
Duplicate Taxonomy Term Security & Risk Analysis
wordpress.org/plugins/duplicate-termCopy term of any type with a click!
Is Duplicate Taxonomy Term Safe to Use in 2026?
Generally Safe
Score 85/100Duplicate Taxonomy Term has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "duplicate-term" v1.0.2 demonstrates a generally strong security posture based on the provided static analysis. The absence of any attack surface points (AJAX, REST API, shortcodes, cron events) significantly reduces the potential for external exploitation. Furthermore, the code analysis shows responsible use of prepared statements for all SQL queries, a critical practice for preventing SQL injection vulnerabilities. The presence of a nonce check is also a positive indicator of security awareness. However, the 50% rate of unescaped output is a concern, as it could potentially lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is directly outputted without proper sanitization. The plugin's vulnerability history is clean, with no known CVEs, which suggests a history of secure development or a lack of significant past security issues being discovered. Overall, while the plugin benefits from a minimal attack surface and good data handling practices for SQL, the unescaped output represents a clear weakness that should be addressed to achieve a more robust security profile.
Key Concerns
- Half of output is not properly escaped
Duplicate Taxonomy Term Security Vulnerabilities
Duplicate Taxonomy Term Code Analysis
SQL Query Safety
Output Escaping
Duplicate Taxonomy Term Attack Surface
WordPress Hooks 3
Maintenance & Trust
Duplicate Taxonomy Term Maintenance & Trust
Maintenance Signals
Community Trust
Duplicate Taxonomy Term Alternatives
Duplicate Taxonomy Term Developer Profile
3 plugins · 3K total installs
How We Detect Duplicate Taxonomy Term
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
notice-success