
Dynamic Taxonomy Menu Items Security & Risk Analysis
wordpress.org/plugins/dynamic-taxonomy-menu-itemsAdd a dynamic taxonomy list to your WordPress menus.
Is Dynamic Taxonomy Menu Items Safe to Use in 2026?
Generally Safe
Score 85/100Dynamic Taxonomy Menu Items has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "dynamic-taxonomy-menu-items" plugin version 1.1.1 exhibits a generally strong security posture based on the provided static analysis. The absence of known CVEs and a clean vulnerability history suggests a well-maintained codebase. The code also demonstrates good practices, with all SQL queries utilizing prepared statements and a very high percentage of output escaping. Furthermore, the plugin has no file operations or external HTTP requests, limiting potential attack vectors.
However, a significant concern arises from the presence of the `unserialize` dangerous function. Without proper input validation or sanitization before unserialization, this function can lead to critical object injection vulnerabilities. The lack of nonce checks, while not directly on AJAX handlers (as there are none), implies a potential weakness if future versions introduce AJAX functionality or if other entry points that might be susceptible to request forgery are introduced without protection. While the current attack surface is zero, relying on this state indefinitely is not advisable.
In conclusion, the plugin shows commendable attention to fundamental security practices like prepared statements and output escaping. The primary weakness lies in the potential for unserialize vulnerabilities. The plugin's clean vulnerability history is a positive indicator, but the presence of `unserialize` necessitates vigilance. Users should be aware of this specific risk, and developers should prioritize robust input validation around any data that is unserialized.
Key Concerns
- Presence of unserialize function
- Missing nonce checks
Dynamic Taxonomy Menu Items Security Vulnerabilities
Dynamic Taxonomy Menu Items Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Dynamic Taxonomy Menu Items Attack Surface
WordPress Hooks 23
Maintenance & Trust
Dynamic Taxonomy Menu Items Maintenance & Trust
Maintenance Signals
Community Trust
Dynamic Taxonomy Menu Items Alternatives
JC Submenu
jc-submenu
JC Submenu plugin allows you to automatically populate your navigation menus with custom post_types, taxonomies, or child pages.
Dynamic Menu Items
dynamic-menu-items
Add posts, media, pages, or custom post types specific to a category, tag, or taxonomy.
Discount Rules for WooCommerce
woo-discount-rules
The discount plugin for WooCommerce helps you create bulk discount, quantity discount, storewide sale, dynamic pricing discount offers easily.
Menu Cart for WooCommerce
woocommerce-menu-bar-cart
Automatically displays a shopping cart in your menu bar. Works with WooCommerce and Easy Digital Downloads (EDD)
Advanced Dynamic Pricing and Discount Rules for WooCommerce
advanced-dynamic-pricing-for-woocommerce
The discount plugin for WooCommerce supports any dynamic pricing discount: bulk discount, role discount, storewide, bogo, gifts, cart discount
Dynamic Taxonomy Menu Items Developer Profile
1 plugin · 10 total installs
How We Detect Dynamic Taxonomy Menu Items
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/dynamic-taxonomy-menu-items/css/dyntaxmi-admin.css/wp-content/plugins/dynamic-taxonomy-menu-items/js/dyntaxmi-admin.js/wp-content/plugins/dynamic-taxonomy-menu-items/js/dyntaxmi-admin.jsdynamic-taxonomy-menu-items/css/dyntaxmi-admin.css?ver=dynamic-taxonomy-menu-items/js/dyntaxmi-admin.js?ver=HTML / DOM Fingerprints
<!-- Dynamic Taxonomy Menu Items -->data-dyntaxmi-taxonomydata-dyntaxmi-post_typedata-dyntaxmi-parentdyntaxmi_options