Cascading Mega Menu for Elementor Security & Risk Analysis

wordpress.org/plugins/cascading-mega-menu-for-elementor

Unlimited-level cascading mega menu with full Elementor widget support.

0 active installs v3.02 PHP 7.4+ WP 6.0+ Updated Mar 17, 2026
dropdownelementormega-menumenu-buildernavigation
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Cascading Mega Menu for Elementor Safe to Use in 2026?

Generally Safe

Score 100/100

Cascading Mega Menu for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The 'cascading-mega-menu-for-elementor' plugin v3.02 exhibits a very strong security posture based on the provided static analysis and vulnerability history. The absence of any identified dangerous functions, SQL queries without prepared statements, file operations, or external HTTP requests is a significant strength. The exceptionally high rate of properly escaped output further mitigates risks of cross-site scripting (XSS). Crucially, the complete lack of known CVEs and a history of no recorded vulnerabilities is a very positive indicator of the developers' commitment to security.

However, the static analysis report highlights a complete absence of capability checks and nonce checks across all identified entry points. While the report indicates zero entry points and zero unprotected entry points in this specific analysis, this pattern suggests a potential reliance on WordPress's default security mechanisms or that the plugin's functionality, as analyzed, does not necessitate these checks. The taint analysis showing zero flows, while good, could be incomplete if the analysis depth was limited. The plugin's strengths lie in its clean code regarding direct vulnerabilities, but the lack of explicit security checks on potential interaction points warrants a cautious approach.

In conclusion, this plugin appears to be highly secure in its current iteration, with no known vulnerabilities or exploitable code patterns detected. The developers have implemented good practices regarding data handling and output sanitization. The primary area for consideration, although not directly flagged as a vulnerability in this specific analysis, is the absence of explicit security checks like nonces and capability checks. This is a common security practice that, when absent, can sometimes be exploited in conjunction with other WordPress vulnerabilities. Nonetheless, the overwhelming evidence points to a low-risk plugin.

Key Concerns

  • No nonce checks on entry points
  • No capability checks on entry points
Vulnerabilities
None known

Cascading Mega Menu for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Cascading Mega Menu for Elementor Release Timeline

v3.02Current
Code Analysis
Analyzed Apr 16, 2026

Cascading Mega Menu for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
52 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

98% escaped53 total outputs
Attack Surface

Cascading Mega Menu for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionplugins_loadedcascading-mega-menu.php:21
actionadmin_noticescascading-mega-menu.php:23
actionelementor/widgets/registercascading-mega-menu.php:33
actionwp_enqueue_scriptscascading-mega-menu.php:42
Maintenance & Trust

Cascading Mega Menu for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 17, 2026
PHP min version7.4
Downloads166

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Cascading Mega Menu for Elementor Developer Profile

terencebentem

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Cascading Mega Menu for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cascading-mega-menu-for-elementor/assets/mega.css/wp-content/plugins/cascading-mega-menu-for-elementor/assets/mega.js
Script Paths
/wp-content/plugins/cascading-mega-menu-for-elementor/assets/mega.js
Version Parameters
cascading-mega-menu-for-elementor/assets/mega.css?ver=cascading-mega-menu-for-elementor/assets/mega.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Cascading Mega Menu for Elementor