Admin UI Simplificator Security & Risk Analysis

wordpress.org/plugins/admin-ui-simplificator

The plugin simplifies the WordPress admin user interface by hiding most of the WordPress menus.

10 active installs v1.0.5 PHP + WP 2.6.2+ Updated Jan 6, 2015
admin-uisimplesimplificatorux
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Admin UI Simplificator Safe to Use in 2026?

Generally Safe

Score 85/100

Admin UI Simplificator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11yr ago
Risk Assessment

The "admin-ui-simplificator" v1.0.5 plugin exhibits a mixed security posture. On the positive side, it has a very small attack surface with no apparent entry points like AJAX handlers, REST API routes, or shortcodes. Furthermore, all detected SQL queries utilize prepared statements, indicating good practice in database interaction. There is also no recorded vulnerability history, which is a strong indicator of past security maturity.

However, the static analysis reveals significant concerns. The presence of the `unserialize` function, especially without explicit checks or sanitization, is a critical risk as it can lead to Remote Code Execution if untrusted data is passed to it. The extremely low percentage of properly escaped output (5%) is another major red flag, suggesting a high likelihood of Cross-Site Scripting (XSS) vulnerabilities across many output points. The lack of nonce and capability checks for any potential, albeit currently non-existent, entry points also leaves room for future vulnerabilities if the plugin evolves.

While the lack of CVEs is encouraging, the inherent risks posed by `unserialize` and widespread unescaped output are substantial. Developers should prioritize addressing these issues to improve the plugin's security.

Key Concerns

  • Dangerous function unserialize found
  • Low percentage of properly escaped output
  • No nonce checks found
  • No capability checks found
Vulnerabilities
None known

Admin UI Simplificator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Admin UI Simplificator Code Analysis

Dangerous Functions
1
Raw SQL Queries
0
0 prepared
Unescaped Output
151
8 escaped
Nonce Checks
0
Capability Checks
0
File Operations
6
External Requests
1
Bundled Libraries
0

Dangerous Functions Found

unserialize$buff = unserialize($buff);wp-admin-ui-simplificator.php:1026

Output Escaping

5% escaped159 total outputs
Attack Surface

Admin UI Simplificator Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 13
actioninitwp-admin-ui-simplificator.php:39
actionplugins_loadedwp-admin-ui-simplificator.php:127
actionadmin_menuwp-admin-ui-simplificator.php:194
actionadmin_initwp-admin-ui-simplificator.php:195
actionadmin_noticeswp-admin-ui-simplificator.php:196
actionadmin_menuwp-admin-ui-simplificator.php:200
actionadmin_bar_menuwp-admin-ui-simplificator.php:201
actionwp_dashboard_setupwp-admin-ui-simplificator.php:202
actionadmin_bar_menuwp-admin-ui-simplificator.php:204
actionwp_headwp-admin-ui-simplificator.php:213
actionwp_footerwp-admin-ui-simplificator.php:214
actionwp_enqueue_scriptswp-admin-ui-simplificator.php:216
filterplugin_action_linkswp-admin-ui-simplificator.php:551
Maintenance & Trust

Admin UI Simplificator Maintenance & Trust

Maintenance Signals

WordPress version tested4.1.42
Last updatedJan 6, 2015
PHP min version
Downloads8K

Community Trust

Rating80/100
Number of ratings2
Active installs10
Developer Profile

Admin UI Simplificator Developer Profile

Svetoslav Marinov

26 plugins · 12K total installs

71
trust score
Avg Security Score
88/100
Avg Patch Time
722 days
View full developer profile
Detection Fingerprints

How We Detect Admin UI Simplificator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/admin-ui-simplificator/css/main.css
Version Parameters
admin-ui-simplificator/css/main.css?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Admin UI Simplificator - A plugin to simplify the WordPress admin area -->
Data Attributes
data-orbisius-admin-ui-simplificator-plugin
FAQ

Frequently Asked Questions about Admin UI Simplificator