Dashboard Option Menu Customize Security & Risk Analysis

wordpress.org/plugins/dashboard-option-menu-customize

Customization options and help

10 active installs v1.1.1 PHP + WP 3.4.2+ Updated May 16, 2013
admindashboardmenuoptionoptions
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Dashboard Option Menu Customize Safe to Use in 2026?

Generally Safe

Score 85/100

Dashboard Option Menu Customize has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12yr ago
Risk Assessment

The 'dashboard-option-menu-customize' v1.1.1 plugin exhibits a mixed security posture. On the positive side, the plugin reports zero AJAX handlers, REST API routes, shortcodes, and cron events, resulting in a very small attack surface. Furthermore, there are no known vulnerabilities (CVEs) associated with this plugin, and all SQL queries appear to use prepared statements, which is excellent practice for preventing SQL injection.

However, significant concerns arise from the static analysis. The most alarming finding is that 100% of the 11 identified output points are not properly escaped. This creates a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed in the browser of users viewing the dashboard. Additionally, the taint analysis revealed two flows with unsanitized paths, indicating potential issues with how file paths or other sensitive data are handled. While these are not classified as critical or high severity in the provided data, the presence of unsanitized paths is a significant security weakness that needs attention.

The absence of any recorded vulnerabilities in the history is a positive sign, suggesting the plugin may have been developed with security in mind or has not yet been widely targeted. Nevertheless, the unescaped output and unsanitized paths present immediate and tangible risks that outweigh the clean vulnerability history. The plugin needs urgent attention to address the XSS and path sanitization issues to improve its overall security.

Key Concerns

  • Output not properly escaped
  • Flows with unsanitized paths
Vulnerabilities
None known

Dashboard Option Menu Customize Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Dashboard Option Menu Customize Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
11
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped11 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
dashboard_option_menu_customize_setting (dashboard-option-menu-customize.php:60)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Dashboard Option Menu Customize Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
filterplugin_action_linksdashboard-option-menu-customize.php:40
actionadmin_menudashboard-option-menu-customize.php:55
filteradmin_footer_textdashboard-option-menu-customize.php:62
actionscreen_options_show_screendashboard-option-menu-customize.php:293
actionadmin_headdashboard-option-menu-customize.php:301
Maintenance & Trust

Dashboard Option Menu Customize Maintenance & Trust

Maintenance Signals

WordPress version tested3.5.2
Last updatedMay 16, 2013
PHP min version
Downloads6K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Dashboard Option Menu Customize Developer Profile

gqevu6bsiz

10 plugins · 47K total installs

70
trust score
Avg Security Score
87/100
Avg Patch Time
183 days
View full developer profile
Detection Fingerprints

How We Detect Dashboard Option Menu Customize

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
columns-2postbox-containerstuffbox
Data Attributes
name="update[]"name="sett"
FAQ

Frequently Asked Questions about Dashboard Option Menu Customize