CVE-2025-1264

Published
View on NVD ↗
CVSS v3
6.5
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT

Description

The Broken Link Checker by AIOSEO – Easily Fix/Monitor Internal and External links plugin for WordPress is vulnerable to SQL Injection via the 'orderBy' parameter in all versions up to, and including, 1.2.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

<p>Broken Link Checker by AIOSEO ensures all links on your website are working. Check your site for broken links and easily fix them to improve SEO.</p> <h3>Broken Link Checker by AIOSEO &#8211; Easily Fix/Monitor Internal and External links</h3> <p>The Broken Link Checker by AIOSEO for WordPress is a must-have tool for website owners and managers. Its granular control and detailed reporting features ensure that your website&#8217;s links are healthy and functioning correctly, providing your visitors with a seamless browsing experience. With this plugin, you can detect and fix broken links quickly and easily, ensuring that your website is always up-to-date and running smoothly.</p> <p>Unlike other broken link checker plugins, <strong>AIOSEO&#8217;s Broken Link Checker is offered as a SaaS and requires an AIOSEO account</strong>. This means that the tool is hosted on the AIOSEO servers, rather than being installed on your website&#8217;s server. <strong>This approach has several benefits, including preventing your server IP from being blocked, and avoiding hosting providers from forcing you to upgrade</strong> due to increased resource usage.</p> <p>By using Broken Link Checker as a SaaS, you can rest assured that your website&#8217;s performance won&#8217;t be negatively affected, and that you&#8217;ll have access to the most up-to-date version of the service at all times. Additionally, it&#8217;s incredibly user-friendly and provides actionable recommendations for fixing broken links, making it an essential tool for maintaining the health and functionality of your website.</p> <p>When you install this plugin, you’ll have the opportunity to register for a free account that includes scanning up to 250 internal links. Those 250 link credits will renew every month for free, and you’ll only be upgraded if you scan more than 250 links during the month. Or, if you already have an <a href="https://aioseo.com/pricing-broken-link-checker/" rel="nofollow ugc">AIOSEO Broken Link Checker subscription</a>, you can simply connect this plugin to it.</p> <h3>Link Monitoring</h3> <p>The Broken Link Checker plugin monitors all internal and external links on your WordPress website, ensuring that they are functioning correctly. It crawls your website periodically and checks each link to ensure that it is not broken. The plugin will also show whether or not a link worked properly (200 status) or worked with redirects (301/302 status) or was broken (404 status).</p> <h3>Granular Control</h3> <p>The plugin provides granular control over which post types and statuses it will monitor. You can choose which post types, such as pages, posts, or custom post types, the plugin will monitor. You can also choose which post statuses, such as published, draft, or pending review, the plugin will monitor to look for broken links.</p> <h3>URL Exclusions</h3> <p>You can exclude certain URLs from being checked by the plugin. For example, if you have a third-party tracking link that redirects to another website, you can exclude it from being checked.</p> <h3>Features</h3> <ul> <li>Monitors all internal and external links on your WordPress website.</li> <li>Detects valid links, broken links and redirects.</li> <li>Provides granular control over which post types and statuses the plugin will monitor.</li> <li>Allows you to exclude certain URLs from being checked.</li> <li>Schedules checks to run automatically at regular intervals.</li> <li>Excludes links that are broken from search engine crawling.</li> <li>Allows inline editing of links to reduce time spent updating each post.</li> </ul> <h3>Credits</h3> <p>This plugin is created by <a href="https://benjaminrojas.net/" title="Benjamin Rojas" rel="friend nofollow ugc">Benjamin Rojas</a> and <a href="https://syedbalkhi.com/" title="Syed Balkhi" rel="friend nofollow ugc">Syed Balkhi</a>.