RUSH Seo Tags Security & Risk Analysis

wordpress.org/plugins/rush-seo-tags

Плагин предназначен для изменения title, description и h1 страниц сайта.

0 active installs v1.0 PHP 5.6+ WP 4.0+ Updated Jun 15, 2019
descriptioph1meta-titleseotags
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is RUSH Seo Tags Safe to Use in 2026?

Generally Safe

Score 85/100

RUSH Seo Tags has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "rush-seo-tags" v1.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of identified attack vectors like unprotected AJAX handlers, REST API routes, shortcodes, or cron events is a significant positive. Furthermore, the code demonstrates good practices by exclusively using prepared statements for all SQL queries and performing nonce and capability checks, indicating an awareness of common WordPress security vulnerabilities.

However, there are minor areas for improvement. The output escaping, while mostly proper at 71%, still has a notable portion (29%) that is not escaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if untrusted data is outputted without proper sanitization. The absence of any identified taint flows, dangerous functions, or file operations is reassuring, but the limited scope of analyzed taint flows (0 total) means this analysis might not be exhaustive. The plugin also has a clean vulnerability history, with no recorded CVEs, which is excellent. This suggests a commitment to secure coding or simply a lack of discovered vulnerabilities to date.

In conclusion, "rush-seo-tags" v1.0 appears to be a relatively secure plugin with a sound foundation. Its strengths lie in its limited attack surface and diligent use of prepared statements and authentication checks. The primary weakness identified is the incomplete output escaping, which warrants attention. The lack of historical vulnerabilities is a positive indicator, but it's important to remember that past security is not always indicative of future security.

Key Concerns

  • Unescaped output detected (29%)
Vulnerabilities
None known

RUSH Seo Tags Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

RUSH Seo Tags Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

RUSH Seo Tags Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
5 prepared
Unescaped Output
6
15 escaped
Nonce Checks
2
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared5 total queries

Output Escaping

71% escaped21 total outputs
Attack Surface

RUSH Seo Tags Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

RUSH Seo Tags Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedJun 15, 2019
PHP min version5.6
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

RUSH Seo Tags Developer Profile

Rush-Agency

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect RUSH Seo Tags

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rush-seo-tags/style.css

HTML / DOM Fingerprints

CSS Classes
procontainerinnermanage_pluginmessage
Data Attributes
name="url"name="h1"name="title"name="description"name="tag_id"name="action"+2 more
FAQ

Frequently Asked Questions about RUSH Seo Tags