
Dashboard Columns Security & Risk Analysis
wordpress.org/plugins/dashboard-columnsEasily change the number of dashboard columns from Screen Options.
Is Dashboard Columns Safe to Use in 2026?
Generally Safe
Score 85/100Dashboard Columns has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'dashboard-columns' plugin version 1.3.1 exhibits a generally strong security posture based on the provided static analysis. The plugin has no recorded vulnerabilities (CVEs), indicating a history of secure development or timely patching. Notably, the static analysis reveals a zero attack surface for AJAX handlers, REST API routes, shortcodes, and cron events, with no unprotected entry points. This suggests that direct external interaction with the plugin's core functionalities is restricted and likely requires proper authentication and authorization.
However, there are areas for improvement. The analysis highlights that 100% of the detected SQL queries are not using prepared statements, which poses a significant risk for SQL injection vulnerabilities. While there are 11 output operations, only 36% are properly escaped, leaving potential for cross-site scripting (XSS) vulnerabilities through unescaped output. The presence of nonce checks and capability checks is positive, but the limited number of these checks, especially in conjunction with the unescaped output and raw SQL, raises concerns about how data is processed and validated.
In conclusion, the plugin benefits from a minimal attack surface and a clean vulnerability history. Nevertheless, the lack of prepared statements for SQL queries and the low percentage of properly escaped output are critical weaknesses that could be exploited. Addressing these specific code-level concerns should be a priority to further enhance the plugin's security.
Key Concerns
- SQL queries not using prepared statements
- Low percentage of properly escaped output
Dashboard Columns Security Vulnerabilities
Dashboard Columns Code Analysis
SQL Query Safety
Output Escaping
Dashboard Columns Attack Surface
WordPress Hooks 10
Maintenance & Trust
Dashboard Columns Maintenance & Trust
Maintenance Signals
Community Trust
Dashboard Columns Alternatives
Add Dashboard Columns
add-dashboard-columns
Enable Dashboard Columns in WordPress 3.8 or later
Restore Columns
restore-columns
The plugin restores the possibility to select the number of columns displayed on the dashboard.
Dashboard Welcome for Elementor
dashboard-welcome-for-elementor
Replaces the default WordPress dashboard welcome panel with custom designed Elementor template.
Error Log Monitor
error-log-monitor
Adds a Dashboard widget that displays the latest messages from your PHP error log. It can also send logged errors to email.
Analytics Insights – Google Analytics Dashboard for WordPress
analytics-insights
A full-featured and entirely free Google Analytics Dashboard plugin for WordPress. Displays stats to help you to better understand your site content.
Dashboard Columns Developer Profile
2 plugins · 4K total installs
How We Detect Dashboard Columns
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/dashboard-columns/assets/stylesheets/dashboard-columns-admin.cssdashboard-columns/assets/stylesheets/dashboard-columns-admin.css?ver=