IIS Chinese Tag Permalink Security & Risk Analysis

wordpress.org/plugins/iis-chinese-tag-permalink

在IIS下使用Wordpress时,如果Url路径中包含中文,访问时会提示找不到页面或者404错误。

200 active installs v1.4 PHP + WP 3.1+ Updated Oct 23, 2019
chinese-tagiis
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is IIS Chinese Tag Permalink Safe to Use in 2026?

Generally Safe

Score 85/100

IIS Chinese Tag Permalink has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "iis-chinese-tag-permalink" v1.4 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The plugin has zero identified CVEs, a clean vulnerability history, and importantly, its code analysis reveals no dangerous functions, no raw SQL queries, and all outputs are properly escaped. The absence of external HTTP requests and file operations further minimizes its potential attack surface.

While the plugin's current codebase appears secure, the analysis also highlights a complete lack of any identified attack entry points such as AJAX handlers, REST API routes, or shortcodes. This could indicate that the plugin has a very limited functionality, or conversely, that the static analysis tools were unable to detect potential entry points that might exist in a more dynamic or complex plugin. The absence of nonce and capability checks is noted, but given the lack of identified entry points, this does not currently present an immediate risk.

In conclusion, the plugin demonstrates excellent adherence to secure coding practices, with no apparent vulnerabilities in its current state. The lack of historical vulnerabilities further reinforces this positive assessment. The primary area of consideration is the complete absence of detected attack surface, which warrants further investigation to understand the plugin's intended functionality and ensure no hidden entry points are overlooked.

Key Concerns

  • No nonce checks found
  • No capability checks found
Vulnerabilities
None known

IIS Chinese Tag Permalink Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

IIS Chinese Tag Permalink Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

IIS Chinese Tag Permalink Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actioninitiis-chinese-tag-permalink.php:10
filterget_pagenum_linkiis-chinese-tag-permalink.php:11
actionparse_queryiis-chinese-tag-permalink.php:12
Maintenance & Trust

IIS Chinese Tag Permalink Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedOct 23, 2019
PHP min version
Downloads8K

Community Trust

Rating100/100
Number of ratings2
Active installs200
Developer Profile

IIS Chinese Tag Permalink Developer Profile

bossma

2 plugins · 400 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect IIS Chinese Tag Permalink

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about IIS Chinese Tag Permalink