MSD PreSelected Category Security & Risk Analysis

wordpress.org/plugins/msd-pre-selected-cat

PreSelected Category is a helpful tool:

0 active installs v0.1 PHP + WP 4.4.0+ Updated Jan 27, 2019
assign-categorycategorydefault-category-selector
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is MSD PreSelected Category Safe to Use in 2026?

Generally Safe

Score 85/100

MSD PreSelected Category has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "msd-pre-selected-cat" plugin, in version 0.1, exhibits a seemingly strong security posture based on the provided static analysis. The absence of identified attack surface entry points like AJAX handlers, REST API routes, shortcodes, and cron events is a significant positive. Furthermore, the code's adherence to using prepared statements for all SQL queries and the lack of dangerous function usage are excellent security practices. The plugin also shows no history of known vulnerabilities, which generally indicates good past development and maintenance.

However, the analysis also highlights areas of concern that temper the otherwise positive outlook. A complete lack of nonce and capability checks across all potential entry points is a critical weakness. While the current static analysis reports zero entry points, this could change with future updates or if the plugin's functionality expands. The fact that 50% of observed output is not properly escaped presents a potential Cross-Site Scripting (XSS) risk, especially if any of the unescaped outputs are ever exposed to user input. The absence of taint analysis flows is also notable; while it suggests no overt issues were found, a lack of data to analyze might mean the analysis itself was limited or that the plugin's current functionality is too minimal to trigger such flows.

In conclusion, while "msd-pre-selected-cat" v0.1 benefits from a clean vulnerability history and good SQL practices, the lack of security checks (nonces and capabilities) and the presence of unescaped output represent significant latent risks. These issues could easily become exploitable if the plugin's attack surface grows or if the unescaped output becomes accessible to malicious input. The current state suggests a plugin with minimal functionality but with fundamental security oversights that need addressing.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Unescaped output detected
Vulnerabilities
None known

MSD PreSelected Category Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

MSD PreSelected Category Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

50% escaped2 total outputs
Attack Surface

MSD PreSelected Category Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadmin_menuadmin-pages.php:3
actionadmin_initadmin-pages.php:8
actionsave_postcore-function.php:2
Maintenance & Trust

MSD PreSelected Category Maintenance & Trust

Maintenance Signals

WordPress version tested5.0.25
Last updatedJan 27, 2019
PHP min version
Downloads5K

Community Trust

Rating100/100
Number of ratings3
Active installs0
Developer Profile

MSD PreSelected Category Developer Profile

Akhileshwar Dayal

2 plugins · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MSD PreSelected Category

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/msd-pre-selected-cat/css/custom.css/wp-content/plugins/msd-pre-selected-cat/js/custom.js
Script Paths
/wp-content/plugins/msd-pre-selected-cat/js/custom.js
Version Parameters
msd-pre-selected-cat/css/custom.css?ver=msd-pre-selected-cat/js/custom.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about MSD PreSelected Category