
InfoLink Security & Risk Analysis
wordpress.org/plugins/infolinksQuickly add Links to Wikipedia, IMDB Sites or search for site/blog or news with Google. And New with 1.3 also your bookmarked Links.
Is InfoLink Safe to Use in 2026?
Generally Safe
Score 85/100InfoLink has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "infolinks" plugin v1.3.1 exhibits a seemingly strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant strength. Furthermore, the code signals indicate a complete absence of dangerous functions and file operations. Crucially, all SQL queries are properly prepared, mitigating a common attack vector. However, the analysis reveals a critical weakness: 100% of the identified output points are not properly escaped. This suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed in the user's browser. The lack of identified taint flows and the absence of any historical vulnerabilities or CVEs are positive indicators, but they do not negate the immediate risk posed by unescaped output. The plugin's small attack surface is a benefit, but the lack of output escaping presents a clear and actionable security concern that requires immediate attention.
Key Concerns
- Unescaped output detected
InfoLink Security Vulnerabilities
InfoLink Code Analysis
Output Escaping
InfoLink Attack Surface
WordPress Hooks 3
Maintenance & Trust
InfoLink Maintenance & Trust
Maintenance Signals
Community Trust
InfoLink Alternatives
Sitelinks Search Box
sitelinks-search-box
Adds the JSON-LD schema.org markup for the "Google Sitelinks Search Box" on the homepage.
Insights
insights
Insights allows you to quickly access and insert information (links, images, videos, maps..) into your blog posts.
AutoLink
auto-link
This plugin takes delimiters and replaces them with links using the GoogleAPI.
Shortlink by BestWebSoft
google-shortlink
Replace external WordPress website links with Google shortlinks and track click stats.
PRyC WP: Google Sitelinks Search Box snippest
pryc-wp-google-sitelinks-search-box-snippest
Plugin add to homepage code required to activate new Sitelinks Search Box @ Google search
InfoLink Developer Profile
3 plugins · 80 total installs
How We Detect InfoLink
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/infolinks/editor_plugin.js/wp-content/plugins/infolinks/editor_plugin.js