Uninstall Yoast SEO Security & Risk Analysis

wordpress.org/plugins/uninstall-yoast-seo

Uninstall Yoast SEO deactivates Yoast SEO and then cleans up the WordPress database completely, leaving no traces of Yoast SEO behind.

10 active installs v1.0 PHP + WP 4.0+ Updated Mar 27, 2016
completelycompletely-delete-yoast-seocompletely-remove-yoast-seocompletely-uninstall-yoast-seodeletedelete-yoast-seo
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Uninstall Yoast SEO Safe to Use in 2026?

Generally Safe

Score 85/100

Uninstall Yoast SEO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "uninstall-yoast-seo" v1.0 plugin exhibits an exceptionally low attack surface, with zero identified entry points across AJAX handlers, REST API routes, shortcodes, and cron events. This is a strong indicator of secure development practices, as it limits the ways an attacker could interact with the plugin. Furthermore, the code analysis shows no dangerous functions, file operations, or external HTTP requests, and all identified output is properly escaped. The absence of any known vulnerabilities or historical CVEs further reinforces this positive security posture.

However, a significant concern lies in the handling of SQL queries. All four identified SQL queries are executed without prepared statements. This represents a critical security weakness, as it makes the plugin highly susceptible to SQL injection attacks, potentially allowing unauthorized data access or manipulation. The lack of nonce and capability checks, while not directly exploitable due to the zero attack surface, signifies a missed opportunity for robust authorization and would become a vulnerability if any entry points were introduced in future versions or through other means.

In conclusion, while the plugin is remarkably clean regarding attack surface and historical vulnerabilities, the unescaped SQL queries present a substantial risk that cannot be overlooked. The absence of any taint analysis results suggests that this risk might have been mitigated in practice or simply not detected by the analysis tools. Nevertheless, the practice of raw SQL queries without prepared statements is a dangerous oversight that needs immediate attention.

Key Concerns

  • SQL queries without prepared statements
Vulnerabilities
None known

Uninstall Yoast SEO Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Uninstall Yoast SEO Code Analysis

Dangerous Functions
0
Raw SQL Queries
4
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared4 total queries
Attack Surface

Uninstall Yoast SEO Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionadmin_noticesuninstall-yoast-seo.php:57
Maintenance & Trust

Uninstall Yoast SEO Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedMar 27, 2016
PHP min version
Downloads17K

Community Trust

Rating88/100
Number of ratings13
Active installs10
Developer Profile

Uninstall Yoast SEO Developer Profile

Ralph83

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Uninstall Yoast SEO

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
Yoast SEO was successfully uninstalled
FAQ

Frequently Asked Questions about Uninstall Yoast SEO