Daknetcorp Auto Tag Category Security & Risk Analysis

wordpress.org/plugins/daknetcorp-auto-tag-category

Daknetcorp-auto-tag-category allows you auto tag/category you post by target keywords in the post's content.

10 active installs v1.1 PHP + WP 3.0.1+ Updated Jun 26, 2020
auto-categoryauto-tagcategoriesfiltertag
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Daknetcorp Auto Tag Category Safe to Use in 2026?

Generally Safe

Score 85/100

Daknetcorp Auto Tag Category has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "daknetcorp-auto-tag-category" v1.1 plugin exhibits several significant security concerns, primarily stemming from a large, unprotected attack surface. All five identified AJAX handlers lack authentication checks, meaning any authenticated WordPress user could potentially trigger these actions, posing a risk of unauthorized operations or information disclosure. While there are no recorded vulnerabilities or dangerous functions, the high percentage of unsanitized output (96%) and the presence of unsanitized paths in taint analysis are worrying. This indicates a strong likelihood of cross-site scripting (XSS) vulnerabilities, as user-supplied data could be directly reflected in the output without proper sanitization.

The plugin's vulnerability history is clean, which is a positive indicator. However, this does not negate the risks identified in the static analysis. The absence of nonce checks and capability checks on the AJAX handlers further exacerbates the security posture, as these are fundamental WordPress security mechanisms to prevent CSRF attacks and ensure proper authorization. While the SQL queries are largely prepared, the critical gaps in input sanitization and output escaping present a more immediate and severe threat than the lack of known CVEs might suggest. The overall security is weak due to the easily exploitable attack surface and poor sanitization practices.

Key Concerns

  • All AJAX handlers lack authentication checks
  • High percentage of unescaped output
  • Unsanitized paths in taint analysis
  • No nonce checks on AJAX handlers
  • No capability checks on AJAX handlers
Vulnerabilities
None known

Daknetcorp Auto Tag Category Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Daknetcorp Auto Tag Category Release Timeline

v1.1Current
v1.0
Code Analysis
Analyzed Mar 16, 2026

Daknetcorp Auto Tag Category Code Analysis

Dangerous Functions
0
Raw SQL Queries
9
16 prepared
Unescaped Output
44
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

64% prepared25 total queries

Output Escaping

4% escaped46 total outputs
Data Flows · Security
4 unsanitized

Data Flow Analysis

4 flows4 with unsanitized paths
datc_tag_category (daknetcorp-auto-tag-category-admin.php:383)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
5 unprotected

Daknetcorp Auto Tag Category Attack Surface

Entry Points5
Unprotected5

AJAX Handlers 5

authwp_ajax_datc_default_settingdaknetcorp-auto-tag-category-admin.php:909
authwp_ajax_datc_add_itemdaknetcorp-auto-tag-category-admin.php:958
authwp_ajax_datc_edit_itemdaknetcorp-auto-tag-category-admin.php:994
authwp_ajax_datc_delete_itemdaknetcorp-auto-tag-category-admin.php:1007
authwp_ajax_datc_filter_alldaknetcorp-auto-tag-category-admin.php:1018
WordPress Hooks 8
actionadmin_menudaknetcorp-auto-tag-category-admin.php:7
actioncategory-tab-daknetcorpdaknetcorp-auto-tag-category-admin.php:382
actiontag-category-listdaknetcorp-auto-tag-category-admin.php:423
actiontag-categorydaknetcorp-auto-tag-category-admin.php:535
actioncategory-tab-daknetcorpdaknetcorp-auto-tag-category-admin.php:638
actionadmin_initdaknetcorp-auto-tag-category-admin.php:896
filtercron_schedulesdaknetcorp-auto-tag-category-admin.php:1420
actiondatc_cronjob_fillter_hookdaknetcorp-auto-tag-category-admin.php:1421

Scheduled Events 1

datc_cronjob_fillter_hook
Maintenance & Trust

Daknetcorp Auto Tag Category Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedJun 26, 2020
PHP min version
Downloads4K

Community Trust

Rating84/100
Number of ratings6
Active installs10
Developer Profile

Daknetcorp Auto Tag Category Developer Profile

truongthanhtungitvn

2 plugins · 30 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Daknetcorp Auto Tag Category

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/daknetcorp-auto-tag-category/css/main.css/wp-content/plugins/daknetcorp-auto-tag-category/css/jquery.dataTables.min.css/wp-content/plugins/daknetcorp-auto-tag-category/js/auto_tag_category.js/wp-content/plugins/daknetcorp-auto-tag-category/js/datatable.min.js/wp-content/plugins/daknetcorp-auto-tag-category/js/dialog.js/wp-content/plugins/daknetcorp-auto-tag-category/js/morphing-button/classie.js/wp-content/plugins/daknetcorp-auto-tag-category/js/morphing-button/morphing-button.js
Script Paths
/wp-content/plugins/daknetcorp-auto-tag-category/js/auto_tag_category.js/wp-content/plugins/daknetcorp-auto-tag-category/js/datatable.min.js/wp-content/plugins/daknetcorp-auto-tag-category/js/dialog.js/wp-content/plugins/daknetcorp-auto-tag-category/js/morphing-button/classie.js/wp-content/plugins/daknetcorp-auto-tag-category/js/morphing-button/morphing-button.js
Version Parameters
daknetcorp-auto-tag-category/css/main.css?ver=daknetcorp-auto-tag-category/css/jquery.dataTables.min.css?ver=daknetcorp-auto-tag-category/js/auto_tag_category.js?ver=daknetcorp-auto-tag-category/js/datatable.min.js?ver=daknetcorp-auto-tag-category/js/dialog.js?ver=daknetcorp-auto-tag-category/js/morphing-button/classie.js?ver=daknetcorp-auto-tag-category/js/morphing-button/morphing-button.js?ver=

HTML / DOM Fingerprints

CSS Classes
morph-buttonclr
HTML Comments
<!-- POPUP INSERT FIELD --><!-- SHOW MESSAGE PROCESS -->
Data Attributes
id="daknetcorp_base_url"id="dialog-confirm"id="res_filter"
JS Globals
UIMorphingButtonDAKNETCORP_FILTERED_POSTDAKNETCORP_FILTERED_TAGDAKNETCORP_AUTO_TAG_CATEGORY_SETTING
FAQ

Frequently Asked Questions about Daknetcorp Auto Tag Category