
WP Media Categories Security & Risk Analysis
wordpress.org/plugins/wp-media-categoriesAdd categories to media & attachments.
Is WP Media Categories Safe to Use in 2026?
Mostly Safe
Score 78/100WP Media Categories is generally safe to use. 1 past CVE were resolved.
The wp-media-categories v2.1.0 plugin exhibits a mixed security posture. While it demonstrates good practices in its SQL query handling and file operations, there are significant concerns regarding its attack surface and output sanitization. The presence of two unprotected AJAX handlers represents a direct vulnerability to unauthenticated attackers, potentially leading to unauthorized actions or information disclosure. Furthermore, the low percentage of properly escaped output (31%) indicates a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the site. The plugin's vulnerability history, including a known medium severity CVE for Cross-Site Request Forgery (CSRF), highlights a recurring pattern of security weaknesses. The fact that this CVE remains unpatched is a critical issue. Overall, while the plugin has some secure coding practices, the unprotected entry points, poor output escaping, and unpatched vulnerability significantly elevate its risk profile.
Key Concerns
- Unprotected AJAX handlers (2)
- Low percentage of properly escaped output (31%)
- Unpatched CVE (1 medium)
- Missing nonce checks on AJAX
WP Media Categories Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WP Media Categories <= 2.1.0 - Cross-Site Request Forgery
WP Media Categories Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WP Media Categories Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
WP Media Categories Maintenance & Trust
Maintenance Signals
Community Trust
WP Media Categories Alternatives
FOLDER TO CATEGORY LINK
folder-to-category-link
Add categories to bulk media & attachments.
Media Library Categories
wp-media-library-categories
Adds the ability to use categories in the media library.
Categorify – WordPress Media Library Category & File Manager
categorify
Organize your WordPress media files in categories via drag and drop.
Media Categories
media-categories-2
Easily assign categories to media with a clean, simple, and searchable category meta box. Then use the gallery shortcode to display category galleries
Acclectic Media Organizer
acclectic-media-organizer
A file manager for your media library. Organize your attachments, photos, and other media items into folders, and easily filter items by folder when y …
WP Media Categories Developer Profile
28 plugins · 331K total installs
How We Detect WP Media Categories
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-media-categories/assets/js/media-views.js/wp-content/plugins/wp-media-categories/assets/css/admin.css/wp-content/plugins/wp-media-categories/wp-media-categories.phpwp-media-categories/assets/css/admin.css?ver=wp-media-categories/assets/js/media-views.js?ver=HTML / DOM Fingerprints
wp-media-categories-media-grid-walkerdata-term_iddata-term_namewp_media_categories_taxonomies