Already Existing Tags Security & Risk Analysis

wordpress.org/plugins/already-existing-tags

Looks for already existing tags within your posts.

600 active installs v2.4 PHP + WP 4.0+ Updated May 23, 2021
auto-taggerauto-taggingautomatic-tagstaggingtags
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Already Existing Tags Safe to Use in 2026?

Generally Safe

Score 85/100

Already Existing Tags has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The "already-existing-tags" v2.4 plugin exhibits an exceptionally strong security posture based on the provided static analysis. The complete absence of identified attack surface points, including AJAX handlers, REST API routes, shortcodes, and cron events, signifies a well-contained and inherently secure design. Furthermore, the code signals are all positive: no dangerous functions are used, all SQL queries are properly prepared, output is consistently escaped, and there are no file operations or external HTTP requests. The lack of taint analysis findings further reinforces this excellent security profile.

The vulnerability history is also entirely clear, with no recorded CVEs, unpatched vulnerabilities, or past common vulnerability types. This suggests a history of diligent security practices or a lack of discoverable vulnerabilities in previous versions. The plugin's strengths lie in its minimal attack surface, secure coding practices concerning data handling and output, and a clean vulnerability record.

While the data presents a near-perfect security picture, the only minor area for consideration is the absence of explicit nonce and capability checks. Although the lack of attack surface might render these checks less critical in this specific version, their general inclusion as a defensive measure would further enhance the plugin's security, especially if the attack surface were to expand in future versions. Overall, the plugin is highly secure.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Already Existing Tags Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Already Existing Tags Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped4 total outputs
Attack Surface

Already Existing Tags Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionwp_after_insert_postalready-existing-tags-core.php:69
actionwp_insert_postalready-existing-tags-core.php:71
actionadmin_initalready-existing-tags.php:24
actionadmin_enqueue_scriptsalready-existing-tags.php:30
actionadmin_menualready-existing-tags.php:39
actionplugins_loadedalready-existing-tags.php:58
Maintenance & Trust

Already Existing Tags Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedMay 23, 2021
PHP min version
Downloads11K

Community Trust

Rating92/100
Number of ratings7
Active installs600
Developer Profile

Already Existing Tags Developer Profile

digitalemphasis

2 plugins · 900 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Already Existing Tags

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/already-existing-tags/admin/already-existing-tags-admin.css/wp-content/plugins/already-existing-tags/admin/already-existing-tags-admin.js
Version Parameters
already-existing-tags-admin.css?ver=already-existing-tags-admin.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Already Existing Tags