Advanced Menu Icons Security & Risk Analysis

wordpress.org/plugins/advanced-menu-icons

Add custom SVG or image icons to WordPress menus. Customize icon size, position, color, and margins. Loads only used icons, optimizing site speed and …

80 active installs v1.0.1 PHP 5.4+ WP 5.0+ Updated Sep 18, 2024
advancediconsmenunavigationpro
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Advanced Menu Icons Safe to Use in 2026?

Generally Safe

Score 92/100

Advanced Menu Icons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "advanced-menu-icons" v1.0.1 plugin demonstrates a generally good security posture with many best practices in place, such as a high percentage of SQL queries using prepared statements and properly escaped output. The plugin also has a clean vulnerability history, with no recorded CVEs, suggesting a level of maturity and attention to security by its developers. However, there are specific areas that warrant attention. The presence of an unprotected AJAX handler is a significant concern, as it represents a potential entry point for attackers to execute actions without proper authentication. Additionally, the taint analysis revealed two high-severity flows with unsanitized paths, indicating potential risks of path traversal or similar vulnerabilities if these flows are exploited.

While the plugin benefits from a lack of dangerous functions and a low total attack surface, the unprotected AJAX handler and the high-severity taint flows are clear weaknesses. The absence of recorded vulnerabilities is positive but doesn't negate the risks identified in the static analysis. Users should be aware of these potential issues, and developers should prioritize addressing the unprotected AJAX handler and the identified taint flows to strengthen the plugin's overall security.

Key Concerns

  • Unprotected AJAX handler
  • High severity taint flows (2)
Vulnerabilities
None known

Advanced Menu Icons Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Advanced Menu Icons Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
13 prepared
Unescaped Output
24
268 escaped
Nonce Checks
9
Capability Checks
8
File Operations
1
External Requests
2
Bundled Libraries
0

SQL Query Safety

81% prepared16 total queries

Output Escaping

92% escaped292 total outputs
Data Flows
4 unsanitized

Data Flow Analysis

6 flows4 with unsanitized paths
ajax (admin\includes\AjaxRequests\getIcons.php:18)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

Advanced Menu Icons Attack Surface

Entry Points8
Unprotected1

AJAX Handlers 8

authwp_ajax_clearAllIconDataadmin\includes\AjaxRequests\clearAllIconData.php:15
authwp_ajax_getIconsadmin\includes\AjaxRequests\getIcons.php:15
authwp_ajax_getSvgIconsAccordionsadmin\includes\AjaxRequests\getSvgIconsAccordions.php:17
authwp_ajax_dm_get_icon_svgsadmin\includes\AjaxRequests\GetSvgs.php:17
authwp_ajax_reset_rami_settingsadmin\includes\AjaxRequests\ResetMenuSettings.php:15
authwp_ajax_saveFlagToDbadmin\includes\AjaxRequests\saveFlagIcon.php:17
authwp_ajax_save_rami_settingsadmin\includes\AjaxRequests\SaveMenuSettings.php:15
authwp_ajax_advanced_menu_icon_searchadmin\includes\AjaxRequests\SearchSvgIcons.php:15
WordPress Hooks 11
actionadmin_footeradmin\class-RecorpAdvancedMenuIcons_Admin.php:112
filterupload_mimesadmin\class-RecorpAdvancedMenuIcons_Admin.php:115
actionadmin_enqueue_scriptsadmin\class-RecorpAdvancedMenuIcons_Admin.php:118
actionwp_enqueue_scriptsadmin\class-RecorpAdvancedMenuIcons_Admin.php:121
actionwp_nav_menu_item_custom_fieldsadmin\class-RecorpAdvancedMenuIcons_Admin.php:124
filterwp_get_nav_menu_itemsadmin\class-RecorpAdvancedMenuIcons_Admin.php:127
actionwp_update_nav_menu_itemadmin\class-RecorpAdvancedMenuIcons_Admin.php:130
actionadmin_enqueue_scriptsadmin\includes\cdata.php:10
actionadmin_enqueue_scriptsadmin\includes\cdata.php:26
actionadmin_menuadmin\includes\menu-page.php:12
actionadmin_menuincludes\class-MenuAccordionSection.php:14
Maintenance & Trust

Advanced Menu Icons Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedSep 18, 2024
PHP min version5.4
Downloads865

Community Trust

Rating0/100
Number of ratings0
Active installs80
Developer Profile

Advanced Menu Icons Developer Profile

recorp

6 plugins · 10K total installs

80
trust score
Avg Security Score
88/100
Avg Patch Time
52 days
View full developer profile
Detection Fingerprints

How We Detect Advanced Menu Icons

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advanced-menu-icons/admin/css/icons.css/wp-content/plugins/advanced-menu-icons/admin/css/style.css/wp-content/plugins/advanced-menu-icons/admin/js/icons.js/wp-content/plugins/advanced-menu-icons/admin/js/menu-item-fields.js/wp-content/plugins/advanced-menu-icons/admin/js/script.js/wp-content/plugins/advanced-menu-icons/includes/assets/css/frontend.css
Script Paths
/wp-content/plugins/advanced-menu-icons/admin/js/icons.js/wp-content/plugins/advanced-menu-icons/admin/js/menu-item-fields.js/wp-content/plugins/advanced-menu-icons/admin/js/script.js
Version Parameters
advanced-menu-icons/admin/css/icons.css?ver=advanced-menu-icons/admin/css/style.css?ver=advanced-menu-icons/admin/js/icons.js?ver=advanced-menu-icons/admin/js/menu-item-fields.js?ver=advanced-menu-icons/admin/js/script.js?ver=advanced-menu-icons/includes/assets/css/frontend.css?ver=

HTML / DOM Fingerprints

CSS Classes
recorp-ami-wraprecorp-ami-icon-wrapperrecorp-ami-select-iconrecorp-ami-icon-previewrecorp-ami-icon-searchrecorp-ami-icon-listrecorp-ami-icon-itemrecorp-ami-menu-item-field+6 more
HTML Comments
<!-- Global Styles --><!-- Icons Group --><!-- Icons List --><!-- Menu Item Fields -->+8 more
Data Attributes
data-icon-groupdata-icon-namedata-menu-item-id
JS Globals
window.recorp_ami_icons_datawindow.recorp_ami_menu_item_fields_data
FAQ

Frequently Asked Questions about Advanced Menu Icons