Admin Menu Slide Security & Risk Analysis

wordpress.org/plugins/admin-menu-slide

Adds a feature to hide admin menu and make it slide when hovering on the edge of the screen.

10 active installs v1.0 PHP + WP 3.8+ Updated Jul 30, 2015
adminadministrationbackenddashboardfreejavascript
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Admin Menu Slide Safe to Use in 2026?

Generally Safe

Score 85/100

Admin Menu Slide has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "admin-menu-slide" v1.0 plugin exhibits a concerning security posture primarily due to the presence of an unprotected AJAX handler. This represents a significant attack surface that could be exploited by unauthenticated users. While the static analysis did not reveal critical taint flows or dangerous functions, the lack of nonce checks and capability checks on this exposed AJAX endpoint is a major weakness. Furthermore, the plugin uses raw SQL queries without prepared statements, increasing the risk of SQL injection vulnerabilities. The fact that there is no recorded vulnerability history might suggest a lack of prior discovery or exploitation, but it should not be interpreted as inherent security. The plugin has a basic attack surface with only one entry point, but that single point is unprotected, which is a critical oversight.

Key Concerns

  • Unprotected AJAX handler
  • SQL queries without prepared statements
  • No nonce checks on AJAX handlers
  • No capability checks on AJAX handlers
  • Half of output escaping not properly done
Vulnerabilities
None known

Admin Menu Slide Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Admin Menu Slide Release Timeline

v1.0Current
Code Analysis
Analyzed Mar 17, 2026

Admin Menu Slide Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
0 prepared
Unescaped Output
4
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared2 total queries

Output Escaping

50% escaped8 total outputs
Attack Surface
1 unprotected

Admin Menu Slide Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_adminmenuslide_togglesettings.php:21
WordPress Hooks 8
actionwpmu_new_blogactivate.php:28
actionadmin_enqueue_scriptsadmin-menu-slide.php:24
actionadmin_headadmin-menu-slide.php:25
filteradmin_body_classadmin-menu-slide.php:30
actionplugins_loadedindex.php:45
actionadmin_menusettings.php:23
actionadmin_initsettings.php:24
actionadmin_enqueue_scriptssettings.php:27
Maintenance & Trust

Admin Menu Slide Maintenance & Trust

Maintenance Signals

WordPress version tested4.3.34
Last updatedJul 30, 2015
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Admin Menu Slide Developer Profile

Maciej Krawczyk

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Admin Menu Slide

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/admin-menu-slide/includes/css/admin-menu-slide.css/wp-content/plugins/admin-menu-slide/includes/js/admin-menu-slide.js/wp-content/plugins/admin-menu-slide/includes/css/settings.css
Script Paths
/wp-content/plugins/admin-menu-slide/includes/js/admin-menu-slide.js
Version Parameters
admin-menu-slide/includes/css/admin-menu-slide.css?ver=admin-menu-slide/includes/js/admin-menu-slide.js?ver=

HTML / DOM Fingerprints

CSS Classes
admin-menu-slideadminmenuslide-toggle
Data Attributes
windowpress-menu-slide
JS Globals
AMS_PHP
FAQ

Frequently Asked Questions about Admin Menu Slide