Admin Menu in Frontend Security & Risk Analysis

wordpress.org/plugins/admin-menu-in-frontend

Admin Menu in Frontend allows you to show admin menu when viewing site.

20 active installs v1.1.1 PHP + WP 4.0+ Updated Dec 14, 2017
admin-menuadmin-menu-in-frontendadministrator-menufront-endfrontend
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Admin Menu in Frontend Safe to Use in 2026?

Generally Safe

Score 85/100

Admin Menu in Frontend has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The 'admin-menu-in-frontend' plugin v1.1.1 exhibits a generally strong security posture, with no recorded vulnerabilities or known CVEs. The static analysis indicates good practices such as 100% use of prepared statements for SQL queries, a reasonable number of nonce checks, and capability checks on certain entry points. There are no critical or high severity taint flows, and the attack surface is entirely protected by authentication checks.

However, there are areas for improvement. The plugin's output escaping is only 44% properly implemented, suggesting a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not correctly sanitized before being displayed. While no current vulnerabilities are identified, this level of unescaped output is a common entry point for such attacks. The absence of any recorded vulnerability history is a positive sign, but it doesn't guarantee future immunity. The plugin's strengths lie in its secure handling of database interactions and protected entry points; its primary weakness is the insufficient output escaping.

Key Concerns

  • Output escaping is not properly implemented
Vulnerabilities
None known

Admin Menu in Frontend Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Admin Menu in Frontend Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
4 escaped
Nonce Checks
3
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

44% escaped9 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<admin-menu-in-frontend> (admin-menu-in-frontend.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Admin Menu in Frontend Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 5

authwp_ajax_amf_save_admin_menu_htmladmin-menu-in-frontend.php:58
authwp_ajax_amf_save_collapse_admin_menuadmin-menu-in-frontend.php:60
noprivwp_ajax_amf_save_collapse_admin_menuadmin-menu-in-frontend.php:61
authwp_ajax_amf_save_fixate_admin_menuadmin-menu-in-frontend.php:63
noprivwp_ajax_amf_save_fixate_admin_menuadmin-menu-in-frontend.php:64
WordPress Hooks 9
actionwp_headadmin-menu-in-frontend.php:52
actionwp_enqueue_scriptsadmin-menu-in-frontend.php:54
actionadmin_footeradmin-menu-in-frontend.php:56
actionwp_footeradmin-menu-in-frontend.php:66
actionshow_user_profileadmin-menu-in-frontend.php:68
actionedit_user_profileadmin-menu-in-frontend.php:69
actionpersonal_options_updateadmin-menu-in-frontend.php:70
actionedit_user_profile_updateadmin-menu-in-frontend.php:71
actionadmin_bar_menuadmin-menu-in-frontend.php:73
Maintenance & Trust

Admin Menu in Frontend Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedDec 14, 2017
PHP min version
Downloads3K

Community Trust

Rating94/100
Number of ratings3
Active installs20
Developer Profile

Admin Menu in Frontend Developer Profile

kostyatereshchuk

3 plugins · 10K total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Admin Menu in Frontend

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/admin-menu-in-frontend/assets/css/admin-menu-in-frontend.css/wp-content/plugins/admin-menu-in-frontend/assets/js/admin-menu-in-frontend.js
Script Paths
assets/js/admin-menu-in-frontend.js
Version Parameters
admin-menu-in-frontend/assets/css/admin-menu-in-frontend.css?ver=admin-menu-in-frontend/assets/js/admin-menu-in-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
foldedfixate-admin-menuamf-rtl
JS Globals
admin_menu_varsamf_html
REST Endpoints
/wp-json/admin-menu-in-frontend/v1/settings
FAQ

Frequently Asked Questions about Admin Menu in Frontend