
GD Pages Navigator Security & Risk Analysis
wordpress.org/plugins/gd-pages-navigatorSimple and powerful widget plugin to create enhanced navigation for hierarchical post types, based on different criteria for filtering and display of …
Is GD Pages Navigator Safe to Use in 2026?
Generally Safe
Score 85/100GD Pages Navigator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "gd-pages-navigator" plugin v6.2.1 exhibits a mixed security posture. On the positive side, the plugin has no recorded vulnerabilities (CVEs) and a very small attack surface with no identified AJAX handlers, REST API routes, shortcodes, or cron events that are unprotected. This suggests good practices in limiting potential entry points for attackers. However, the static analysis reveals significant concerns. The presence of two "unserialize" dangerous function calls is a major red flag, as unserialization of untrusted data can lead to remote code execution. Furthermore, the taint analysis indicates two flows with unsanitized paths, one of which is classified as high severity. This suggests that data processed by the plugin may not be adequately validated or sanitized before being used in sensitive operations. The low percentage of properly escaped output (30%) also points to potential cross-site scripting (XSS) vulnerabilities.
Key Concerns
- Dangerous function unserialize present
- High severity taint flow found
- Unsanitized paths in taint flows
- Low percentage of properly escaped output
- No nonce checks on potential entry points
- Limited capability checks
GD Pages Navigator Security Vulnerabilities
GD Pages Navigator Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
GD Pages Navigator Attack Surface
WordPress Hooks 4
Maintenance & Trust
GD Pages Navigator Maintenance & Trust
Maintenance Signals
Community Trust
GD Pages Navigator Alternatives
Better Section Navigation
better-section-navigation
Creates a new widget for listing section-based navigation -- essential for contextual navigation. Also implements a template function and a shortcode.
Collapsing Pages
collapsing-pages
This plugin uses Javascript to dynamically expand or collapsable the set of pages for each parent page.
WenderHost Subpages Widget
wenderhost-subpages-widget
A widget for displaying a list of subpage links. The list remains consistent regardless of where you are in the hierarchy.
LJ Subpages Widget
lj-subpages-widget
LJ Subpages Widget allows you to display a menu listing subpages from a chosen page.
Local Navigation Extended
local-navigation-extended
This simple widget uses the wp_list_pages() to output a local navigation menu.
GD Pages Navigator Developer Profile
17 plugins · 12K total installs
How We Detect GD Pages Navigator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gd-pages-navigator/css/widgets.css/wp-content/plugins/gd-pages-navigator/js/widgets.js/wp-content/plugins/gd-pages-navigator/js/widgets.jsgd-pages-navigator/css/widgets.css?ver=gd-pages-navigator/js/widgets.js?ver=