
Custom Taxonomy Columns Security & Risk Analysis
wordpress.org/plugins/custom-taxonomy-columnsAutomatically adds custom taxonomy columns to admin list tables.
Is Custom Taxonomy Columns Safe to Use in 2026?
Generally Safe
Score 85/100Custom Taxonomy Columns has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The security posture of the custom-taxonomy-columns plugin v1.0 appears to be strong based on the static analysis and vulnerability history provided. The absence of any identified dangerous functions, SQL queries not using prepared statements, file operations, external HTTP requests, and a lack of identified critical or high severity taint flows are all positive indicators. The plugin also demonstrates good practices by having no identified shortcodes or cron events, and an attack surface that is entirely protected by authentication checks.
However, there are a few areas that warrant attention. The presence of two total output operations with only 50% properly escaped is a potential concern, as unescaped output can lead to cross-site scripting (XSS) vulnerabilities. Furthermore, the complete lack of nonce checks and capability checks, while not explicitly tied to an identified vulnerability in this analysis, represents a missed opportunity for robust security implementation, especially if the plugin were to evolve and introduce new entry points or functionalities.
The plugin's vulnerability history is excellent, with zero known CVEs. This suggests a history of secure development and maintenance. In conclusion, the plugin is likely secure for its current version and functionality, but the unescaped output and the complete absence of nonce and capability checks represent minor weaknesses that could be addressed to further harden its security.
Key Concerns
- Unescaped output found
- No nonce checks
- No capability checks
Custom Taxonomy Columns Security Vulnerabilities
Custom Taxonomy Columns Code Analysis
Output Escaping
Custom Taxonomy Columns Attack Surface
WordPress Hooks 1
Maintenance & Trust
Custom Taxonomy Columns Maintenance & Trust
Maintenance Signals
Community Trust
Custom Taxonomy Columns Alternatives
WP Better Permalinks
wp-better-permalinks
Set custom friendly permalinks structure: Custom Post Type > Taxonomy > Post and Custom Post Type > Taxonomy instead of default WordPress structure.
Term Taxonomy Converter
term-taxonomy-converter
Copy or convert terms between taxonomies.
Term Menu Order
term-menu-order
Creates a 'menu_order' column to specify term order, allowing theme and plugin developers to sort term by menu order.
Advanced Custom Post Search
advanced-custom-post-search
A useful plugin for creating search forms & results pages for custom post types & taxonomies.
Custom post types for WordPress – ACPT Lite
acpt-lite
Create and manage custom post types and taxonomies in seconds. Use the meta fields builder to create complex websites with just a few clicks.
Custom Taxonomy Columns Developer Profile
2 plugins · 70 total installs
How We Detect Custom Taxonomy Columns
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
{$post_type} {$tax->name}