
Permalinks to Category/Permalinks Security & Risk Analysis
wordpress.org/plugins/permalinks-to-categorypermalinksThe plugin automatically redirects users who have accessed a blog post link without the category to the one which has the category and therefore avoid …
Is Permalinks to Category/Permalinks Safe to Use in 2026?
Generally Safe
Score 85/100Permalinks to Category/Permalinks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "permalinks-to-categorypermalinks" plugin version 1.0.2 exhibits a generally positive security posture based on the provided static analysis. There are no identified attack surface entry points, no dangerous functions are used, and all SQL queries are properly prepared. The absence of file operations and external HTTP requests further reduces potential risks. However, a significant concern lies in the output escaping, where only 42% of the outputs are properly escaped, leaving a substantial portion vulnerable to cross-site scripting (XSS) attacks.
Furthermore, the plugin lacks nonce checks and capability checks, which are fundamental security mechanisms for validating user actions and permissions. While the taint analysis shows no identified flows with unsanitized paths, the lack of proper output escaping and missing authorization checks can still lead to vulnerabilities. The plugin also has no recorded vulnerability history, suggesting a lack of past exploitation or discovery, which could be due to its small footprint or effective security practices in the past. However, this absence of history should not be interpreted as guaranteed future security, especially given the identified weaknesses.
In conclusion, while the plugin avoids common pitfalls like raw SQL queries and large attack surfaces, the critical deficiency in output escaping and the absence of nonce and capability checks represent significant security risks that require immediate attention. The potential for XSS vulnerabilities due to improper output handling is a substantial weakness that outweighs the strengths observed in other areas of the static analysis.
Key Concerns
- Low output escaping percentage
- Missing nonce checks
- Missing capability checks
Permalinks to Category/Permalinks Security Vulnerabilities
Permalinks to Category/Permalinks Code Analysis
Output Escaping
Permalinks to Category/Permalinks Attack Surface
WordPress Hooks 4
Maintenance & Trust
Permalinks to Category/Permalinks Maintenance & Trust
Maintenance Signals
Community Trust
Permalinks to Category/Permalinks Alternatives
Greek Multi Tool – Greeklish Slugs, Permalinks & Transliteration
greek-multi-tool
The only lightweight plugin you need for Greek WordPress sites. Auto-convert Greeklish slugs, optimize permalinks, and enhance search without bloat.
Permalinks Moved Permanently
permalinks-moved-permanently
If you just migrated your Wordpress blog from one permalink structure to another, and you don't want to lose Pagerank or traffic that accesses yo …
Pretty Search Permalinks
wp-seo-search
Rewrites default search query URLs into clean and readable permalinks.
Custom Base Terms
custom-base-terms
Modifique las estructuras personalizadas en las URLs para autor, búsqueda, comentarios, página y feed.
Disable Search Slug
disable-search-slug
Stops /search/... URLs from working, resulting in a WordPress 404 page not found.
Permalinks to Category/Permalinks Developer Profile
26 plugins · 12K total installs
How We Detect Permalinks to Category/Permalinks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.