Autolinks Manager – SEO Auto Linker Security & Risk Analysis

wordpress.org/plugins/daext-autolinks-manager

Automate your affiliate links, increase product page visits, link glossary keywords, and more with this advanced SEO auto-linker plugin.

2K active installs v1.10.11 PHP 5.3+ WP 4.5+ Updated Mar 13, 2026
automatic-linkingautomatic-linksinternal-linkslink-buildingseo-auto-linker
100
A · Safe
CVEs total1
Unpatched0
Last CVEOct 25, 2023
Download
Safety Verdict

Is Autolinks Manager – SEO Auto Linker Safe to Use in 2026?

Generally Safe

Score 100/100

Autolinks Manager – SEO Auto Linker has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Oct 25, 2023Updated 21d ago
Risk Assessment

The daext-autolinks-manager plugin version 1.10.11 exhibits a generally strong security posture based on the provided static analysis. The plugin demonstrates excellent adherence to best practices, with 99% of outputs being properly escaped and a significant majority (72%) of SQL queries utilizing prepared statements. The absence of dangerous functions, file operations, and external HTTP requests further bolsters its security. Crucially, the analysis indicates no unprotected entry points in AJAX handlers or REST API routes, and a robust implementation of nonce and capability checks (10 and 11 respectively) mitigate common attack vectors.

However, the taint analysis reveals two flows with unsanitized paths, which warrants attention despite not being classified as critical or high severity. While the vulnerability history shows only one medium-severity CVE in the past, it was a Cross-Site Request Forgery (CSRF), a common type of vulnerability that can be addressed through proper nonce implementation. The fact that there are no currently unpatched vulnerabilities is a positive indicator. Overall, the plugin is well-secured, but the identified unsanitized paths, even if not critical, represent a minor area for improvement to further harden its security.

Key Concerns

  • Taint analysis shows unsanitized paths
  • One medium-severity vulnerability in history
Vulnerabilities
1

Autolinks Manager – SEO Auto Linker Security Vulnerabilities

CVEs by Year

1 CVE in 2023
2023
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2023-46625medium · 4.3Cross-Site Request Forgery (CSRF)

Autolinks Manager <= 1.10.04 - Cross-Site Request Forgery

Oct 25, 2023 Patched in 1.10.05 (90d)
Code Analysis
Analyzed Mar 16, 2026

Autolinks Manager – SEO Auto Linker Code Analysis

Dangerous Functions
0
Raw SQL Queries
22
57 prepared
Unescaped Output
5
363 escaped
Nonce Checks
10
Capability Checks
11
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

72% prepared79 total queries

Output Escaping

99% escaped368 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
display_crud_menu (admin\inc\menu\class-daextam-menu-elements.php:1264)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Autolinks Manager – SEO Auto Linker Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 2

authwp_ajax_daextam_get_taxonomiesclass-daextam-ajax.php:36
authwp_ajax_daextam_get_termsclass-daextam-ajax.php:37

REST API Routes 3

POST/wp-json/daext-autolinks-manager/v1/statistics/inc\class-daextam-rest.php:88
POST/wp-json/daext-autolinks-manager/v1/read-options/inc\class-daextam-rest.php:99
POST/wp-json/daext-autolinks-manager/v1/optionsinc\class-daextam-rest.php:110
WordPress Hooks 23
actionadmin_enqueue_scriptsadmin\class-daextam-admin.php:85
actionadmin_enqueue_scriptsadmin\class-daextam-admin.php:86
actionadmin_menuadmin\class-daextam-admin.php:89
actionadd_meta_boxesadmin\class-daextam-admin.php:92
actionsave_postadmin\class-daextam-admin.php:95
actionwpmu_new_blogadmin\class-daextam-admin.php:98
actiondelete_blogadmin\class-daextam-admin.php:101
actioninitadmin\class-daextam-admin.php:104
actionadmin_initadmin\inc\menu\class-daextam-menu-elements.php:125
actionadmin_initadmin\inc\menu\class-daextam-menu-elements.php:126
actionadmin_initadmin\inc\menu\class-daextam-menu-elements.php:127
actionadmin_initadmin\inc\menu\class-daextam-menu-elements.php:131
actionenqueue_block_editor_assetsblocks\src\init.php:67
actioninitinc\class-daextam-rest.php:38
actionrest_api_initinc\class-daextam-rest.php:43
actionplugins_loadedinit.php:27
actionplugins_loadedinit.php:31
actionplugins_loadedinit.php:45
actionplugins_loadedinit.php:58
actioninitinit.php:100
filterthe_contentpublic\class-daextam-public.php:44
filterthe_contentpublic\class-daextam-public.php:49
actiondelete_termshared\class-daextam-shared.php:297
Maintenance & Trust

Autolinks Manager – SEO Auto Linker Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 13, 2026
PHP min version5.3
Downloads20K

Community Trust

Rating88/100
Number of ratings10
Active installs2K
Developer Profile

Autolinks Manager – SEO Auto Linker Developer Profile

DAEXT

13 plugins · 30K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
101 days
View full developer profile
Detection Fingerprints

How We Detect Autolinks Manager – SEO Auto Linker

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/daext-autolinks-manager/public/css/public.css/wp-content/plugins/daext-autolinks-manager/admin/css/admin.css/wp-content/plugins/daext-autolinks-manager/admin/js/admin.js/wp-content/plugins/daext-autolinks-manager/admin/js/dashboard.js/wp-content/plugins/daext-autolinks-manager/admin/js/autolinks.js/wp-content/plugins/daext-autolinks-manager/admin/js/categories.js/wp-content/plugins/daext-autolinks-manager/admin/js/term-groups.js/wp-content/plugins/daext-autolinks-manager/admin/js/tools.js+2 more
Script Paths
/wp-content/plugins/daext-autolinks-manager/public/js/public.js/wp-content/plugins/daext-autolinks-manager/admin/js/admin.js/wp-content/plugins/daext-autolinks-manager/admin/js/dashboard.js/wp-content/plugins/daext-autolinks-manager/admin/js/autolinks.js/wp-content/plugins/daext-autolinks-manager/admin/js/categories.js/wp-content/plugins/daext-autolinks-manager/admin/js/term-groups.js+3 more
Version Parameters
daext-autolinks-manager/public/css/public.css?ver=daext-autolinks-manager/admin/css/admin.css?ver=daext-autolinks-manager/public/js/public.js?ver=daext-autolinks-manager/admin/js/admin.js?ver=daext-autolinks-manager/admin/js/dashboard.js?ver=daext-autolinks-manager/admin/js/autolinks.js?ver=daext-autolinks-manager/admin/js/categories.js?ver=daext-autolinks-manager/admin/js/term-groups.js?ver=daext-autolinks-manager/admin/js/tools.js?ver=daext-autolinks-manager/admin/js/options.js?ver=daext-autolinks-manager/admin/js/metabox.js?ver=

HTML / DOM Fingerprints

CSS Classes
daextam-menu-page
Data Attributes
data-link-group-iddata-link-group-category-iddata-link-group-namedata-link-group-slug
JS Globals
Daextam_Admin_DashboardDaextam_Admin_AutolinksDaextam_Admin_CategoriesDaextam_Admin_TermGroupsDaextam_Admin_ToolsDaextam_Admin_Options+2 more
REST Endpoints
/wp-json/daextam/v1/autolinks/wp-json/daextam/v1/categories/wp-json/daextam/v1/term-groups
FAQ

Frequently Asked Questions about Autolinks Manager – SEO Auto Linker