
Date-based Taxonomy Archives Security & Risk Analysis
wordpress.org/plugins/date-based-taxonomy-archivesAdd support for date-based taxonomy archives. Also includes a function for outputting archive links.
Is Date-based Taxonomy Archives Safe to Use in 2026?
Generally Safe
Score 85/100Date-based Taxonomy Archives has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'date-based-taxonomy-archives' plugin v0.3.1 exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code signals indicate responsible development practices, with all SQL queries utilizing prepared statements and a high percentage of output being properly escaped. The lack of file operations and external HTTP requests further reduces potential attack vectors. Taint analysis also revealed no critical or high severity flows, suggesting that user-supplied data is being handled securely. The plugin's vulnerability history is also clean, with no known CVEs ever recorded, which implies a consistent track record of secure development and maintenance. However, the complete absence of nonce checks and capability checks across the entire plugin is a notable concern. While the current attack surface is zero, this omission represents a potential weakness if new entry points are introduced in future versions or if an existing, but not detected, entry point exists. This lack of explicit authorization checks on any potential interaction points, however minimal, could be exploited if new vulnerabilities are discovered or introduced.
In conclusion, 'date-based-taxonomy-archives' v0.3.1 appears to be a very secure plugin, with excellent practices in place for SQL, output, and taint handling, and no historical vulnerabilities. The primary area for improvement lies in implementing nonce and capability checks for any future or existing, albeit undetected, entry points to further harden its security. The current risk is low due to the limited attack surface, but this could change with future updates if best practices for input validation and authorization are not maintained.
Key Concerns
- Missing nonce checks
- Missing capability checks
- Unescaped output (1 of 5)
Date-based Taxonomy Archives Security Vulnerabilities
Date-based Taxonomy Archives Code Analysis
SQL Query Safety
Output Escaping
Date-based Taxonomy Archives Attack Surface
WordPress Hooks 5
Maintenance & Trust
Date-based Taxonomy Archives Maintenance & Trust
Maintenance Signals
Community Trust
Date-based Taxonomy Archives Alternatives
scifi Facets
scifi-facets
scifi Facets is simple facet widget which allow adding a widget
HTML Import 2
import-html-pages
Imports well-formed HTML files into WordPress pages.
Bangla Date Display
bangla-date-display
Displays Bangla, Gregorian & Hijri date and Archive Calendar in bangla language via widgets and shortcodes!
TagPages
tagpages
Adds post-tags functionality for pages.
Simple Taxonomy Refreshed
simple-taxonomy-refreshed
This plugin provides a no-code facility to manage your taxonomies - either by defining your own or by adding additional function to existing ones.
Date-based Taxonomy Archives Developer Profile
12 plugins · 48K total installs
How We Detect Date-based Taxonomy Archives
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/date-based-taxonomy-archives/css/date-based-taxonomy-archives.cssHTML / DOM Fingerprints
dbta-archives[date_based_taxonomy_archives]