
果果推送 Security & Risk Analysis
wordpress.org/plugins/ggpush支持百度搜索引擎的普通、快速抓取、微软Bing搜索引擎、以及IndexNow方式的Api提交链接功能,同时还支持定时提交链接功能。
Is 果果推送 Safe to Use in 2026?
Generally Safe
Score 100/100果果推送 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ggpush" v0.0.7 plugin demonstrates a generally good security posture with several strengths. Notably, all output is properly escaped, and there are no critical or high severity taint flows identified. The plugin also boasts a clean vulnerability history with no known CVEs. This indicates developers are likely following secure coding practices in areas related to output handling and preventing common vulnerabilities.
However, a significant concern arises from the attack surface analysis. The plugin exposes one AJAX handler that lacks authentication checks. This is a critical oversight, as it allows any unauthenticated user to potentially trigger this AJAX action, opening the door to various attacks if the handler performs sensitive operations. While the overall number of entry points is low, the presence of an unprotected one significantly elevates the risk.
In conclusion, while the plugin exhibits positive security indicators like robust output escaping and no past vulnerabilities, the unprotected AJAX handler is a glaring weakness that requires immediate attention. It's a single point of failure that could be exploited to compromise the site. Addressing this specific vulnerability is paramount to improving the plugin's overall security.
Key Concerns
- Unprotected AJAX handler present
果果推送 Security Vulnerabilities
果果推送 Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
果果推送 Attack Surface
AJAX Handlers 1
WordPress Hooks 8
Scheduled Events 4
Maintenance & Trust
果果推送 Maintenance & Trust
Maintenance Signals
Community Trust
果果推送 Alternatives
[凹凸曼]自动推送Bing自动推送IndexNow
apoyl-bingpush
这是一款解决把你文章内容推送到Bing必应搜索引擎里,也可以推送到IndexNow,让Bing第一时间抓取你的内容,加速Bing收录(必应收录)你的网站内容。IndexNow是让搜索引擎及时索引新技术,帮助更好实现网站SEO,让搜索引擎更快的收录。
[凹凸曼]百度推送百度收录SEO
apoyl-baidupush
百度推送百度收录SEO-Baidu Push是一款解决把你文章内容手动推送或者自动推送到百度里,让百度第一时间抓取你的内容.
[凹凸曼]生成死链接死链提交
apoyl-badurl
实现死链接生成集中链接,并提交到百度、360、头条搜索、谷歌google、Bing、神马等搜索引擎。如果网站存在大量死链,将影响网站的站点评级,建议存在死链内容的网站,使用本工具。
果果推送 Developer Profile
3 plugins · 1K total installs
How We Detect 果果推送
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ggpush/assets/css/ggpush.css/wp-content/plugins/ggpush/assets/js/ggpush.js/wp-content/plugins/ggpush/assets/js/ggpush.jsggpush/assets/css/ggpush.css?ver=ggpush/assets/js/ggpush.js?ver=HTML / DOM Fingerprints
ggpush-wrapdata-ggpush-idggpush_config/wp-json/ggpush/v1/publish