
Scalenut Security & Risk Analysis
wordpress.org/plugins/scalenutEffortlessly boost your SEO with Scalenut's Content Optimizer for WordPress.
Is Scalenut Safe to Use in 2026?
Mostly Safe
Score 78/100Scalenut is generally safe to use. 1 past CVE were resolved.
The Scalenut plugin v1.1.5 exhibits a generally good security posture based on the static analysis, with a strong emphasis on secure coding practices. The plugin demonstrates excellent adherence to output escaping (97%), avoids dangerous functions, and correctly uses prepared statements for all SQL queries. The presence of nonce and capability checks on its single AJAX handler is also a positive indicator. However, the existence of a known, currently unpatched medium severity vulnerability is a significant concern that overrides some of the positive findings. This indicates a potential for exploitation that has not yet been addressed by the developers.
The static analysis reveals a very small attack surface, with only one entry point (an AJAX handler) which is confirmed to have authorization checks. The absence of any taint analysis findings or critical/high severity code signals further suggests a well-written codebase in terms of immediate exploitability through common code injection vectors. Despite these strengths, the single unpatched vulnerability, classified as medium severity and historically a 'Missing Authorization' type, suggests a recurring pattern of authorization flaws that users should be aware of.
In conclusion, while Scalenut v1.1.5 benefits from robust secure coding practices in its static composition, the single unpatched medium severity vulnerability necessitates caution. This indicates a need for diligent patching by users and suggests that the developers should prioritize addressing authorization-related security weaknesses in future releases to maintain a strong security posture.
Key Concerns
- Unpatched medium severity CVE
Scalenut Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Scalenut <= 1.1.3 - Missing Authorization
Scalenut Release Timeline
Scalenut Code Analysis
Bundled Libraries
Output Escaping
Scalenut Attack Surface
AJAX Handlers 1
WordPress Hooks 8
Maintenance & Trust
Scalenut Maintenance & Trust
Maintenance Signals
Community Trust
Scalenut Alternatives
Permalink Manager for WooCommerce
permalink-manager-for-woocommerce
Permalink Manager for WooCommerce improves your store permalinks and remove product, product_category and product_tag slugs from the URL.
Extend Link
extend-link
Add classes, IDs, titles, rel attributes, and download options to links. Includes H1–H6 heading support and built-in link status checker for SEO.
SEO Editor
seo-editor
Edit SEO Data in bulk to save time. Includes meta title, description, and keyword editing for all post types, taxonomies, and users.
Orbisius SEO Editor
orbisius-seo-editor
Orbisius SEO editor is (almost) a universal SEO editor that allows you to bulk edit meta titles and/or descriptions of supported WordPress SEO plugins
Admin Robots.txt Editor
admin-robots-txt-editor
Easily create, edit, and manage your site's robots.txt file directly from the WordPress admin panel.
Scalenut Developer Profile
1 plugin · 40 total installs
How We Detect Scalenut
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/scalenut/includes/css/scnt-global.cssscalenut/includes/css/scnt-global.css?ver=