Adjust Admin Categories Security & Risk Analysis

wordpress.org/plugins/adjust-admin-categories

Installing this plugin allows you to adjust the behavior of the area below the posts screen category and custom taxonomy box.

10K active installs v2.2.6 PHP + WP 3.0+ Updated Jun 27, 2022
admincategory
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Adjust Admin Categories Safe to Use in 2026?

Generally Safe

Score 85/100

Adjust Admin Categories has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The plugin "adjust-admin-categories" v2.2.6 demonstrates a generally positive security posture with several good practices in place. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. The fact that all SQL queries utilize prepared statements is a strong indicator of secure database interaction. Furthermore, the presence of a nonce check and the absence of known vulnerabilities in its history are commendable.

However, a few concerns warrant attention. The taint analysis revealed one flow with unsanitized paths, which, while not classified as critical or high severity in this instance, represents a potential pathway for attackers if not carefully managed. The output escaping is also a concern, with only 37% of outputs properly escaped. This could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is rendered without sufficient sanitization.

While the plugin has no recorded vulnerabilities, this could be due to its limited functionality or a lack of extensive historical auditing. The primary weaknesses lie in the potential for XSS due to insufficient output escaping and the single unsanitized path identified in the taint analysis. Overall, the plugin is relatively secure due to its minimal attack surface and secure database practices, but the output escaping and taint flow issues represent areas for improvement.

Key Concerns

  • Unsanitized path flow in taint analysis
  • Low percentage of properly escaped output
Vulnerabilities
None known

Adjust Admin Categories Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Adjust Admin Categories Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
17
10 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

37% escaped27 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
display_messages (admin\admin-functions.php:3)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Adjust Admin Categories Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionwp_terms_checklist_argsadjust-admin-categories.php:40
actionadmin_print_footer_scriptsadjust-admin-categories.php:43
actionadmin_menuadjust-admin-categories.php:46
actionadmin_print_stylesadjust-admin-categories.php:49
actionadmin_print_scriptsadjust-admin-categories.php:50
actionadmin_enqueue_scriptsadjust-admin-categories.php:51
actionwp_headadjust-admin-categories.php:171
Maintenance & Trust

Adjust Admin Categories Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.0
Last updatedJun 27, 2022
PHP min version
Downloads70K

Community Trust

Rating100/100
Number of ratings4
Active installs10K
Developer Profile

Adjust Admin Categories Developer Profile

Masahiro NAKASHIMA

8 plugins · 54K total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Adjust Admin Categories

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/adjust-admin-categories/css/style.css/wp-content/plugins/adjust-admin-categories/js/scripts.js/wp-content/plugins/adjust-admin-categories/js/aac-inline-edit.js
Script Paths
/wp-content/plugins/adjust-admin-categories/js/scripts.js/wp-content/plugins/adjust-admin-categories/js/aac-inline-edit.js
Version Parameters
adjust-admin-categories/css/style.css?ver=adjust-admin-categories/js/scripts.js?ver=adjust-admin-categories/js/aac-inline-edit.js?ver=

HTML / DOM Fingerprints

CSS Classes
rwmb-required
Data Attributes
data-clicked
JS Globals
check_
FAQ

Frequently Asked Questions about Adjust Admin Categories