</p> <h3>Branding Guideline</h3> <p>AIOSEO&reg; is a registered trademark of Semper Plugins LLC. When writing about the WordPress SEO plugin by AIOSEO, please use the following format.</p> <ul> <li>AIOSEO (correct)</li> <li>All in One SEO (correct)</li> <li>AIO SEO (incorrect)</li> <li>All in 1 SEO (incorrect)</li> <li>AISEO (incorrect)</li> </ul> <h3>What&#8217;s Next</h3> <p>If you like our Broken Link Checker plugin, then consider checking out our other projects:</p> <ul> <li><a href="https://aioseo.com/" title="AIOSEO" rel="friend nofollow ugc">AIOSEO</a> &#8211; The Best WordPress SEO plugin &amp; toolkit to improve your SEO rankings in search results.</li> <li><a href="https://optinmonster.com/" title="OptinMonster" rel="friend nofollow ugc">OptinMonster</a> &#8211; Get more email subscribers with the most popular conversion optimization plugin for WordPress.</li> <li><a href="https://wpforms.com/" title="WPForms" rel="friend nofollow ugc">WPForms</a> &#8211; #1 drag &amp; drop online form builder for WordPress (trusted by 5 million sites).</li> <li><a href="https://www.monsterinsights.com/" title="MonsterInsights" rel="friend nofollow ugc">MonsterInsights</a> &#8211; See the stats that matter and grow your business with confidence. Best Google Analytics plugin for WordPress.</li> <li><a href="https://www.seedprod.com/" title="SeedProd" rel="friend nofollow ugc">SeedProd</a> &#8211; Create beautiful landing pages with our powerful drag &amp; drop landing page builder.</li> <li><a href="https://wpmailsmtp.com" rel="nofollow ugc">WP Mail SMTP</a> &#8211; Improve email deliverability for your contact form with the most popular SMTP plugin for WordPress.</li> <li><a href="https://rafflepress.com/" rel="nofollow ugc">RafflePress</a> &#8211; Best WordPress giveaway and contest plugin to grow traffic and social followers.</li> <li><a href="https://www.smashballoon.com" rel="nofollow ugc">Smash Balloon</a> &#8211; #1 social feeds plugin for WordPress &#8211; display social media content in WordPress without code.</li> <li><a href="https://wpcode.com/" rel="nofollow ugc">WPCode</a> &#8211; Must have WordPress code snippet management plugin to help you future-proof website customization (trusted by 1.5 million sites).</li> <li><a href="https://duplicator.com/" rel="nofollow ugc">Duplicator</a> &#8211; Popular WordPress backup and migration plugin used by over 1 million websites.</li> <li><a href="https://www.pushengage.com/" rel="nofollow ugc">Push Engage</a> &#8211; Connect with visitors after they leave your website with the leading web push notification plugin.</li> <li><a href="https://trustpulse.com/" rel="nofollow ugc">TrustPulse</a> &#8211; Add real-time social proof notifications to boost your store conversions by up to 15%.</li> <li><a href="https://searchwp.com/" rel="nofollow ugc">SearchWP</a> – The most advanced custom WordPress search plugin to improve WordPress search quality.</li> <li><a href="https://affiliatewp.com/" rel="nofollow ugc">AffiliateWP</a> – #1 affiliate management plugin for WordPress. Add a referral program to your online store.</li> <li><a href="https://wpsimplepay.com/" rel="nofollow ugc">WP Simple Pay</a> – #1 Stripe payments plugin for WordPress. Start accepting one-time or recurring payments without a shopping cart.</li> <li><a href="https://easydigitaldownloads.com/" rel="nofollow ugc">Easy Digital Downloads</a> – The best WordPress eCommerce plugin to sell digital products (eBooks, software, music, and more).</li> <li><a href="https://www.wpcharitable.com/" rel="nofollow ugc">WPCharitable</a> &#8211; Top-rated WordPress donation and fundraising plugin for WordPress.</li> <li><a href="https://sugarcalendar.com/" rel="nofollow ugc">Sugar Calendar</a> – A simple event calendar plugin for WordPress that&#8217;s both easy and powerful.</li> </ul> <p>Visit <a href="http://www.wpbeginner.com/" title="WPBeginner" rel="friend nofollow ugc">WPBeginner</a> to learn from our <a href="http://www.wpbeginner.com/category/wp-tutorials/" title="WordPress Tutorials" rel="friend nofollow ugc">WordPress Tutorials</a> and find out about the <a href="http://www.wpbeginner.com/category/plugins/" title="Best WordPress Plugins" rel="friend nofollow ugc">best WordPress plugins</a>.</p>
WordPress Plugin DirectoryWordPress Plugin Directory
2.2M