Label list for Categories and Archives Security & Risk Analysis

wordpress.org/plugins/category-archive-label-list-widget

This Label List Widget helps you to create a nice category or archive list with labels.

10 active installs v1.2.0 PHP + WP 3.0.1+ Updated Sep 22, 2015
archivecategorieslistsidebarwidget
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Label list for Categories and Archives Safe to Use in 2026?

Generally Safe

Score 85/100

Label list for Categories and Archives has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "category-archive-label-list-widget" plugin v1.2.0 exhibits a generally positive security posture based on the provided static analysis and vulnerability history. The complete absence of identified CVEs, and a history with no recorded vulnerabilities, suggests a well-maintained and secure codebase. Furthermore, the static analysis reveals no discernible attack surface through AJAX handlers, REST API routes, shortcodes, or cron events, and there are no identified dangerous functions or file operations. This lack of entry points significantly limits the potential for external exploitation.

However, there are areas for improvement. The analysis indicates a concerning lack of prepared statements for the single SQL query found, which could expose the plugin to SQL injection vulnerabilities, especially if user-controlled data is involved. Additionally, a very low percentage (22%) of output escaping is properly handled, presenting a risk of Cross-Site Scripting (XSS) vulnerabilities. The complete absence of nonce and capability checks, while seemingly a strength due to the lack of attack surface, means that if any new entry points were inadvertently introduced in future versions, they would be entirely unprotected. Overall, while the plugin appears secure due to its limited functionality and lack of historical vulnerabilities, the identified issues with SQL and output sanitization warrant attention.

Key Concerns

  • SQL query without prepared statements
  • Low percentage of properly escaped output
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Label list for Categories and Archives Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Label list for Categories and Archives Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
51
14 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

22% escaped65 total outputs
Attack Surface

Label list for Categories and Archives Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionwp_enqueue_scriptscategory-archive-label-list-widget.php:14
actionadmin_enqueue_scriptscategory-archive-label-list-widget.php:15
actionwp_enqueue_scriptscategory-archive-label-list-widget.php:43
actionadmin_enqueue_scriptscategory-archive-label-list-widget.php:44
actionwidgets_initcategory-archive-label-list-widget.php:465
actionplugins_loadedcategory-archive-label-list-widget.php:472
Maintenance & Trust

Label list for Categories and Archives Maintenance & Trust

Maintenance Signals

WordPress version tested4.3.34
Last updatedSep 22, 2015
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Label list for Categories and Archives Developer Profile

W3B Designer

2 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Label list for Categories and Archives

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/category-archive-label-list-widget/css/callw_styles.css/wp-content/plugins/category-archive-label-list-widget/css/callw_admin_styles.css/wp-content/plugins/category-archive-label-list-widget/js/script.js
Script Paths
/wp-content/plugins/category-archive-label-list-widget/js/script.js
Version Parameters
callw-styles?ver=callw-admin-styles?ver=callw-admin-scripts?ver=

HTML / DOM Fingerprints

CSS Classes
callwbadge
Data Attributes
callw_stylingcallw_styling_optionscallw_titlecallw_typecallw_periodcallw_lines+2 more
FAQ

Frequently Asked Questions about Label list for Categories and Archives