-easy-seo

Easy SEO helps you easily create keyword rich content and rank higher in the search engines.

50K active installs v1.6.17 PHP 5.3+ WP 4.4+ Updated Dec 1, 2025
boldgridcontent-analysisreadabilitysearch-engine-optimizationseo
99
A · Safe
CVEs total2
Unpatched0
Last CVEApr 5, 2024
Safety Verdict

Is BoldGrid Easy SEO – Simple and Effective SEO Safe to Use in 2026?

Generally Safe

Score 99/100

BoldGrid Easy SEO – Simple and Effective SEO has a strong security track record. Known vulnerabilities have been patched promptly.

2 known CVEsLast CVE: Apr 5, 2024Updated 4mo ago
Risk Assessment

The static analysis for boldgrid-easy-seo v1.6.17 reveals a strong adherence to secure coding practices in several key areas. The complete absence of dangerous functions, the use of prepared statements for all SQL queries, and the proper escaping of all output are significant strengths. Furthermore, the plugin exhibits a minimal attack surface, with no discovered AJAX handlers, REST API routes, shortcodes, or cron events, and critically, none of these entry points are unprotected. Taint analysis also shows no security concerns, indicating a low risk of unauthorized data manipulation or injection through standard code paths.

However, the vulnerability history presents a notable concern. The plugin has had two medium-severity vulnerabilities in the past, specifically related to Exposure of Sensitive Information and Cross-Site Scripting. While these appear to be patched, their existence suggests potential weaknesses that attackers could exploit if left unaddressed. The lack of any nonce or capability checks on the identified entry points, while the attack surface is minimal, is a missed opportunity to further harden the plugin. The bundled TinyMCE library, while common, also presents a potential risk if it's outdated and contains known vulnerabilities.

In conclusion, boldgrid-easy-seo v1.6.17 demonstrates good technical security in its implementation with well-handled SQL and output. However, the historical prevalence of medium-severity vulnerabilities, particularly XSS and information exposure, warrants caution. The absence of explicit authentication checks on the limited entry points and the potential for bundled library issues are minor but present risks that should be monitored and addressed.

Key Concerns

  • Medium severity vulnerability history (2 instances)
  • Bundled library (TinyMCE)
  • No nonce checks on entry points
  • No capability checks on entry points
Vulnerabilities
2

BoldGrid Easy SEO – Simple and Effective SEO Security Vulnerabilities

CVEs by Year

2 CVEs in 2024
2024
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2024-2950medium · 5.3Exposure of Sensitive Information to an Unauthorized Actor

BoldGrid Easy SEO – Simple and Effective SEO <= 1.6.14 - Information Exposure

Apr 5, 2024 Patched in 1.6.15 (1d)
CVE-2024-1692medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

BoldGrid Easy SEO – Simple and Effective SEO <= 1.6.13 - Authenticated(Contributor+) Stored Cross-Site Scripting via Meta Description

Mar 29, 2024 Patched in 1.6.14 (1d)
Code Analysis
Analyzed Mar 16, 2026

BoldGrid Easy SEO – Simple and Effective SEO Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
17 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

TinyMCE

Output Escaping

100% escaped17 total outputs
Attack Surface

BoldGrid Easy SEO – Simple and Effective SEO Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 14
actionadmin_noticesboldgrid-easy-seo.php:90
filterdoing_it_wrong_trigger_errorincludes\class-boldgrid-seo.php:88
actionadmin_enqueue_scriptsincludes\class-boldgrid-seo.php:107
actionadmin_enqueue_scriptsincludes\class-boldgrid-seo.php:108
filtertiny_mce_before_initincludes\class-boldgrid-seo.php:109
actionplugins_loadedincludes\class-boldgrid-seo.php:122
actionplugins_loadedincludes\class-boldgrid-seo.php:130
actionbutterbean_registerincludes\class-boldgrid-seo.php:132
filterbutterbean_control_templateincludes\class-boldgrid-seo.php:134
filterinitincludes\class-boldgrid-seo.php:146
actionafter_setup_themeincludes\class-boldgrid-seo.php:182
actionwp_headincludes\class-boldgrid-seo.php:194
filterpre_get_document_titleincludes\class-boldgrid-seo.php:209
filterwp_titleincludes\class-boldgrid-seo.php:211
Maintenance & Trust

BoldGrid Easy SEO – Simple and Effective SEO Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 1, 2025
PHP min version5.3
Downloads826K

Community Trust

Rating60/100
Number of ratings3
Active installs50K
Developer Profile

BoldGrid Easy SEO – Simple and Effective SEO Developer Profile

BoldGrid

15 plugins · 1.1M total installs

76
trust score
Avg Security Score
96/100
Avg Patch Time
841 days
View full developer profile
Detection Fingerprints

How We Detect BoldGrid Easy SEO – Simple and Effective SEO

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/boldgrid-easy-seo/assets/css/boldgrid-seo-admin.css/wp-content/plugins/boldgrid-easy-seo/assets/css/boldgrid-seo-admin.min.css/wp-content/plugins/boldgrid-easy-seo/assets/js/bgseo.js/wp-content/plugins/boldgrid-easy-seo/assets/js/bgseo.min.js/wp-content/plugins/boldgrid-easy-seo/assets/js/text-statistics/index.js
Script Paths
/wp-content/plugins/boldgrid-easy-seo/assets/js/bgseo.js/wp-content/plugins/boldgrid-easy-seo/assets/js/bgseo.min.js/wp-content/plugins/boldgrid-easy-seo/assets/js/text-statistics/index.js
Version Parameters
boldgrid-easy-seo/assets/css/boldgrid-seo-adminboldgrid-easy-seo/assets/js/bgseoboldgrid-easy-seo/assets/js/text-statistics/index.js

HTML / DOM Fingerprints

CSS Classes
bgseo-tinymce-containerbgseo-toolbar-wrapper
HTML Comments
<!-- Easy SEO by BoldGrid --><!-- Start BoldGrid SEO Post Box -->
Data Attributes
data-bgseo-content-analysis-urldata-bgseo-content-analysis-nonce
JS Globals
BOLDGRID.SEO.TinyMCE.tmceChange
REST Endpoints
/wp-json/bgseo/v1/content-analysis
FAQ

Frequently Asked Questions about BoldGrid Easy SEO – Simple and Effective SEO