
WP-Redirection Security & Risk Analysis
wordpress.org/plugins/wp-redirectionAn alternative to setup redirection without modifying the htaccess file
Is WP-Redirection Safe to Use in 2026?
Generally Safe
Score 85/100WP-Redirection has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-redirection" plugin version 1.0.3 exhibits a concerning security posture despite its clean vulnerability history. The static analysis reveals a critical issue: all three analyzed taint flows have unsanitized paths and are flagged with high severity. This suggests potential vulnerabilities where user-supplied data could be used in a dangerous way, such as file path manipulation or command injection, despite the lack of direct file operations or external HTTP requests in the code signals. The complete absence of output escaping on all seven detected outputs is another major red flag, indicating a high likelihood of Cross-Site Scripting (XSS) vulnerabilities. While the plugin has no recorded CVEs and a seemingly empty attack surface from direct entry points like AJAX or REST API, the internal code analysis reveals significant weaknesses that could be exploited if an attacker finds a way to trigger these unsanitized flows or inject malicious scripts into the unescaped outputs. The high percentage of prepared statements for SQL queries is a positive sign, but it doesn't mitigate the risks posed by the taint flows and output escaping issues. Therefore, this plugin should be treated with caution due to the high-severity taint flows and lack of output escaping, which outweigh the benefits of its clean vulnerability history and seemingly small attack surface.
Key Concerns
- High severity taint flows with unsanitized paths
- Zero output escaping on all detected outputs
WP-Redirection Security Vulnerabilities
WP-Redirection Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WP-Redirection Attack Surface
WordPress Hooks 2
Maintenance & Trust
WP-Redirection Maintenance & Trust
Maintenance Signals
Community Trust
WP-Redirection Alternatives
Rank Math SEO – AI SEO Tools to Dominate SEO Rankings
seo-by-rank-math
Rank Math SEO is the best WordPress SEO plugin with the features of many SEO and AI SEO tools in a single package to help multiply your SEO traffic.
301 Redirects – Redirect Manager
eps-301-redirects
Manage 301 & 302 redirects. Simple redirection & redirects validation. Includes redirect stats & 404 error log.
All 404 Redirect to Homepage
all-404-redirect-to-homepage
Using this plugin, you can fix all 404 error links by redirecting them to homepage using the SEO 301 redirection. Improve your SEO rank & pages speed
Easy HTTPS Redirection (SSL)
https-redirection
The plugin allows an automatic redirection to the "HTTPS" version/URL of the site. Make your site SSL compatible easily.
Redirection
redirect-redirection
Redirection
WP-Redirection Developer Profile
5 plugins · 140 total installs
How We Detect WP-Redirection
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-redirection/HTML / DOM Fingerprints
wrapoptionseditformname="redirect"name="brd_host"name="brd_path"name="brd_new_host"name="brd_map"name="brd_code"+3 moreeditItemdeleteItemnewItem