Bulk Menu Edit Security & Risk Analysis

wordpress.org/plugins/bulk-menu-edit

Remove multiple menu items in one single click, through a soft and clean interface.

800 active installs v1.3.1 PHP 5.6+ WP 5.0+ Updated Jan 21, 2025
bulkedititemsmenu
91
A · Safe
CVEs total1
Unpatched0
Last CVEJan 29, 2025
Safety Verdict

Is Bulk Menu Edit Safe to Use in 2026?

Generally Safe

Score 91/100

Bulk Menu Edit has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.

1 known CVELast CVE: Jan 29, 2025Updated 1yr ago
Risk Assessment

The "bulk-menu-edit" plugin version 1.3.1 exhibits a generally strong security posture based on the static analysis. The absence of dangerous functions, file operations, and external HTTP requests is a positive sign. Crucially, all identified SQL queries utilize prepared statements, and all output is properly escaped, mitigating common web application vulnerabilities. The presence of nonce and capability checks on its single AJAX entry point further strengthens its defense against unauthorized access. Taint analysis yielding no critical or high-severity flows indicates no immediate concerns regarding unsanitized data handling.

Key Concerns

  • One known medium vulnerability in history
Vulnerabilities
1 published

Bulk Menu Edit Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-24692medium · 4.3Missing Authorization

Bulk Menu Edit <= 1.3.0 - Missing Authorization

Jan 29, 2025 Patched in 1.3.1 (29d)
Version History

Bulk Menu Edit Release Timeline

v1.3.1Current
Code Analysis
Analyzed Mar 16, 2026

Bulk Menu Edit Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
3 prepared
Unescaped Output
0
0 escaped
Nonce Checks
1
Capability Checks
4
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared3 total queries
Attack Surface

Bulk Menu Edit Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_remove_menu_itemsbulk-menu-edit.php:46
WordPress Hooks 2
actionadmin_enqueue_scriptsbulk-menu-edit.php:45
actionplugins_loadedbulk-menu-edit.php:204
Maintenance & Trust

Bulk Menu Edit Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJan 21, 2025
PHP min version5.6
Downloads8K

Community Trust

Rating74/100
Number of ratings3
Active installs800
Developer Profile

Bulk Menu Edit Developer Profile

M.Code

5 plugins · 5K total installs

87
trust score
Avg Security Score
90/100
Avg Patch Time
15 days
View full developer profile
Detection Fingerprints

How We Detect Bulk Menu Edit

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bulk-menu-edit/assets/bulk-menu.css/wp-content/plugins/bulk-menu-edit/assets/bulk-menu.js
Script Paths
/wp-content/plugins/bulk-menu-edit/assets/bulk-menu.js
Version Parameters
bulk-menu-edit/assets/bulk-menu.css?ver=bulk-menu-edit/assets/bulk-menu.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-nonce
JS Globals
bulkMenuEdit
REST Endpoints
/wp-json/bulk-menu-edit/v1/settings
FAQ

Frequently Asked Questions about Bulk Menu Edit