
Force Domain Redirect Security & Risk Analysis
wordpress.org/plugins/force-domain-redirectForces your Wordpress site to load on the domain registered in the WP admin.
Is Force Domain Redirect Safe to Use in 2026?
Generally Safe
Score 85/100Force Domain Redirect has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "force-domain-redirect" plugin v0.3 exhibits a mixed security posture. On the positive side, there are no known CVEs in its history and the code does not appear to use dangerous functions, make external HTTP requests, or perform file operations. All SQL queries are properly prepared, which is a strong security practice. However, there are significant concerns regarding output escaping and taint analysis. The fact that 0% of outputs are properly escaped is a major red flag, potentially leading to cross-site scripting (XSS) vulnerabilities. Furthermore, the taint analysis revealed two flows with unsanitized paths, which, while not classified as critical or high severity, still indicate potential weaknesses in how user-supplied data is handled. The absence of nonce checks and capability checks on any potential entry points (though none were detected) also leaves room for theoretical vulnerabilities if the plugin were to evolve its attack surface without implementing these crucial security measures. In conclusion, while the plugin has a clean vulnerability history and good practices in some areas like SQL, the critical lack of output escaping and the presence of unsanitized paths represent tangible risks that need immediate attention.
Key Concerns
- Unescaped output detected
- Flows with unsanitized paths
Force Domain Redirect Security Vulnerabilities
Force Domain Redirect Code Analysis
Output Escaping
Data Flow Analysis
Force Domain Redirect Attack Surface
WordPress Hooks 1
Maintenance & Trust
Force Domain Redirect Maintenance & Trust
Maintenance Signals
Community Trust
Force Domain Redirect Alternatives
Nomore404 404 Redirection and Firewall
nomore404-404-redirection-and-firewall
NoMore404 is a free WordPress plugin for redirection of 404 pages and simple firewall to block malicious hosts and URLs.
Simple 301 Redirects By BetterLinks – Easy WordPress Redirect Manager for Redirects, 404 Error Log & More
simple-301-redirects
Simple 301 Redirects provides an easy method of redirecting requests to another page on your site or elsewhere on the web.
301 Redirects & 404 Error Log
301-redirects
Create & manage 301 redirects. Easily test redirects. Includes 404 error log.
Simple Page Redirect
simple-post-redirect
Simple Page Redirect is an easy-to-use WordPress plugin that lets you quickly redirect any post, page, custom post type, or portfolio item to an inter …
Quick 301 Redirects
quick-301-redirects
The fastest & easiest way to do 301 redirects. You can set each redirect or bulk upload unlimited number of 301 redirects using a CSV file
Force Domain Redirect Developer Profile
3 plugins · 340 total installs
How We Detect Force Domain Redirect
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
isn't the right domain: