Dirigible SEO Security & Risk Analysis

wordpress.org/plugins/dirigible-seo

Free, fast and easy search engine optimization for web developers & SEO pros. Edit titles and meta tags quickly and easily. All killer, no filler.

100 active installs v1.1.3 PHP 7.0+ WP 3.1+ Updated Aug 21, 2020
descriptionmetameta-descriptionsearch-engine-optimizationseo
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Dirigible SEO Safe to Use in 2026?

Generally Safe

Score 85/100

Dirigible SEO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The Dirigible SEO plugin, version 1.1.3, exhibits a concerning security posture primarily due to its unprotected AJAX endpoints. While the plugin demonstrates good practices by not using dangerous functions, having no raw SQL queries, and no file operations, the presence of two AJAX handlers without any authentication or capability checks is a significant vulnerability. This creates a substantial attack surface where unauthenticated users could potentially trigger actions within the plugin, leading to unintended consequences. The lack of nonce checks on these AJAX handlers further exacerbates this risk, making it easier for attackers to craft malicious requests. The plugin's vulnerability history is clean, with no recorded CVEs. This might suggest that previous versions were secure or that the plugin has not been a target for widespread exploitation. However, the current code analysis reveals critical weaknesses that could be exploited regardless of past history. In conclusion, while the absence of known vulnerabilities is positive, the unprotected AJAX endpoints represent a significant and immediate security risk that needs to be addressed.

Key Concerns

  • Unprotected AJAX handlers
  • Missing nonce checks on AJAX
  • Low output escaping coverage
Vulnerabilities
None known

Dirigible SEO Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Dirigible SEO Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

20% escaped10 total outputs
Attack Surface
2 unprotected

Dirigible SEO Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

authwp_ajax_dsGetPreviewSEOsrc\ajax.php:7
authwp_ajax_ds_migrate_yoastsrc\ajax.php:167
WordPress Hooks 8
actionadmin_enqueue_scriptssrc\DirigibleSEO.php:17
actionadmin_enqueue_scriptssrc\DirigibleSEO.php:18
filterdocument_title_partssrc\DirigibleSEO.php:19
actionacf/initsrc\DirigibleSEO.php:20
actionadmin_noticessrc\DirigibleSEO.php:22
actionwp_headsrc\DirigibleSEO.php:24
actionadmin_menusrc\DirigibleSEO.php:25
actionadmin_noticessrc\DirigibleSEO.php:28
Maintenance & Trust

Dirigible SEO Maintenance & Trust

Maintenance Signals

WordPress version tested5.5.18
Last updatedAug 21, 2020
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

Dirigible SEO Developer Profile

Dirigible Studio

1 plugin · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Dirigible SEO

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/dirigible-seo/css/dirigible-seo.css/wp-content/plugins/dirigible-seo/js/dirigible-seo.js
Script Paths
/wp-content/plugins/dirigible-seo/js/dirigible-seo.js
Version Parameters
dirigible-seo/css/dirigible-seo.css?ver=dirigible-seo/js/dirigible-seo.js?ver=

HTML / DOM Fingerprints

CSS Classes
ds-editor-seo-preview
HTML Comments
<!-- Dirigible SEO --><!-- End Dirigible SEO -->
Data Attributes
id="ds-editor-seo-preview"
FAQ

Frequently Asked Questions about Dirigible SEO