
Advanced Custom Fields – Taxonomy Field add-on Security & Risk Analysis
wordpress.org/plugins/advanced-custom-fields-taxonomy-field-add-onAdds a Taxonomy Field to Advanced Custom Fields. Select one or more taxonomy terms and assign them to the post.
Is Advanced Custom Fields – Taxonomy Field add-on Safe to Use in 2026?
Generally Safe
Score 85/100Advanced Custom Fields – Taxonomy Field add-on has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "advanced-custom-fields-taxonomy-field-add-on" v1.4 reveals a generally positive security posture with no critical findings. The absence of dangerous functions, SQL queries without prepared statements, file operations, and external HTTP requests is commendable. Furthermore, the plugin demonstrates no known historical vulnerabilities, which suggests a history of responsible development and maintenance. The low number of total entry points also contributes to a smaller attack surface. However, the analysis does flag a concern regarding output escaping, with only 36% of outputs being properly escaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not correctly sanitized before being displayed. The lack of nonce and capability checks, while not directly indicated as vulnerabilities in this analysis (due to the absence of certain entry points), represent potential weaknesses that could be exploited if new entry points were introduced or existing ones were overlooked.
In conclusion, the plugin is currently in a good state with no immediate critical threats identified. Its strengths lie in its secure handling of database operations and its clean vulnerability history. The primary area for improvement and potential risk lies in the output escaping mechanism. Addressing this would further harden the plugin's security. While the absence of specific entry points like AJAX handlers with unauthenticated access is positive, a thorough review of capability checks and nonce usage across all potential interaction points is always advisable for a robust security profile. Overall, it's a promising plugin with a few key areas for enhancement.
Key Concerns
- Output escaping is not consistently applied
- No nonce checks found
- No capability checks found
Advanced Custom Fields – Taxonomy Field add-on Security Vulnerabilities
Advanced Custom Fields – Taxonomy Field add-on Code Analysis
Output Escaping
Advanced Custom Fields – Taxonomy Field add-on Attack Surface
WordPress Hooks 2
Maintenance & Trust
Advanced Custom Fields – Taxonomy Field add-on Maintenance & Trust
Maintenance Signals
Community Trust
Advanced Custom Fields – Taxonomy Field add-on Alternatives
Advanced Custom Fields: NextGEN Gallery Field add-on
advanced-custom-fields-nextgen-gallery-field-add-on
Adds a NextGEN Gallery Field to Advanced Custom Fields. Select one or more NextGEN Galleries and assign them to the post.
Advanced Custom Fields – Address Field add-on
advanced-custom-fields-address-field-add-on
Adds an Address Field to Advanced Custom Fields. Pick and choose the components and layout of the address.
Bonzer Custom Fields Creator
bonzer-custom-fields
Create wide array of input fields at various location in the admin panel.
Advanced Custom Fields (ACF®)
advanced-custom-fields
ACF helps customize WordPress with powerful, professional and intuitive fields. Proudly powering over 2 million sites, WordPress developers love ACF.
ACF Content Analysis for Yoast SEO
acf-content-analysis-for-yoast-seo
WordPress plugin that adds the content of all ACF fields to the Yoast SEO score analysis.
Advanced Custom Fields – Taxonomy Field add-on Developer Profile
3 plugins · 1K total installs
How We Detect Advanced Custom Fields – Taxonomy Field add-on
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/advanced-custom-fields-taxonomy-field-add-on/css/taxonomy-field.css/wp-content/plugins/advanced-custom-fields-taxonomy-field-add-on/js/taxonomy-field.js/wp-content/plugins/advanced-custom-fields-taxonomy-field-add-on/js/taxonomy-field.jsadvanced-custom-fields-taxonomy-field-add-on/css/taxonomy-field.css?ver=advanced-custom-fields-taxonomy-field-add-on/js/taxonomy-field.js?ver=HTML / DOM Fingerprints
acf-taxonomy-field<!-- Advanced Custom Fields - Taxonomy Field add-on --><!-- Copyright (c) 2012, CAMPUS CRUSADE FOR CHRIST --><!-- --><!-- -->+74 moredata-field_name="taxonomy"name="acf_fields[taxonomy_field][name][]"id="acf_fields[taxonomy_field][name]"name="acf_fields[taxonomy_field][value][]"id="acf_fields[taxonomy_field][value]"name="acf_fields[taxonomy_field][taxonomy][]"+11 morewindow.acf_taxonomy_field