Admin Bar Position Security & Risk Analysis

wordpress.org/plugins/admin-bar-position

This plugin can change bottom to "Admin Bar".

6K active installs v1.1.4 PHP + WP 3.0+ Updated Apr 3, 2023
admincategory
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Admin Bar Position Safe to Use in 2026?

Generally Safe

Score 85/100

Admin Bar Position has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "admin-bar-position" plugin v1.1.4 presents a generally good security posture with zero recorded vulnerabilities and no identified critical or high-severity issues in its static analysis. The absence of SQL queries without prepared statements and the lack of file operations or external HTTP requests are positive indicators. However, a significant concern arises from the complete lack of output escaping. This means that any data processed and displayed by the plugin is vulnerable to cross-site scripting (XSS) attacks if that data originates from an untrusted source. While the attack surface appears minimal and no specific taint flows were identified, the unescaped output represents a clear and present risk that could be exploited. The plugin's vulnerability history being clean is encouraging, but it doesn't negate the risks identified in the current code analysis.

Key Concerns

  • No output escaping found
Vulnerabilities
None known

Admin Bar Position Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Admin Bar Position Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped1 total outputs
Attack Surface

Admin Bar Position Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionwp_headposition-adminbar.php:18
actionwp_enqueue_scriptsposition-adminbar.php:19
Maintenance & Trust

Admin Bar Position Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.0
Last updatedApr 3, 2023
PHP min version
Downloads36K

Community Trust

Rating84/100
Number of ratings5
Active installs6K
Developer Profile

Admin Bar Position Developer Profile

Masahiro NAKASHIMA

8 plugins · 54K total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Admin Bar Position

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/admin-bar-position/js/scripts.js
Script Paths
/wp-content/plugins/admin-bar-position/js/scripts.js
Version Parameters
admin-bar-position/js/scripts.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Admin Bar Position