
Set Unset Bulk Post Categories Security & Risk Analysis
wordpress.org/plugins/set-unset-bulk-post-categoriesAllows user to set unset the categories of all the posts in a bulk without editing the posts itself.
Is Set Unset Bulk Post Categories Safe to Use in 2026?
Generally Safe
Score 92/100Set Unset Bulk Post Categories has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'set-unset-bulk-post-categories' v1.3 exhibits a generally good security posture with several positive indicators. The absence of any recorded CVEs and a clean vulnerability history suggest a history of stable and secure development. Code analysis reveals a robust use of prepared statements for SQL queries and a strong emphasis on capability checks, indicating an effort to protect sensitive operations. Nonce checks are also present, further strengthening security against common web attacks.
However, there are minor concerns that warrant attention. While the majority of output is properly escaped, a significant portion (27%) is not, presenting a potential risk for cross-site scripting (XSS) vulnerabilities if user-supplied data reaches these unescaped outputs. The presence of one unsanitized taint flow, although not classified as critical or high severity, still represents a potential pathway for malicious input to be processed without adequate cleaning. The plugin also makes external HTTP requests, which, while not inherently insecure, can be a vector for attacks if not handled with extreme care and validation.
Overall, the plugin appears to be developed with security in mind, evidenced by its clean vulnerability record and proactive use of security features. The primary area for improvement lies in ensuring all output is properly escaped and thoroughly investigating the single unsanitized taint flow to mitigate any potential risks. The lack of external vulnerabilities and the presence of most security best practices point towards a low to moderate risk profile, with the potential for further reduction through diligent code review.
Key Concerns
- Unescaped output detected
- Unsanitized taint flow detected
- External HTTP requests made
Set Unset Bulk Post Categories Security Vulnerabilities
Set Unset Bulk Post Categories Release Timeline
Set Unset Bulk Post Categories Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Set Unset Bulk Post Categories Attack Surface
WordPress Hooks 16
Maintenance & Trust
Set Unset Bulk Post Categories Maintenance & Trust
Maintenance Signals
Community Trust
Set Unset Bulk Post Categories Alternatives
Bulk remove posts from category
bulk-remove-posts-from-category
Now you can use default WordPress Bulk Editor not just to add Categories but also to remove categories from posts.
Bulk Post Category Creator
create-category-in-bulk
This easy-to-use plugin allows to create post categories in bulk and assign those categories to posts at the same time.
List all posts by Authors, nested Categories and Titles
list-all-posts-by-authors-nested-categories-and-titles
This plugin lists all posts by Author, nested Categories and Title, allowing to place the lists in any page.
Print Posts
print-posts
Adds a shortcode that displays posts based on what you add in for values.
List category posts
list-category-posts
Very customizable plugin to list posts by category (or tag, author and more) in a post, page or widget. Uses the [catlist] shortcode to select posts.
Set Unset Bulk Post Categories Developer Profile
1 plugin · 0 total installs
How We Detect Set Unset Bulk Post Categories
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/set-unset-bulk-post-categories/css/style.css/wp-content/plugins/set-unset-bulk-post-categories/css/jquery-ui.css/wp-content/plugins/set-unset-bulk-post-categories/js/v2plugin.js/wp-content/plugins/set-unset-bulk-post-categories/js/v2plugin.jsset-unset-bulk-post-categories/css/style.css?ver=set-unset-bulk-post-categories/css/jquery-ui.css?ver=set-unset-bulk-post-categories/js/v2plugin.js?ver=HTML / DOM Fingerprints
v2id="startdate"id="enddate"id="myForm"