
More Taxonomies Security & Risk Analysis
wordpress.org/plugins/more-taxonomiesAdd more taxonomies to your WordPress installation.
Is More Taxonomies Safe to Use in 2026?
Generally Safe
Score 85/100More Taxonomies has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'more-taxonomies' v1.1 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points significantly reduces the plugin's attack surface. The code also demonstrates good practices regarding SQL queries, with 100% of them utilizing prepared statements, and a lack of dangerous functions. However, a significant concern arises from the low percentage of properly escaped output (31%). This indicates a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not handled securely before being displayed. The single nonce check and zero capability checks suggest that while some entry points might be protected, there's room for improvement in robust access control and session validation across all potential interaction points. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive indicator of its development and maintenance. This suggests that previous versions have not had publicly disclosed, critical security flaws. In conclusion, while the plugin has a low attack surface and good SQL practices, the inadequate output escaping is the primary security weakness that warrants attention.
Key Concerns
- Low percentage of properly escaped output
- Only one nonce check found
- No capability checks found
More Taxonomies Security Vulnerabilities
More Taxonomies Code Analysis
Output Escaping
Data Flow Analysis
More Taxonomies Attack Surface
WordPress Hooks 8
Maintenance & Trust
More Taxonomies Maintenance & Trust
Maintenance Signals
Community Trust
More Taxonomies Alternatives
More Types
more-types
Adds any number of extra Post types, besides Post and Page, for the WordPess Admin. Also allows for special editing rights for specific User roles for …
KontrolWP – Kontrol WordPress Developer Kit
kontrolwp
KontrolWP is an advanced Wordpress plugin for developers. Easily create CMS sites using advanced custom fields, custom post types, SEO and more.
Meta Box
meta-box
Meta Box plugin is a powerful, professional developer toolkit to create custom meta boxes and custom fields for your custom post types in WordPress.
White Label CMS
white-label-cms
Customise dashboard panels and branding, hide menus plus lots more.
Pods – Custom Content Types and Fields
pods
Pods is a framework for creating, managing, and deploying customized content types and fields for any project.
More Taxonomies Developer Profile
2 plugins · 1K total installs
How We Detect More Taxonomies
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/more-taxonomies/more-taxonomies-object.php/wp-content/plugins/more-taxonomies/more-taxonomies-settings-object.php