pymSEO Security & Risk Analysis

wordpress.org/plugins/pymseo

pymSEO is a collection of functions that solve the most common problems of WordPress.

10 active installs v1.3.6 PHP 7.0+ WP 4.9+ Updated Feb 25, 2020
disable-emojisdisable-heartbeatmove-scripts-head-to-footerremove-jquery-migrateremove-querystrings
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is pymSEO Safe to Use in 2026?

Generally Safe

Score 85/100

pymSEO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "pymseo" v1.3.6 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events significantly limits its attack surface. Furthermore, the code signals indicate good development practices, with no dangerous functions detected, all SQL queries utilizing prepared statements, and a high percentage of properly escaped output. The plugin also demonstrates responsible handling of nonces and capability checks, along with a lack of external HTTP requests, which are all positive security indicators.

The vulnerability history further reinforces this positive assessment. With zero known CVEs, the plugin appears to be free from historical security flaws, suggesting consistent and diligent security maintenance. The taint analysis also shows no critical or high-severity flows with unsanitized paths, indicating that data handling is robust against common injection vulnerabilities.

While the plugin's static analysis and vulnerability history present a very secure profile, the presence of file operations and a small number of capability/nonce checks, though not inherently problematic, are areas that would warrant deeper inspection in a real-world scenario to ensure they are implemented securely and do not introduce subtle vulnerabilities. However, based solely on the provided data, the "pymseo" plugin v1.3.6 appears to be a well-secured piece of software with a minimal risk profile.

Vulnerabilities
None known

pymSEO Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

pymSEO Release Timeline

v1.3.6Current
v1.3.5
v1.3.1
v1.3.0
v1.2.9
v1.2.7
v1.2.5
v1.2.2
v1.2.1
v1.2
v1.1.11
v1.1.10
v1.1.9
v1.1.8
v1.1.7
v1.1.6
v1.1.5
v1.1.4
v1.1.3
v1.1.2
Code Analysis
Analyzed Mar 16, 2026

pymSEO Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
18
138 escaped
Nonce Checks
2
Capability Checks
2
File Operations
3
External Requests
0
Bundled Libraries
0

Output Escaping

88% escaped156 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
<funciones> (includes\funciones.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

pymSEO Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 32
filterrequestincludes\funciones_en_pruebas.php:7
filterterm_linkincludes\funciones_en_pruebas.php:62
actioninitincludes\funciones_en_pruebas.php:80
filterget_the_categoriesincludes\funciones_en_pruebas.php:81
filterthe_categoryincludes\funciones_en_pruebas.php:82
filterwp_get_object_termsincludes\funciones_en_pruebas.php:83
actionpre_get_postsincludes\funciones_en_pruebas.php:84
actionwp_footerincludes\funciones_en_pruebas.php:187
actionwp_footerincludes\funciones_en_pruebas.php:188
actionwp_footerincludes\funciones_en_pruebas.php:189
actionwp_enqueue_scriptsincludes\funciones_en_pruebas.php:191
actiontemplate_redirectincludes\funciones_en_pruebas.php:219
actionwp_enqueue_scriptsincludes\funciones_wp.php:89
filterupload_mimesincludes\funciones_wp_extras.php:7
filterthe_excerpt_rssincludes\funciones_wp_extras.php:38
filterthe_contentincludes\funciones_wp_extras.php:39
actionwp_footerincludes\pagina_opciones_js.php:34
filtertiny_mce_pluginsincludes\plugins\disable-emojis.php:42
filterwp_resource_hintsincludes\plugins\disable-emojis.php:43
actioninitincludes\plugins\disable-emojis.php:45
actioncreated_categoryincludes\plugins\remove-category-url.php:18
actiondelete_categoryincludes\plugins\remove-category-url.php:19
actionedited_categoryincludes\plugins\remove-category-url.php:20
actioninitincludes\plugins\remove-category-url.php:21
filtercategory_rewrite_rulesincludes\plugins\remove-category-url.php:24
filterquery_varsincludes\plugins\remove-category-url.php:25
filterrequestincludes\plugins\remove-category-url.php:26
filterplugin_row_metaincludes\plugins\remove-category-url.php:27
filterterms_clausesincludes\plugins\remove-category-url.php:72
actionadmin_menupymseo.php:45
filterplugin_row_metapymseo.php:59
filteradmin_footer_textpymseo.php:61
Maintenance & Trust

pymSEO Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedFeb 25, 2020
PHP min version7.0
Downloads2K

Community Trust

Rating100/100
Number of ratings4
Active installs10
Developer Profile

pymSEO Developer Profile

pymsol

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect pymSEO

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pymseo/admin/css/admin.css/wp-content/plugins/pymseo/admin/js/admin.js/wp-content/plugins/pymseo/public/css/public.css/wp-content/plugins/pymseo/public/js/public.js
Generator Patterns
PymSEO v1.3.6
Script Paths
/wp-content/plugins/pymseo/admin/js/admin.js/wp-content/plugins/pymseo/public/js/public.js
Version Parameters
pymseo/admin/css/admin.css?ver=pymseo/admin/js/admin.js?ver=pymseo/public/css/public.css?ver=pymseo/public/js/public.js?ver=

HTML / DOM Fingerprints

CSS Classes
pymseo_admin_settings
Data Attributes
data-pymseo-toggle
JS Globals
pymseo_admin_params
Shortcode Output
[pymseo_button]
FAQ

Frequently Asked Questions about pymSEO