
Add All Nav Links to BP Adminbar Security & Risk Analysis
wordpress.org/plugins/add-all-nav-links-to-bp-adminbarAutomatically include dropdowns of all Buddypress component and Wordpress menus in the BP Adminbar.
Is Add All Nav Links to BP Adminbar Safe to Use in 2026?
Generally Safe
Score 85/100Add All Nav Links to BP Adminbar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "add-all-nav-links-to-bp-adminbar" plugin v2.1.2 exhibits a strong security posture in several key areas. The static analysis reveals no identified dangerous functions, no direct SQL queries (all are prepared statements), no file operations, and no external HTTP requests, which are all positive indicators. Furthermore, the plugin has no known vulnerability history (CVEs), suggesting a well-maintained and secure codebase over time.
However, a significant concern is the complete lack of output escaping across all identified output points. With 41 total outputs and 0% properly escaped, this creates a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied or dynamic data that is outputted by this plugin without proper sanitization could be exploited by attackers to inject malicious scripts, potentially leading to session hijacking or unauthorized actions.
While the absence of direct entry points like AJAX handlers, REST API routes, and shortcodes is good, the lack of nonce checks and capability checks is concerning, especially in conjunction with the unescaped output. This means that even if an attacker couldn't directly trigger an output, if they could somehow manipulate data that eventually gets outputted without escaping, the lack of authorization checks could amplify the impact. The vulnerability history being clean is a positive sign, but the existing code-level issues, particularly the pervasive unescaped output, require immediate attention to mitigate significant XSS risks.
Key Concerns
- 0% output properly escaped
- 0 nonce checks
- 0 capability checks
Add All Nav Links to BP Adminbar Security Vulnerabilities
Add All Nav Links to BP Adminbar Code Analysis
Output Escaping
Add All Nav Links to BP Adminbar Attack Surface
WordPress Hooks 24
Maintenance & Trust
Add All Nav Links to BP Adminbar Maintenance & Trust
Maintenance Signals
Community Trust
Add All Nav Links to BP Adminbar Alternatives
Custom Profile Menu for BuddyPress
bp-custom-menu
Create custom BuddyPress profile menu pages, gracefully.
Custom Adminbar Menus
custom-adminbar-menus
This is a simple plugin for adding custom navigation menus to your WordPress Adminbar.
AMP Sidebar Hamburger Menu
amp-sidebar-hamburger-menu
If you're using AMP in transitional or standard mode check the FAQ's below, or follow the instructions in the settings tab after installing.
BuddyMenu BuddyLinks
buddymenu-buddylinks
BuddyPress BuddyLinks does three things really well:
Custom Menu Icons
custom-menu-icons
Add icons from Font Awesome, Material Design and Dashicons to your menu items EASILY!
Add All Nav Links to BP Adminbar Developer Profile
1 plugin · 10 total installs
How We Detect Add All Nav Links to BP Adminbar
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/add-all-nav-links-to-bp-adminbar/css/bp-wp-navbar.css/wp-content/plugins/add-all-nav-links-to-bp-adminbar/js/bp-wp-navbar.jsadd-all-nav-links-to-bp-adminbar/css/bp-wp-navbar.css?ver=add-all-nav-links-to-bp-adminbar/js/bp-wp-navbar.js?ver=HTML / DOM Fingerprints
selectedid="bp-wp-navbar"