Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Security & Risk Analysis

wordpress.org/plugins/expired-link-redirection

Create expiring links with redirection to alternate URLs & track clicks. Set 404 redirect, keyword autolink, & temporary link that redirects a …

10 active installs v1.1.1 PHP 7.4+ WP 5.8+ Updated Oct 23, 2025
404-redirectautolinkexpiring-linkslink-managementredirection
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Safe to Use in 2026?

Generally Safe

Score 100/100

Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The 'expired-link-redirection' plugin v1.1.1 exhibits a generally strong security posture with several good practices in place. The absence of known CVEs, SQL injection vulnerabilities, dangerous functions, and external HTTP requests are positive indicators. The plugin also demonstrates a commendable approach to output escaping, with a very high percentage of outputs properly sanitized, and all SQL queries utilizing prepared statements, mitigating a significant class of vulnerabilities. The presence of nonce and capability checks on most entry points further contributes to its security.

However, a notable concern arises from the presence of two AJAX handlers that lack proper authentication checks. This creates a potential attack vector where unauthenticated users could interact with these handlers, potentially leading to unintended actions or information disclosure if the functionality itself is sensitive. While taint analysis shows no immediate critical or high severity unsanitized flows, the unprotected AJAX endpoints represent a direct and exploitable attack surface that requires attention. The plugin's vulnerability history being entirely clean is a positive sign, suggesting a developer who is either diligent or fortunate, but the code itself needs to be hardened against known attack patterns like unauthorized AJAX calls.

In conclusion, the plugin has a solid foundation with good coding practices in critical areas like SQL and output sanitization, and a clean vulnerability history. The primary weakness lies in the exposure of AJAX handlers without adequate authorization. Addressing these unprotected entry points would significantly improve the plugin's overall security.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
56 escaped
Nonce Checks
6
Capability Checks
6
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

92% escaped61 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
render_create_redirection_tab (includes\class-elrlitev-admin-menu.php:254)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 2

authwp_ajax_elrlitev_reset_statsincludes\class-elrlitev-ajax-handler.php:5
authwp_ajax_elrlitev_delete_linkincludes\class-elrlitev-ajax-handler.php:6

Shortcodes 1

[elrlitev_link] includes\class-elrlitev-shortcode.php:6
WordPress Hooks 9
actionplugins_loadedexpired-link-redirection.php:38
actionadmin_enqueue_scriptsexpired-link-redirection.php:58
actionadmin_menuincludes\class-elrlitev-admin-menu.php:5
actionadmin_enqueue_scriptsincludes\class-elrlitev-admin-menu.php:6
actionadmin_initincludes\class-elrlitev-admin-menu.php:7
filterthe_contentincludes\class-elrlitev-autolink-handler.php:30
actioninitincludes\class-elrlitev-post-type.php:5
actiontemplate_redirectincludes\class-elrlitev-redirect-handler.php:5
actiontemplate_redirectincludes\class-elrlitev-redirect-handler.php:6
Maintenance & Trust

Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedOct 23, 2025
PHP min version7.4
Downloads342

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer Developer Profile

Ojasweb

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/expired-link-redirection/assets/css/admin-style.css/wp-content/plugins/expired-link-redirection/assets/js/admin-script.js/wp-content/plugins/expired-link-redirection/assets/js/frontend-script.js
Script Paths
/wp-content/plugins/expired-link-redirection/assets/js/admin-script.js/wp-content/plugins/expired-link-redirection/assets/js/frontend-script.js
Version Parameters
expired-link-redirection/assets/css/admin-style.css?ver=expired-link-redirection/assets/js/admin-script.js?ver=expired-link-redirection/assets/js/frontend-script.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Start Expired Link Redirection settings. --><!-- End Expired Link Redirection settings. -->
Data Attributes
data-post-iddata-elrlitev-redirect-iddata-elrlitev-redirect-urldata-elrlitev-redirect-titledata-elrlitev-redirect-original-urldata-elrlitev-redirect-expire-value+3 more
JS Globals
elrlitev_ajax
FAQ

Frequently Asked Questions about Expired Link Redirection – Temporary Link, Keyword Autolink, Page Redirect, 404 Redirect, Link Timer