
Accessible Dropdown Menus Security & Risk Analysis
wordpress.org/plugins/accessible-dropdown-menusMakes dropdown menus in many WordPress themes keyboard accessible.
Is Accessible Dropdown Menus Safe to Use in 2026?
Generally Safe
Score 85/100Accessible Dropdown Menus has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'accessible-dropdown-menus' plugin version 0.4.1 exhibits a seemingly secure static analysis report with no identified dangerous functions, SQL injection vulnerabilities due to prepared statements, file operations, or external HTTP requests. The attack surface is reported as zero entry points, and no taint analysis revealed any critical or high severity issues. The vulnerability history is also clean, with no recorded CVEs. This suggests a robust development approach in these specific areas.
However, a significant concern arises from the output escaping. With 1 total output and 0% properly escaped, there's a high likelihood of cross-site scripting (XSS) vulnerabilities. The absence of nonce checks and capability checks, combined with the lack of output escaping, means that any data rendered by the plugin, if it originates from user input or external sources, is vulnerable to injection attacks. While the reported attack surface is zero, this absence of checks on any potential output point represents a critical oversight.
Overall, the plugin demonstrates good practices in data sanitization for SQL and avoiding risky functions. Yet, the complete lack of output escaping is a major security flaw that overshadows other positive findings. The absence of any historical vulnerabilities might indicate a small user base or, conversely, that past potential vulnerabilities were not discovered or reported. The critical concern lies in the unescaped output, which presents a tangible risk of XSS attacks.
Key Concerns
- Output not properly escaped
- Missing nonce checks
- Missing capability checks
Accessible Dropdown Menus Security Vulnerabilities
Accessible Dropdown Menus Release Timeline
Accessible Dropdown Menus Code Analysis
Output Escaping
Accessible Dropdown Menus Attack Surface
WordPress Hooks 2
Maintenance & Trust
Accessible Dropdown Menus Maintenance & Trust
Maintenance Signals
Community Trust
Accessible Dropdown Menus Alternatives
Amathia: Accessible Dropdown Menus
amathia
Amathia makes dropdown menus accessible. It adds a button to each dropdown menu, which can be easily clicked to open the submenu.
Ally – Web Accessibility & Usability
pojo-accessibility
Ally: Make your site more inclusive by scanning for accessibility violations, fixing them easily, and adding a usability widget and accessibility stat …
WP Accessibility
wp-accessibility
WP Accessibility fixes common accessibility issues in your WordPress site.
AccessibleWP – Accessibility Toolbar
accessible-poetry
Add a professional accessibility toolbar to your WordPress site and make it easier for users with disabilities.
WP Accessibility Helper (WAH)
wp-accessibility-helper
Short Description WP Accessibility Helper helps solve accessibility problems
Accessible Dropdown Menus Developer Profile
2 plugins · 210 total installs
How We Detect Accessible Dropdown Menus
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/accessible-dropdown-menus/accessible-dropdown-menus.js/wp-content/plugins/accessible-dropdown-menus/accessible-dropdown-menus.jsaccessible-dropdown-menus/accessible-dropdown-menus.js?ver=HTML / DOM Fingerprints
ccadm-hover