
Taxonomy Switcher Security & Risk Analysis
wordpress.org/plugins/taxonomy-switcherSwitch the taxonomy for all terms or only child terms of a specified parent term.
Is Taxonomy Switcher Safe to Use in 2026?
Generally Safe
Score 100/100Taxonomy Switcher has a strong security track record. Known vulnerabilities have been patched promptly.
The "taxonomy-switcher" plugin version 1.1.0 exhibits a generally good security posture based on the static analysis. The plugin demonstrates adherence to best practices by implementing nonce and capability checks for its single AJAX entry point. The high percentage of prepared statements for SQL queries and properly escaped output further contribute to a strong defense against common web vulnerabilities. There are no identified critical or high severity taint flows, and no dangerous functions were detected, indicating a conscientious approach to secure coding. The absence of file operations and external HTTP requests also minimizes potential attack vectors.
However, a single medium severity Cross-Site Scripting vulnerability recorded in 2015, though historical and currently unpatched, warrants a degree of caution. While the static analysis of the current version does not reveal obvious signs of this specific vulnerability, it highlights that past security issues have existed. The presence of one taint flow with an unsanitized path, despite not being classified as critical or high, is a minor concern that should ideally be addressed to eliminate any potential for input manipulation. Overall, the plugin appears to be well-developed with a focus on security, but the past XSS vulnerability and the single unsanitized path flow suggest that ongoing vigilance and code review are prudent.
Key Concerns
- Medium severity XSS vulnerability in history (unpatched)
- Flow with unsanitized path
Taxonomy Switcher Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Taxonomy Switcher <= 1.0.3 - Reflected Cross-Site Scripting
Taxonomy Switcher Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Taxonomy Switcher Attack Surface
AJAX Handlers 1
WordPress Hooks 3
Maintenance & Trust
Taxonomy Switcher Maintenance & Trust
Maintenance Signals
Community Trust
Taxonomy Switcher Alternatives
Taxonomy Images
taxonomy-images
Associate images from your media library to categories, tags and custom taxonomies.
Term Management Tools
term-management-tools
Allows you to merge terms, move terms between taxonomies, and set term parents, individually or in bulk.
Ajax Load More for Terms
ajax-load-more-for-terms
Ajax Load More extension that adds compatibility for infinite scrolling WordPress terms using term_query.
Custom Taxonomy Templates
custom-taxonomy-templates
Define custom templates for taxonomy archive views.
Serious Duplicated Terms
serious-duplicated-terms
Merge duplicated tags and categories to simplify and better organize the content and navigation of your site
Taxonomy Switcher Developer Profile
9 plugins · 1.0M total installs
How We Detect Taxonomy Switcher
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/taxonomy-switcher/js/taxonomy-switcher.js/wp-content/plugins/taxonomy-switcher/js/taxonomy-switcher.jstaxonomy-switcher/js/taxonomy-switcher.js?ver=HTML / DOM Fingerprints
wds-taxonomy-switchertaxonomy-switcher-spinnertaxonomy-switcher-ajax-results-helptaxonomy-switcher-ajax-results-postsid="taxonomy-switcher-terms"id="taxonomy-switcher-parent"tsTaxData/wp-json/taxonomy-switcher/v1/settings