Extend Link
Extend Link has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it is fixed as of August 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.
The most common weakness is Server-Side Request Forgery (SSRF), behind 1 of the records (100%).
The one issue recorded for Extend Link has a vendor fix available, so running the current release closes it.
All of these findings were reported by theviper17. Extend Link is installed on roughly 1,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2026-25310Extend Link <= 2.0.0 - Authenticated (Contributor+) Server-Side Request Forgery
Read the full analysisVulnerability Records

Extend Link
Author
Alobaidi
Extend Link – Link Options for Editor The Extend Link plugin Allows you to add classes, IDs, titles, rel attributes, and file download options to links directly from the “Extend Link” dialog in the Classic Editor and Classic Block in Gutenberg. It also provides H1–H6 support, so you can, for example, add an ID or classes to a heading. A lightweight, professional plugin, free and always will remain free! Key Features Enhanced Link Attributes: * Add custom CSS classes to links. * Assign unique IDs for precise targeting. * Add title attributes (tooltips on hover). * Set rel attributes: nofollow, noreferrer, noopener. * Open links in new tabs (target=”_blank”). * Enable file download instead of opening. * Check link status in real-time. Heading Support (H1-H6): * Add IDs and classes directly to headings. * Insert fully-attributed links inside headings. * Edit existing heading attributes. * Perfect for creating anchor links. Link Status Checker: * Verify if links are working or broken. * See HTTP status codes (200, 404, etc.). * Improve SEO by fixing dead links. * Built-in tool – no external service needed. User Experience: * Seamless Classic Editor integration. * Compatible with Gutenberg Classic Block. * Intuitive dialog with helpful tooltips. * Visual feedback for all actions. Professional & Lightweight: * All-in-one solution. * No external dependencies. * Optimized performance. * Security-focused with nonce verification. * Follows WordPress coding standards. * Free forever – no premium version. How to Use Adding a Link: 1. Open the Classic Editor or add a Classic Block in Gutenberg. 2. Select text or link. 3. Click the “Extend Link” button in the toolbar. 4. Configure your link options and save. Checking Link Status: 1. Open the Extend Link dialog. 2. Enter or edit a URL. 3. Click the “Check” button. 4. See instant status feedback. Adding ID/Class to Headings: 1. Select a heading (H1-H6). 2. Click “Extend Link” button. 3. Add ID and/or classes (leave URL empty). 4. Click “Save”. Plugin Reference Everything related to the plugin can be found on this page. You May Also Like – From Our Plugins Video Popup Plugin – Create unlimited, elegant, and responsive popups for YouTube, Vimeo, MP4 & WebM videos on click or On-Page Load. Preloader Plugin – Add a preloader to your website easily in only 3 steps. Simple, fast, and compatible with all major browsers.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C