Vctlo 404 Redirector Security & Risk Analysis

wordpress.org/plugins/vctlo-404-redirector

Redirect 404 pages to a custom URL with secure sanitization for better user experience and SEO.

10 active installs v1.1 PHP 5.6+ WP 4.0+ Updated Apr 26, 2025
404custom-urlredirectseouser-experience
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Vctlo 404 Redirector Safe to Use in 2026?

Generally Safe

Score 92/100

Vctlo 404 Redirector has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The security posture of vctlo-404-redirector v1.1 appears to be exceptionally strong based on the provided static analysis data. The plugin exhibits excellent adherence to secure coding practices. The complete absence of any detected attack surface (AJAX handlers, REST API routes, shortcodes, cron events) is a significant strength, as it minimizes potential entry points for attackers. Furthermore, the code signals indicate a robust security implementation: no dangerous functions are used, all SQL queries utilize prepared statements, and all detected outputs are properly escaped. The lack of file operations, external HTTP requests, and importantly, the absence of capability checks and nonce checks, in conjunction with zero attack surface, suggests that the plugin does not require or implement server-side functionality that could be exploited. The taint analysis results also show no critical or high severity flows, reinforcing the clean bill of health. The vulnerability history further strengthens this assessment, with zero known CVEs of any severity. This indicates a history of secure development and maintenance, with no prior exploitable flaws. Overall, vctlo-404-redirector v1.1 presents a very low-risk profile.

Vulnerabilities
None known

Vctlo 404 Redirector Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Vctlo 404 Redirector Release Timeline

v1.1Current
Code Analysis
Analyzed Apr 16, 2026

Vctlo 404 Redirector Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

Vctlo 404 Redirector Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadmin_menuvctlo-404-redirector.php:27
actionadmin_initvctlo-404-redirector.php:69
actiontemplate_redirectvctlo-404-redirector.php:91
Maintenance & Trust

Vctlo 404 Redirector Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 26, 2025
PHP min version5.6
Downloads410

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Vctlo 404 Redirector Developer Profile

vctlocom

1 plugin · 10 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Vctlo 404 Redirector

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/vctlo-404-redirector/css/style.css/wp-content/plugins/vctlo-404-redirector/js/script.js
Script Paths
/wp-content/plugins/vctlo-404-redirector/js/script.js
Version Parameters
vctlo-404-redirector/css/style.css?ver=vctlo-404-redirector/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
vctlo-404-redirect-settings
FAQ

Frequently Asked Questions about Vctlo 404 Redirector