
Terms Order Security & Risk Analysis
wordpress.org/plugins/terms-orderThis Plugin is useful to order or reorder default blog category and custom post type taxonomy and terms, plugin is ready to use no configuration requi …
Is Terms Order Safe to Use in 2026?
Generally Safe
Score 85/100Terms Order has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "terms-order" plugin version 1.0.2 demonstrates a generally good security posture based on the provided static analysis. The absence of dangerous functions, SQL injection vulnerabilities (all queries use prepared statements), and file operations is highly positive. Furthermore, the plugin correctly utilizes nonce checks for its two AJAX entry points. The high percentage of properly escaped output (91%) is also a strong indicator of secure coding practices. The lack of any recorded vulnerabilities in its history suggests a well-maintained and secure plugin.
However, there is one notable area for improvement: the plugin lacks capability checks on its AJAX handlers. While nonce checks help prevent cross-site request forgery, they do not restrict access to authenticated users with specific roles or permissions. This means that any authenticated user, regardless of their privileges, could potentially interact with these AJAX endpoints, which might be undesirable depending on the plugin's functionality. The analysis also shows 0 unprotected entry points, which is excellent, and no critical or high severity taint flows were identified. The plugin's history being clean of CVEs further reinforces its current security standing.
In conclusion, "terms-order" v1.0.2 is a securely developed plugin with robust defenses against common web vulnerabilities. The primary weakness lies in the absence of capability checks for its AJAX handlers, representing a minor security concern that could be addressed to further harden the plugin. The strengths, such as prepared SQL statements and good output escaping, significantly outweigh this single point of improvement.
Key Concerns
- Missing capability checks on AJAX handlers
Terms Order Security Vulnerabilities
Terms Order Release Timeline
Terms Order Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Terms Order Attack Surface
AJAX Handlers 2
WordPress Hooks 16
Maintenance & Trust
Terms Order Maintenance & Trust
Maintenance Signals
Community Trust
Terms Order Alternatives
Terms Order WP – Categories And Taxonomies Order Plugin
terms-order-wp
This Plugin is useful to order or reorder default blog category and custom post type taxonomy and terms, plugin is ready to use no configuration requi …
Category Order and Taxonomy Terms Order
taxonomy-terms-order
Drag-and-drop ordering for Categories & any taxonomy (hierarchically) using a Drag and Drop Sortable JavaScript capability.
Simple Custom Post Order
simple-custom-post-order
Easily reorder posts, pages, custom post types, and taxonomies with intuitive drag-and-drop sorting in the WordPress admin.
Rearrange Products for WooCommerce
rearrange-woocommerce-products
Boost WooCommerce sales with the Rearrange Products for WooCommerce plugin. Easily reorder products with a simple drag-and-drop tool!
Custom Category Post Order
custom-post-order-category
Order your post by category or custom post type by drag & drop interface.
Terms Order Developer Profile
1 plugin · 100 total installs
How We Detect Terms Order
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/terms-order/assets/css/terms-order-admin.css/wp-content/plugins/terms-order/assets/js/terms-order-admin.js/wp-content/plugins/terms-order/assets/js/terms-order-admin.jsterms-order-admin.css?ver=terms-order-admin.js?ver=