
Post types / taxonomies intersections Security & Risk Analysis
wordpress.org/plugins/post-types-taxonomies-intersectionsAllow to create intersections between a post type and a taxonomy with url such as :
Is Post types / taxonomies intersections Safe to Use in 2026?
Generally Safe
Score 85/100Post types / taxonomies intersections has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "post-types-taxonomies-intersections" plugin v2.1 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any known CVEs and a complete lack of taint flows with unsanitized paths are very positive indicators. The plugin also demonstrates good practices regarding SQL queries, utilizing prepared statements exclusively, and a high percentage of properly escaped output. Furthermore, the lack of file operations and external HTTP requests reduces potential attack vectors.
However, there are a few areas that warrant attention. The presence of the `create_function` function is a significant concern, as it can be a source of remote code execution vulnerabilities if not handled with extreme care, although no specific exploit is identified here. Additionally, the complete absence of nonce checks and capability checks across all potential entry points, while the static analysis reports zero entry points, suggests either a very minimal plugin or a lack of explicit security controls for any future additions or interactions. While the vulnerability history is clean, this is often a reflection of prior versions or the specific analysis performed, and the `create_function` remains a risk.
In conclusion, the plugin is currently in a relatively safe state with no demonstrated vulnerabilities or critical code flaws. The primary weakness lies in the use of `create_function` and the lack of explicit security checks (nonces and capabilities) which could become a problem if the plugin's functionality expands or if future analyses reveal exploitable paths. The plugin developer should consider refactoring the code to avoid `create_function` and implement robust security checks.
Key Concerns
- Use of create_function
- Missing nonce checks
- Missing capability checks
Post types / taxonomies intersections Security Vulnerabilities
Post types / taxonomies intersections Code Analysis
Dangerous Functions Found
Output Escaping
Post types / taxonomies intersections Attack Surface
WordPress Hooks 7
Maintenance & Trust
Post types / taxonomies intersections Maintenance & Trust
Maintenance Signals
Community Trust
Post types / taxonomies intersections Alternatives
Post Types Unlimited
post-types-unlimited
Create unlimited custom post types and custom taxonomies.
Simple CPT
simple-cpt
Simple CPT provides an easy to use interface for registering and managing custom post types and custom taxonomies.
Custom post types, Custom Fields & more
custom-post-types
Custom Post Types, Custom Fields, Custom Taxonomies, Custom Templates, Custom Admin Pages, Custom Admin Notices. Directly from the WP dashboard.
Custom Post Type Editor
cpt-editor
Customize the text labels, menu names or description for any registered custom post type using a simple Dashboard user interface.
Post Type Converter
post-type-converter
Allows you to convert the post type of objects while in the edit screen.
Post types / taxonomies intersections Developer Profile
4 plugins · 1K total installs
How We Detect Post types / taxonomies intersections
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-types-taxonomies-intersections/css/style.css/wp-content/plugins/post-types-taxonomies-intersections/js/client.js/wp-content/plugins/post-types-taxonomies-intersections/js/client.jspost-types-taxonomies-intersections/css/style.css?ver=post-types-taxonomies-intersections/js/client.js?ver=HTML / DOM Fingerprints
PTTI_Client