
Template Base On Category Security & Risk Analysis
wordpress.org/plugins/template-base-on-categoryChange the template for category and post in category base on your category ID
Is Template Base On Category Safe to Use in 2026?
Generally Safe
Score 85/100Template Base On Category has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "template-base-on-category" v1.0 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by avoiding dangerous functions, performing all SQL queries with prepared statements, and not making external HTTP requests or file operations. It also has a clean vulnerability history with no recorded CVEs. However, significant concerns arise from the static analysis. A notable weakness is that 100% of output is not properly escaped, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the taint analysis reveals two flows with unsanitized paths, suggesting potential for unexpected behavior or code execution if these paths are triggered, though they are not classified as critical or high severity. The complete absence of nonce checks and capability checks across all potential entry points (though currently zero) is a foundational security weakness that could be exploited if any entry points are added in future versions or if the current zero-entry-point count is a temporary state.
While the plugin's current attack surface is zero, making it appear secure in its current state, the underlying code quality raises red flags. The lack of output escaping and the presence of unsanitized taint flows, coupled with a complete absence of authentication/authorization mechanisms for potential entry points, create a latent risk. If the plugin's functionality or entry points evolve, these weaknesses could become critical vulnerabilities. The plugin's clean history is a positive indicator of past development, but it doesn't negate the present risks identified in the code analysis.
Key Concerns
- Unescaped output
- Flows with unsanitized paths
- Missing nonce checks
- Missing capability checks
Template Base On Category Security Vulnerabilities
Template Base On Category Release Timeline
Template Base On Category Code Analysis
Output Escaping
Data Flow Analysis
Template Base On Category Attack Surface
WordPress Hooks 6
Maintenance & Trust
Template Base On Category Maintenance & Trust
Maintenance Signals
Community Trust
Template Base On Category Alternatives
Custom Category Templates
custom-category-templates
Define custom templates for category views.
Custom Category Template
custom-category-template
This plugin lets you select a specific template for a category, just like pages
Product category and page relation
product-category-page-relation
This plugin is usefull for setup a woocommerce category page custom template .
REAL Archive Pages List
real-archive-and-category
Most of themes have original one category templates as part of themes. With REAL Archive Plugin you can create as many category templates as you like …
Category Order and Taxonomy Terms Order
taxonomy-terms-order
Drag-and-drop ordering for Categories & any taxonomy (hierarchically) using a Drag and Drop Sortable JavaScript capability.
Template Base On Category Developer Profile
6 plugins · 90 total installs
How We Detect Template Base On Category
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
form-fieldname="cat_theme"