
Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Security & Risk Analysis
wordpress.org/plugins/expired-link-redirectionCreate expiring links with redirection to alternate URLs & track clicks. Set 404 redirect, keyword autolink, & temporary link that redirects a …
Is Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Safe to Use in 2026?
Generally Safe
Score 100/100Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'expired-link-redirection' plugin v1.1.1 exhibits a generally strong security posture with several good practices in place. The absence of known CVEs, SQL injection vulnerabilities, dangerous functions, and external HTTP requests are positive indicators. The plugin also demonstrates a commendable approach to output escaping, with a very high percentage of outputs properly sanitized, and all SQL queries utilizing prepared statements, mitigating a significant class of vulnerabilities. The presence of nonce and capability checks on most entry points further contributes to its security.
However, a notable concern arises from the presence of two AJAX handlers that lack proper authentication checks. This creates a potential attack vector where unauthenticated users could interact with these handlers, potentially leading to unintended actions or information disclosure if the functionality itself is sensitive. While taint analysis shows no immediate critical or high severity unsanitized flows, the unprotected AJAX endpoints represent a direct and exploitable attack surface that requires attention. The plugin's vulnerability history being entirely clean is a positive sign, suggesting a developer who is either diligent or fortunate, but the code itself needs to be hardened against known attack patterns like unauthorized AJAX calls.
In conclusion, the plugin has a solid foundation with good coding practices in critical areas like SQL and output sanitization, and a clean vulnerability history. The primary weakness lies in the exposure of AJAX handlers without adequate authorization. Addressing these unprotected entry points would significantly improve the plugin's overall security.
Key Concerns
- Unprotected AJAX handlers
Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Security Vulnerabilities
Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Code Analysis
Output Escaping
Data Flow Analysis
Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Maintenance & Trust
Maintenance Signals
Community Trust
Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Alternatives
404 Redirect
redirect-to-404
Redirect all 404 errors to a specific page
ShoutCodes Lite
shoutcodes-lite
The fastest & powerful affiliate link management plugin. Create branded cloaked URL for your domain name.
Smart 404 Redirect Manager
smart-404-redirect-manager
Smart 404 Redirect & Log Manager fixes 404 errors, auto-redirects broken links, prevents loops, and boosts SEO with smart error management.
Rank Math SEO – AI SEO Tools to Dominate SEO Rankings
seo-by-rank-math
Rank Math SEO is the best WordPress SEO plugin with the features of many SEO and AI SEO tools in a single package to help multiply your SEO traffic.
301 Redirects – Redirect Manager
eps-301-redirects
Manage 301 & 302 redirects. Simple redirection & redirects validation. Includes redirect stats & 404 error log.
Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Developer Profile
1 plugin · 10 total installs
How We Detect Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/expired-link-redirection/assets/css/admin-style.css/wp-content/plugins/expired-link-redirection/assets/js/admin-script.js/wp-content/plugins/expired-link-redirection/assets/js/frontend-script.js/wp-content/plugins/expired-link-redirection/assets/js/admin-script.js/wp-content/plugins/expired-link-redirection/assets/js/frontend-script.jsexpired-link-redirection/assets/css/admin-style.css?ver=expired-link-redirection/assets/js/admin-script.js?ver=expired-link-redirection/assets/js/frontend-script.js?ver=HTML / DOM Fingerprints
<!-- Start Expired Link Redirection settings. --><!-- End Expired Link Redirection settings. -->data-post-iddata-elrlitev-redirect-iddata-elrlitev-redirect-urldata-elrlitev-redirect-titledata-elrlitev-redirect-original-urldata-elrlitev-redirect-expire-value+3 moreelrlitev_ajax