Open Links Directory Security & Risk Analysis

wordpress.org/plugins/odlinks

Build A Webpage directory The plugin will help you to build a website directory and allow the site visitors to submit links by themselves.

10 active installs v1.5.0-a PHP 8.2+ WP 4.8+ Updated Unknown
classifiedslink-directoryopen-directorywebsite-submittingwebsites-directory
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Open Links Directory Safe to Use in 2026?

Generally Safe

Score 100/100

Open Links Directory has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "odlinks" plugin v1.5.0-a presents a mixed security posture. While the plugin boasts a clean vulnerability history with no recorded CVEs, its static analysis reveals significant areas of concern, particularly regarding output escaping and taint analysis. The extremely low percentage of properly escaped outputs (1%) is a critical red flag, suggesting a high likelihood of cross-site scripting (XSS) vulnerabilities. Coupled with a substantial number of taint flows with unsanitized paths, and a significant number of high-severity taint flows, this indicates potential for malicious data to be processed and rendered without adequate safeguards.

Despite the absence of direct entry points like AJAX handlers, REST API routes, or shortcodes without authentication checks, the inherent risk of unescaped output and unsanitized data flows cannot be overstated. The presence of 85 SQL queries, with only 66% using prepared statements, also introduces a moderate risk of SQL injection vulnerabilities. The plugin's reliance on an outdated bundled library (jQuery v1.4.2) is another notable weakness that could be exploited by attackers. In conclusion, while the plugin appears to have a history of security, the current code analysis reveals critical weaknesses in output handling and data sanitization that necessitate immediate attention.

Key Concerns

  • Very low output escaping rate
  • High severity taint flows
  • Taint flows with unsanitized paths
  • SQL queries without prepared statements
  • Bundled outdated jQuery library
  • Capability checks missing for some operations
Vulnerabilities
None known

Open Links Directory Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Open Links Directory Code Analysis

Dangerous Functions
0
Raw SQL Queries
29
56 prepared
Unescaped Output
231
3 escaped
Nonce Checks
0
Capability Checks
1
File Operations
51
External Requests
5
Bundled Libraries
1

Bundled Libraries

jQuery1.4.2

SQL Query Safety

66% prepared85 total queries

Output Escaping

1% escaped234 total outputs
Data Flows
24 unsanitized

Data Flow Analysis

24 flows24 with unsanitized paths
process_odlinksposts (admin\odl_admin_functions.php:15)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Open Links Directory Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
filterthe_titleodl_control.php:113
filterwp_list_pagesodl_control.php:114
filtersingle_post_titleodl_control.php:115
filterquery_varsodl_control.php:116
filterthe_generatorodl_control.php:117
actionthe_contentodl_control.php:121
actionadmin_headodl_control.php:122
actionwp_headodl_control.php:123
filterplugin_action_linksodl_control.php:124
actionadmin_menuodl_control.php:125
Maintenance & Trust

Open Links Directory Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedUnknown
PHP min version8.2
Downloads34K

Community Trust

Rating34/100
Number of ratings7
Active installs10
Developer Profile

Open Links Directory Developer Profile

cina

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Open Links Directory

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/odlinks/themes/default/css/admin.css/wp-content/plugins/odlinks/themes/default/css/odlinks.css

HTML / DOM Fingerprints

HTML Comments
<!-- wordpress plugin odLins V1.2Author Website : http://www.forgani.com<!--
FAQ

Frequently Asked Questions about Open Links Directory