
WP Link Preview Security & Risk Analysis
wordpress.org/plugins/wp-link-previewDisplay a preview for a URL similar to sharing a link on Facebook.
Is WP Link Preview Safe to Use in 2026?
Use With Caution
Score 64/100WP Link Preview has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The wp-link-preview plugin version 1.4.1 presents a mixed security posture. While it demonstrates good practices such as using prepared statements for all SQL queries and a high percentage of properly escaped output, significant concerns remain. The presence of an unprotected AJAX handler is a critical vulnerability, providing an entry point for attackers without requiring authentication. Furthermore, the plugin has a documented history of medium severity vulnerabilities, including a recent one related to Server-Side Request Forgery (SSRF) which is still unpatched. This historical pattern suggests potential ongoing security weaknesses that require careful monitoring. Despite the good aspects of its code, the unpatched SSRF vulnerability and the unprotected AJAX handler pose a substantial risk to WordPress sites using this plugin.
Key Concerns
- Unprotected AJAX handler
- Currently unpatched CVE (medium severity)
- Vulnerability history (SSRF)
WP Link Preview Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WP Link Preview <= 1.4.1 - Authenticated (Contributor+) Server-Side Request Forgery
WP Link Preview Code Analysis
Output Escaping
WP Link Preview Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
WP Link Preview Maintenance & Trust
Maintenance Signals
Community Trust
WP Link Preview Alternatives
Visual Link Preview
visual-link-preview
Display a fully customizable visual link preview for any internal or external link.
Bookmark Card
bookmark-card
Turn any URL into a beautiful preview card.
Activity Link Preview For BuddyPress
activity-link-preview-for-buddypress
BuddyPress activity link preview displays image, title and description from websites when links are shared in activity posts.
URL Preview
link-preview
A plugin used to embed the preview of a link similar to facebook and linkedin
4Site ShareThumb – Branded Social Preview OG Image Plugin
sharethumb
Free social share images for unlimited pages using customizable OG image templates. Upgrade to optimize with AI and get sharing analytics.
WP Link Preview Developer Profile
1 plugin · 500 total installs
How We Detect WP Link Preview
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-link-preview/wplinkpreview.css/wp-content/plugins/wp-link-preview/wplinkpreview.jsHTML / DOM Fingerprints
siteurl[wplinkpreview url="