
Taxonomies Sortable Security & Risk Analysis
wordpress.org/plugins/taxonomies-sortableAllows to sort taxonomy terms associated to objects.
Is Taxonomies Sortable Safe to Use in 2026?
Generally Safe
Score 100/100Taxonomies Sortable has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "taxonomies-sortable" plugin v1.0.1 exhibits a strong security posture based on the provided static analysis. The absence of identified dangerous functions, SQL queries executed without prepared statements, and all output being properly escaped are significant strengths. Furthermore, the lack of file operations, external HTTP requests, and the absence of known vulnerabilities or CVEs in its history suggest a well-developed and secure codebase. The plugin also demonstrates good security practices by not exposing a large attack surface through AJAX handlers, REST API routes, shortcodes, or cron events that lack authentication or permission checks.
The primary concern stems from the complete absence of nonce checks and capability checks. While the static analysis shows zero entry points that are unprotected, the lack of these fundamental security mechanisms on *any* potential interaction points is a weakness. If future updates were to introduce even a single unprotected AJAX handler or REST API route, the absence of these checks would immediately expose the plugin to vulnerabilities like Cross-Site Request Forgery (CSRF) or unauthorized privilege escalation.
In conclusion, the plugin currently appears very secure with no immediate exploitable vulnerabilities identified in its code or history. However, the omission of nonce and capability checks represents a significant missed opportunity for robust security and could become a critical flaw if the plugin's attack surface expands or if its functionality is extended in future versions without proper authentication and authorization being implemented.
Key Concerns
- No nonce checks implemented
- No capability checks implemented
Taxonomies Sortable Security Vulnerabilities
Taxonomies Sortable Code Analysis
Output Escaping
Taxonomies Sortable Attack Surface
WordPress Hooks 6
Maintenance & Trust
Taxonomies Sortable Maintenance & Trust
Maintenance Signals
Community Trust
Taxonomies Sortable Alternatives
Radio Buttons for Taxonomies
radio-buttons-for-taxonomies
Replace the default taxonomy boxes with a custom metabox that uses radio buttons... effectively limiting each post to a single term in that taxonomy.
Term Management Tools
term-management-tools
Allows you to merge terms, move terms between taxonomies, and set term parents, individually or in bulk.
Admin Taxonomy Filter
admin-taxonomy-filter
Filter posts or custom post types in the admin area by custom taxonomies.
Post Category Filter (WP Admin)
admin-category-filter
Quickly search and filter categories and taxonomies inside the WordPress admin.
Taxonomy Tags to Checkboxes
runthings-taxonomy-tags-to-checkboxes
Convert taxonomy tags to checkboxes in the WordPress admin area.
Taxonomies Sortable Developer Profile
5 plugins · 1K total installs
How We Detect Taxonomies Sortable
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/taxonomies-sortable/assets/css/admin.css/wp-content/plugins/taxonomies-sortable/assets/js/admin.js/wp-content/plugins/taxonomies-sortable/assets/js/admin.jstaxonomies-sortable/assets/js/admin.js?ver=1.0.1HTML / DOM Fingerprints
taxonomies-sortabledata-prefixdata-plugin_urldata-debugtaxonomies_sortable_plugintaxonomies_sortable_plugin_i18n