
Taxonomy Taxi Security & Risk Analysis
wordpress.org/plugins/taxonomy-taxiAutomatically display custom taxonomy information in wp-admin/edit.php
Is Taxonomy Taxi Safe to Use in 2026?
Generally Safe
Score 85/100Taxonomy Taxi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "taxonomy-taxi" v1.1.1 plugin exhibits a mixed security posture. On one hand, it demonstrates good practices by using prepared statements for all SQL queries and a high percentage of properly escaped output. There is also no history of known vulnerabilities (CVEs), suggesting a generally stable codebase. However, significant concerns arise from the identified attack surface. With one AJAX handler present and notably lacking authentication checks, this presents a direct entry point for unauthenticated attackers. The absence of nonce checks further exacerbates this risk, making it vulnerable to Cross-Site Request Forgery (CSRF) attacks targeting the AJAX functionality. The use of `create_function` is also a risky practice, though its impact is mitigated by the lack of taint analysis data indicating its actual exploitation.
While the lack of historical vulnerabilities is positive, it does not guarantee future security. The presence of an unprotected AJAX endpoint is a critical weakness that must be addressed. The overall risk is moderate due to the high severity of the unprotected entry point, despite the good practices observed in other areas. It is crucial to implement proper authentication and authorization for all AJAX handlers to mitigate the immediate threats.
Key Concerns
- AJAX handler without authentication
- Missing nonce checks on AJAX
- Use of dangerous function (create_function)
Taxonomy Taxi Security Vulnerabilities
Taxonomy Taxi Code Analysis
Dangerous Functions Found
Output Escaping
Taxonomy Taxi Attack Surface
AJAX Handlers 1
WordPress Hooks 5
Maintenance & Trust
Taxonomy Taxi Maintenance & Trust
Maintenance Signals
Community Trust
Taxonomy Taxi Alternatives
Category Order and Taxonomy Terms Order
taxonomy-terms-order
Drag-and-drop ordering for Categories & any taxonomy (hierarchically) using a Drag and Drop Sortable JavaScript capability.
Custom Taxonomy Order
custom-taxonomy-order-ne
Allows for the ordering of categories and custom taxonomy terms through a simple drag-and-drop interface
Taxonomy Images
taxonomy-images
Associate images from your media library to categories, tags and custom taxonomies.
Term Management Tools
term-management-tools
Allows you to merge terms, move terms between taxonomies, and set term parents, individually or in bulk.
WP Term Order
wp-term-order
Sort taxonomy terms, your way.
Taxonomy Taxi Developer Profile
5 plugins · 50 total installs
How We Detect Taxonomy Taxi
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/taxonomy-taxi/js/admin.js/wp-content/plugins/taxonomy-taxi/css/admin.css/wp-content/plugins/taxonomy-taxi/js/admin.jstaxonomy-taxi/js/admin.js?ver=taxonomy-taxi/css/admin.css?ver=HTML / DOM Fingerprints
taxonomy-taxi-notice