
Admin Menu Security & Risk Analysis
wordpress.org/plugins/admin-menu-creatorAdmin Menu helps you to create custom admin menu and sub menus etc provided by pixeltoweb.com
Is Admin Menu Safe to Use in 2026?
Generally Safe
Score 85/100Admin Menu has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'admin-menu-creator' v1.0.0 exhibits a mixed security posture. On one hand, the absence of known vulnerabilities and a relatively clean bill of health in its vulnerability history suggest a level of care in its development. The plugin also avoids common risky practices such as file operations, external HTTP requests, and bundling external libraries. However, the static analysis reveals significant concerns. The code shows a concerning lack of capability checks and nonce verification, which are fundamental security mechanisms in WordPress. Furthermore, the taint analysis indicates that all analyzed flows (3 total) involve unsanitized paths, with two of these being flagged as high severity. This strongly suggests a potential for input validation and sanitization issues that could be exploited, despite the absence of explicit SQL injection findings from prepared statement usage. The low percentage of properly escaped output (57%) is also a notable weakness, increasing the risk of cross-site scripting (XSS) vulnerabilities.
Key Concerns
- High severity taint flows found
- All taint flows have unsanitized paths
- No capability checks implemented
- No nonce checks implemented
- Low percentage of output escaping
Admin Menu Security Vulnerabilities
Admin Menu Release Timeline
Admin Menu Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Admin Menu Attack Surface
WordPress Hooks 4
Maintenance & Trust
Admin Menu Maintenance & Trust
Maintenance Signals
Community Trust
Admin Menu Alternatives
PublishPress Capabilities – User Role Editor, Access Permissions, User Capabilities, Admin Menus
capability-manager-enhanced
PublishPress Capabilities is the access control plugin. You can manage user capabilities, permissions, user roles, admin menus and more.
User Admin Simplifier
user-admin-simplifier
Lets any Administrator simplify the WordPress Admin interface, on a per-user basis, by turning specific menu/submenu sections off.
Admin Tools
admin-tools
Admin Tools Helps you to get better admin for your customers. Manage your menus, plugins, Top Bar, updates and more
Ozh' Admin Drop Down Menu
ozh-admin-drop-down-menu
All admin links available in a neat horizontal drop down menu. Saves lots of screen real estate!
Admin Toolbar Menus
admin-toolbar-menus
Seamlessly adds 3 new menu locations to the admin toolbar.
Admin Menu Developer Profile
3 plugins · 20 total installs
How We Detect Admin Menu
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/admin-menu-creator/css/adminMenuCreator.css/wp-content/plugins/admin-menu-creator/css/adminMenuCreatorBackend.css/wp-content/plugins/admin-menu-creator/js/adminMenuCreator.jsHTML / DOM Fingerprints
wrapcounter