
RankWise SEO WordPress Plugin Security & Risk Analysis
wordpress.org/plugins/webcijfers-seo-scanContains the SEO core of rankwise.net. Scan the website, individual pages and posts. Contains an authorship check and analyses for Google+ profiles.
Is RankWise SEO WordPress Plugin Safe to Use in 2026?
Generally Safe
Score 85/100RankWise SEO WordPress Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'webcijfers-seo-scan' plugin, version 2.1.12, exhibits a mixed security posture. On the positive side, it has no recorded vulnerabilities (CVEs) and appears to have a very small attack surface with zero identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, all SQL queries are correctly using prepared statements, and there are no file operations or external HTTP requests, which are common vectors for exploitation. However, there are significant concerns highlighted by the static code analysis. A complete lack of output escaping across all identified output points (6 total) is a major vulnerability. This means that any data outputted by the plugin is potentially susceptible to Cross-Site Scripting (XSS) attacks if that data originates from or is influenced by user input. Additionally, the taint analysis reveals two flows with unsanitized paths, which, while not classified as critical or high severity in this instance, indicate potential pathways for malicious data injection if not properly handled. The absence of capability checks and nonce checks also raises concerns, as these are fundamental security mechanisms for WordPress plugins to prevent unauthorized actions and verify user intent.
Key Concerns
- All output is unescaped
- Unsanitized paths in taint analysis (2 flows)
- No nonce checks
- No capability checks
RankWise SEO WordPress Plugin Security Vulnerabilities
RankWise SEO WordPress Plugin Code Analysis
Output Escaping
Data Flow Analysis
RankWise SEO WordPress Plugin Attack Surface
WordPress Hooks 5
Maintenance & Trust
RankWise SEO WordPress Plugin Maintenance & Trust
Maintenance Signals
Community Trust
RankWise SEO WordPress Plugin Alternatives
CrawlWP SEO – Instant Search Engine Indexing & SEO Performance Monitor
mihdan-index-now
Improve your WordPress SEO with instant search-engine indexing, SEO insights, and indexing status tracking.
ReCrawler
recrawler
ReCrawler is a small WordPress Plugin for quickly notifying search engines whenever their website content is created, updated, or deleted.
多合一搜索自动推送管理插件-支持Baidu/Google/Bing/IndexNow/Yandex/头条
baidu-submit-link
多合一搜索自动推送管理插件(原百度搜索推送管理插件)是一款针对WP开发的功能非常强大的百度、Google、Bing、IndexNow、Yandex和头条搜索引擎链接推送插件。协助站长将网站资源快速推送至各大搜索引擎,有利于提升网站的搜索引擎收录效率;该插件还提供文章百度收录查询功能。
VS Meta Description
very-simple-meta-description
With this lightweight plugin you can add a meta description to your website.
Smart Keywords Tool – 智能关键词插件
smart-keywords-tool
智能关键词插件(Smart Keywords Tool)是一款集即时关键词推荐、关键词选词工具、文章智能标签及关键词库功能于一体的WordPress网站SEO优化插件。
RankWise SEO WordPress Plugin Developer Profile
1 plugin · 20 total installs
How We Detect RankWise SEO WordPress Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/webcijfers-seo-scan/logoscannow.pngHTML / DOM Fingerprints
webcijferslogonav-tab-wrappernav-tabnav-tab-activemeterbluemeterinnervulvulmeterdata-divrelwebcijferstimer<img alt="WebCijfers SEO Scan" height="60" class="wewbcijferslogo" src="