
Bulk Add Terms Security & Risk Analysis
wordpress.org/plugins/bulk-add-termsA lightweight plugin to add thousands of taxonomy terms in one go.
Is Bulk Add Terms Safe to Use in 2026?
Generally Safe
Score 85/100Bulk Add Terms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'bulk-add-terms' v2.0.4 demonstrates a generally strong security posture with robust practices in place. The static analysis reveals no dangerous functions, all SQL queries utilize prepared statements, and there are no file operations or external HTTP requests. Crucially, all identified entry points (AJAX handlers) are protected by nonce checks, and capability checks are implemented on some of these handlers. The absence of any known CVEs in its vulnerability history further contributes to a positive security outlook, indicating a lack of historical exploitable weaknesses.
However, there are areas for improvement. A significant concern is the output escaping, where only 61% of outputs are properly escaped. This leaves a substantial portion of data potentially vulnerable to cross-site scripting (XSS) attacks if user-controlled or dynamic data is rendered without sufficient sanitization. While the taint analysis shows no flows, this is based on zero flows being analyzed, meaning the potential for undiscovered issues remains. The presence of 4 AJAX handlers, while secured with nonces, still represents an attack surface that requires continuous vigilance.
Overall, 'bulk-add-terms' v2.0.4 is a relatively secure plugin, largely due to its adherence to secure coding practices regarding database interactions and authentication. The lack of historical vulnerabilities is a positive indicator. The primary weakness lies in the incomplete output escaping, which presents a moderate risk of XSS vulnerabilities. Developers should prioritize addressing the unescaped output to further harden the plugin.
Key Concerns
- Insufficient output escaping
Bulk Add Terms Security Vulnerabilities
Bulk Add Terms Release Timeline
Bulk Add Terms Code Analysis
Output Escaping
Bulk Add Terms Attack Surface
AJAX Handlers 4
WordPress Hooks 9
Maintenance & Trust
Bulk Add Terms Maintenance & Trust
Maintenance Signals
Community Trust
Bulk Add Terms Alternatives
JSM Show Term Metadata
jsm-show-term-meta
Show term metadata in a metabox when editing terms - a great tool for debugging issues with term metadata.
Term Taxonomy Converter
term-taxonomy-converter
Copy or convert terms between taxonomies.
Taxonomy Meta Box Filter – Search taxonomies from the editor
taxonomy-meta-box-filter
Adds a search field above each taxonomy metabox in the post editor, making it easier to manage categories, tags, and custom taxonomies.
TaxoFilter Admin
taxofilter-admin
Adds customizable taxonomy filters for posts and custom post types in the WordPress admin area.
Category Order and Taxonomy Terms Order
taxonomy-terms-order
Drag-and-drop ordering for Categories & any taxonomy (hierarchically) using a Drag and Drop Sortable JavaScript capability.
Bulk Add Terms Developer Profile
4 plugins · 1K total installs
How We Detect Bulk Add Terms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bulk-add-terms/assets/css/ts-bat-main.css/wp-content/plugins/bulk-add-terms/assets/js/ts-bat-main.js/wp-content/plugins/bulk-add-terms/assets/js/ts-bat-main.jsts-bat-styles?ver=ts-bat-scripts?ver=HTML / DOM Fingerprints
ts-bat-wrapperts-bat-select-tax-to-add-termsts-bat-enter-your-termskeep-txtts_bat_notice_holdername="ts_bat_taxonomy_select"name="bulk_term_input"id="submit_bulk_terms"id="get_bulk_terms"id="remove_bulk_terms"id="reset_bulk_terms"+2 morelocale_strings/wp-ajax.php?action=ts_bat_add_new_terms/wp-ajax.php?action=ts_bat_show_the_terms/wp-ajax.php?action=ts_bat_remove_the_terms