Quick 301 Redirects Security & Risk Analysis

wordpress.org/plugins/quick-301-redirects

The fastest & easiest way to do 301 redirects. You can set each redirect or bulk upload unlimited number of 301 redirects using a CSV file

7K active installs v1.1.8 PHP + WP 3.1+ Updated Sep 23, 2025
301301-redirectsredirectsseo-redirectsurl-redirects
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Quick 301 Redirects Safe to Use in 2026?

Generally Safe

Score 100/100

Quick 301 Redirects has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The quick-301-redirects plugin v1.1.8 exhibits a generally strong security posture based on the provided static analysis. The absence of known vulnerabilities (CVEs) and the complete lack of critical or high-severity taint flows are significant positive indicators. Furthermore, the code demonstrates good practices by exclusively using prepared statements for SQL queries and implementing a decent percentage of output escaping. The presence of nonce and capability checks also suggests an awareness of basic WordPress security principles.

However, there are areas for concern. The static analysis reveals two flows with unsanitized paths. While the taint analysis didn't classify these as critical or high severity, unsanitized paths are a potential risk, especially if they interact with file operations, which are present in the plugin. The plugin also has a limited attack surface in terms of entry points, but the lack of explicit authentication checks on any potential AJAX handlers or REST API routes (though there are none reported) would be a concern if any were present. The vulnerability history being clean is reassuring, but it doesn't negate the risks identified in the code analysis.

In conclusion, the plugin is built with some solid security foundations. The absence of past vulnerabilities is a strong point. The primary concerns stem from the identified unsanitized paths, which warrant further investigation to understand their potential impact, especially in conjunction with file operations. While the current attack surface appears small and protected, future development should maintain rigorous security checks.

Key Concerns

  • Flows with unsanitized paths
  • Unescaped output rate below 100%
  • File operations present
Vulnerabilities
None known

Quick 301 Redirects Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Quick 301 Redirects Release Timeline

v1.1.8Current
v1.1.7
v1.1.6
v1.1.5
v1.1.4
v1.1.3
v1.1.2
v1.1.1
v1.1
Code Analysis
Analyzed Mar 16, 2026

Quick 301 Redirects Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
11
46 escaped
Nonce Checks
2
Capability Checks
11
File Operations
6
External Requests
0
Bundled Libraries
0

Output Escaping

81% escaped57 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

4 flows2 with unsanitized paths
quick_301_redirects_data_lists (quick-301-redirects.php:317)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Quick 301 Redirects Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionplugins_loadedquick-301-redirects.php:14
actionactivated_pluginquick-301-redirects.php:29
actionadmin_initquick-301-redirects.php:60
actionadmin_enqueue_scriptsquick-301-redirects.php:89
actionadmin_menuquick-301-redirects.php:125
actiontemplate_redirectquick-301-redirects.php:549
Maintenance & Trust

Quick 301 Redirects Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 23, 2025
PHP min version
Downloads43K

Community Trust

Rating92/100
Number of ratings12
Active installs7K
Developer Profile

Quick 301 Redirects Developer Profile

Premio

9 plugins · 651K total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
168 days
View full developer profile
Detection Fingerprints

How We Detect Quick 301 Redirects

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quick-301-redirects/recommended-plugins.php/wp-content/plugins/quick-301-redirects/js/jquery.session.js
Script Paths
/wp-content/plugins/quick-301-redirects/js/jquery.session.js

HTML / DOM Fingerprints

CSS Classes
quick-301-redirects-wrapquick-301-redirects-tblquick-301-redirects-mainquick-301-redirects-addquick-301-redirects-submitquick-301-redirects-delete-confirm
HTML Comments
<!-- Settings saved --><!-- Upload Bluk csv file successfully. -->
Data Attributes
data-nonce_field
JS Globals
quick_301_redirects_plugins_page
FAQ

Frequently Asked Questions about Quick 301 Redirects