Categories in Hierarchical Order Security & Risk Analysis

wordpress.org/plugins/categories-in-hierarchical-order

Categories in Hierarchical Order plugin maintains the hierarchical order of categories list in the Category tab under your WordPress Admin Post Editor …

2K active installs v1.3.1 PHP + WP 3.0+ Updated Dec 10, 2020
categorycustom-taxonomyhierarchyordertaxonomy
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Categories in Hierarchical Order Safe to Use in 2026?

Generally Safe

Score 85/100

Categories in Hierarchical Order has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The static analysis of the "categories-in-hierarchical-order" plugin version 1.3.1 reveals a very strong security posture. The absence of any identified dangerous functions, SQL queries executed without prepared statements, and properly escaped output are significant positive indicators. Furthermore, the plugin demonstrates a commitment to security by not performing file operations or external HTTP requests, and crucially, by not having any unauthenticated entry points in its AJAX handlers, REST API routes, or shortcodes. The lack of any reported vulnerabilities in its history, including critical or high severity issues, reinforces this excellent security standing.

While the code itself appears exceptionally clean and secure based on the static analysis, the complete absence of nonce checks and capability checks across all identified entry points (even though there are none reported in this scan) represents a potential area for concern if the plugin were to introduce new entry points in the future without proper authorization checks. However, given the current state with zero entry points and zero vulnerabilities, this is a hypothetical risk rather than an immediate one. The plugin's demonstrated adherence to secure coding practices for existing features suggests a high likelihood that any future additions would also be implemented securely, but it's a point to monitor.

In conclusion, "categories-in-hierarchical-order" v1.3.1 exhibits an outstanding security profile. The plugin follows best practices by avoiding common pitfalls like raw SQL, unescaped output, and vulnerable file operations. Its zero-vulnerability history is a testament to its developers' diligence. The only minor point of observation is the complete lack of explicit nonce and capability checks, which, while not an issue currently due to the zero attack surface, highlights the importance of maintaining this vigilance if new functionalities are added.

Vulnerabilities
None known

Categories in Hierarchical Order Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Categories in Hierarchical Order Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Categories in Hierarchical Order Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filterwp_terms_checklist_argssettings.php:31
Maintenance & Trust

Categories in Hierarchical Order Maintenance & Trust

Maintenance Signals

WordPress version tested5.6.17
Last updatedDec 10, 2020
PHP min version
Downloads30K

Community Trust

Rating100/100
Number of ratings14
Active installs2K
Developer Profile

Categories in Hierarchical Order Developer Profile

Amit Sonkhiya

4 plugins · 5K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Categories in Hierarchical Order

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Categories in Hierarchical Order