
Tag Groups is the Advanced Way to Display Your Taxonomy Terms Security & Risk Analysis
wordpress.org/plugins/tag-groupsTag Groups allows you to organize your WordPress taxonomy terms and show them in clouds, tabs, accordions, tables, lists and much more.
Is Tag Groups is the Advanced Way to Display Your Taxonomy Terms Safe to Use in 2026?
Generally Safe
Score 99/100Tag Groups is the Advanced Way to Display Your Taxonomy Terms has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "tag-groups" plugin version 2.1.1 exhibits a mixed security posture. While it demonstrates good practices like a high percentage of prepared SQL statements and a substantial number of nonce and capability checks, significant concerns arise from its attack surface and output escaping. The presence of 7 unprotected entry points across AJAX handlers and REST API routes, coupled with 3 flows with unsanitized paths and a high-severity taint flow, presents a considerable risk of unauthorized access and potential data manipulation or execution. The plugin's vulnerability history, with 2 known medium-severity CVEs related to Cross-Site Scripting and Missing Authorization, further underscores the need for caution. While the absence of unpatched vulnerabilities is positive, the recurring nature of these vulnerability types suggests underlying architectural weaknesses that require ongoing vigilance. Overall, the plugin has strengths in its core security implementations but is weakened by critical gaps in input sanitization and authorization for its exposed functionalities.
Key Concerns
- Unprotected AJAX handlers
- Unprotected REST API routes
- Flows with unsanitized paths
- High severity taint flow
- Low output escaping percentage
- Medium severity CVEs in history
Tag Groups is the Advanced Way to Display Your Taxonomy Terms Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Tag Groups is the Advanced Way to Display Your Taxonomy Terms <= 2.0.4 - Reflected Cross-Site Scripting
WordPress Tag Cloud Plugin – Tag Groups <= 2.0.3 - Missing Authorization to Information Exposure
Tag Groups is the Advanced Way to Display Your Taxonomy Terms Release Timeline
Tag Groups is the Advanced Way to Display Your Taxonomy Terms Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Tag Groups is the Advanced Way to Display Your Taxonomy Terms Attack Surface
AJAX Handlers 4
REST API Routes 5
Shortcodes 6
WordPress Hooks 58
Maintenance & Trust
Tag Groups is the Advanced Way to Display Your Taxonomy Terms Maintenance & Trust
Maintenance Signals
Community Trust
Tag Groups is the Advanced Way to Display Your Taxonomy Terms Alternatives
Tags Page
tags-page
Adds a table listing all tags registered on your website.
Circle Tag Cloud
circle-tag-cloud
Displays taxonomy terms in a beautiful, highly packed circle (or rectangle) layout with customizable color palettes and motion effects.
Tag, Category, and Taxonomy Manager – Autotagger Automatically Add Terms
simple-tags
Tags, Categories and WordPress terms are easy with TaxoPress. Add a Tag or Category to Pages, manage your WooCommerce Categories and Tags and more.
Accordions
accordions
Create sleek accordions, tabs, FAQs, and image accordions with a React builder featuring advanced styling, animations, OpenAI support, and customizati …
Meks Flexible Shortcodes
meks-flexible-shortcodes
Add some cool elements to your post/page content with flexible shortcodes.
Tag Groups is the Advanced Way to Display Your Taxonomy Terms Developer Profile
2 plugins · 53K total installs
How We Detect Tag Groups is the Advanced Way to Display Your Taxonomy Terms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tag-groups/assets/js/frontend.js/wp-content/plugins/tag-groups/assets/js/frontend.min.js/wp-content/plugins/tag-groups/assets/css/style.css/wp-content/plugins/tag-groups/assets/css/frontend.css/wp-content/plugins/tag-groups/assets/js/frontend.js/wp-content/plugins/tag-groups/assets/js/frontend.min.jstag-groups/assets/js/frontend.js?ver=tag-groups/assets/css/style.css?ver=tag-groups/assets/css/frontend.css?ver=HTML / DOM Fingerprints
tag-groups-cloudtag-groups-accordiontag-groups-tabstag-groups-alphabet-tabstag-groups-listtag-groups-table<!-- wp:chatty-mango/tag-groups-cloud-tabs<!-- wp:chatty-mango/tag-groups-cloud-accordion<!-- wp:chatty-mango/tag-groups-alphabet-tabsdata-tag-groups-iddata-tag-groups-shortcodedata-tag-groups-optionstag_groups_frontend_params/wp-json/tag-groups/v1/data[tag_groups_cloud[tag_groups_accordion[tag_groups_alphabet_tabs[tag_groups_tabs