
Tag Selector Security & Risk Analysis
wordpress.org/plugins/tag-selectorTag Selector allows you to select tags for your post/page much the same way you select categories.
Is Tag Selector Safe to Use in 2026?
Generally Safe
Score 85/100Tag Selector has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "tag-selector" v1.0.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any detected attack surface entry points like AJAX handlers, REST API routes, shortcodes, or cron events is a significant positive. Furthermore, the code shows good practices in preventing SQL injection with 100% prepared statement usage and the presence of nonce and capability checks, indicating an awareness of WordPress security mechanisms.
However, a notable concern arises from the low rate of properly escaped output (14%). This suggests a potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not adequately sanitized before being displayed. While no critical or high severity taint flows were identified, this lack of thorough output escaping is a recurring issue in many plugins and warrants attention. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive indicator of its current security status and development quality, but it's crucial to remember that a clean history does not guarantee future immunity.
In conclusion, "tag-selector" v1.0.0 appears to be a secure plugin by default due to its limited attack surface and good handling of database queries. The primary weakness lies in output escaping. While the absence of past vulnerabilities is reassuring, the identified output escaping deficiency represents a concrete risk that should be addressed to achieve a more robust security profile.
Key Concerns
- Low percentage of properly escaped output
Tag Selector Security Vulnerabilities
Tag Selector Code Analysis
Output Escaping
Tag Selector Attack Surface
WordPress Hooks 2
Maintenance & Trust
Tag Selector Maintenance & Trust
Maintenance Signals
Community Trust
Tag Selector Alternatives
Archive Title
archive-title
Provides options to control an archive page title.
Require Post Category
require-post-category
Require users to choose a post category before updating or publishing a post.
Require & Limit Categories, Tags, Featured Image and taxonomies
require-taxonomy-image-category-tag
[ ✅ 𝐒𝐄𝐂𝐔𝐑𝐄 𝐏𝐋𝐔𝐆𝐈𝐍𝐒 b𝓎 𝒫𝓊𝓋𝑜𝓍] Force dashboard users to select chosen fields during publishing
Kntnt's Any Term for Beaver Builder Page Builder
kntnts-bb-any-term
WordPress plugin that adds special purpose term to every taxonomy (including categories and tags) that makes taxonomy filters in post modules of Beave …
Post Category Advanced
post-category-advanced
Create relationships between post categories and tags, and more.
Tag Selector Developer Profile
1 plugin · 100 total installs
How We Detect Tag Selector
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
categorydivcategory-tabstabs-panelcategorychecklistselectitdata-wp-lists="list:tag"