[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fcW-MSrFBo_Vu7ZzfpwzExAJm1S8etSI5wbf_SI9oa7k":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":21,"download_link":22,"security_score":23,"vuln_count":24,"unpatched_count":24,"last_vuln_date":25,"fetched_at":26,"vulnerabilities":27,"developer":42,"crawl_stats":33,"alternatives":49,"analysis":143,"fingerprints":202},"hide-admin-bar-from-front-end","Hide Admin Bar From Front End","1.0.0","Aftab Husain","https:\u002F\u002Fprofiles.wordpress.org\u002Famu02aftab\u002F","\u003Cp>This plugin provides  feature to hide\u002Fshow admin bar from front end.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Feature\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Setting to Hide\u002FShow Admin Bar in admin\u003C\u002Fli>\n\u003C\u002Ful>\n","This plugin provides  feature to hide\u002Fshow admin bar from front end.",2000,29790,84,5,"2022-07-25T05:49:00.000Z","6.0.11","3.5.0","",[20,4],"hide-admin-bar","https:\u002F\u002Faftabhusain.wordpress.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhide-admin-bar-from-front-end.zip",63,1,"2025-06-27 00:00:00","2026-03-15T15:16:48.613Z",[28],{"id":29,"url_slug":30,"title":31,"description":32,"plugin_slug":4,"theme_slug":33,"affected_versions":34,"patched_in_version":33,"severity":35,"cvss_score":36,"cvss_vector":37,"vuln_type":38,"published_date":25,"updated_date":39,"references":40,"days_to_patch":33},"CVE-2025-53267","hide-admin-bar-from-front-end-cross-site-request-forgery","Hide Admin Bar From Front End \u003C= 1.0.0 - Cross-Site Request Forgery","The Hide Admin Bar From Front End plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.0. This is due to missing or incorrect nonce validation on a function. This makes it possible for unauthenticated attackers to perform an unauthorized action granted they can trick a site administrator into performing an action such as clicking on a link.",null,"\u003C=1.0.0","medium",4.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Cross-Site Request Forgery (CSRF)","2025-07-01 20:29:59",[41],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F66c0c3e0-d7a2-4759-9e56-632ba37bf4d7?source=api-prod",{"slug":43,"display_name":7,"profile_url":8,"plugin_count":14,"total_installs":44,"avg_security_score":45,"avg_patch_time_days":46,"trust_score":47,"computed_at":48},"amu02aftab",2590,75,30,77,"2026-04-04T00:40:50.525Z",[50,73,86,101,122],{"slug":51,"name":52,"version":53,"author":54,"author_profile":55,"description":56,"short_description":57,"active_installs":58,"downloaded":59,"rating":60,"num_ratings":24,"last_updated":61,"tested_up_to":62,"requires_at_least":63,"requires_php":64,"tags":65,"homepage":69,"download_link":70,"security_score":71,"vuln_count":72,"unpatched_count":72,"last_vuln_date":33,"fetched_at":26},"hide-admin-bar-for-user-roles","Hide Admin Bar For User Roles","1.1.2","Subodh Ghulaxe","https:\u002F\u002Fprofiles.wordpress.org\u002Fsubodhghulaxe\u002F","\u003Cp>\u003Cstrong>Hide Admin Bar For User Roles\u003C\u002Fstrong> is easy to use WordPress plugin to hide admin bar, allows you to hide admin bar for specific user roles. Using this plugin you can show the admin bar for administrators and remove admin bar for all users except administrators.\u003C\u002Fp>\n\u003Cp>By default WordPress displays admin bar in front-end for all logged in users. This admin bar can be very useful if you are a website owner or a developer, but admin bar can be distracting to visitors or customers of your website and you may not want to show admin bar for to certain user roles.\u003C\u002Fp>\n\u003Cp>Hide admin bar plugin allows you to remove WordPress admin bar for visitors or to disable WordPress admin bar for all users except administrators.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>Easily hide admin bar from WordPress front end\u003C\u002Fli>\n\u003Cli>Hide admin bar for all users except administrators\u003C\u002Fli>\n\u003Cli>Role based settings to remove admin toolbar\u003C\u002Fli>\n\u003Cli>Multisite support\u003C\u002Fli>\n\u003Cli>Well tested code\u003C\u002Fli>\n\u003Cli>Translation ready\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Cstrong>Translations\u002FLanguages:\u003C\u002Fstrong>\u003Cbr \u002F>\nHide Admin Bar For User Roles plugin is translation ready and is available in the following languages:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>English\u003C\u002Fli>\n\u003C\u002Ful>\n","Easy to use WordPress hide admin bar plugin, allows you to hide admin bar for specific user roles. Using this plugin you can show the admin bar for ad &hellip;",600,5938,100,"2024-06-23T12:44:00.000Z","6.5.8","3.1.0","5.2.4",[66,67,68,20,4],"admin-bar","admin-bar-hide","disable-admin-bar","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fhide-admin-bar-for-user-roles\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhide-admin-bar-for-user-roles.1.1.2.zip",92,0,{"slug":74,"name":5,"version":6,"author":75,"author_profile":76,"description":77,"short_description":78,"active_installs":79,"downloaded":80,"rating":72,"num_ratings":72,"last_updated":81,"tested_up_to":82,"requires_at_least":17,"requires_php":18,"tags":83,"homepage":18,"download_link":84,"security_score":85,"vuln_count":72,"unpatched_count":72,"last_vuln_date":33,"fetched_at":26},"admin-bar-hider","dev02ali","https:\u002F\u002Fprofiles.wordpress.org\u002Fdev02ali\u002F","\u003Cp>Very simple and easy to use plugin for hiding admin bar from front end,\u003C\u002Fp>\n","Very simple and easy to use plugin for hiding admin bar from front end,",10,1520,"2017-05-30T09:12:00.000Z","4.7.32",[20,4],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fadmin-bar-hider.zip",85,{"slug":87,"name":88,"version":89,"author":90,"author_profile":91,"description":92,"short_description":93,"active_installs":72,"downloaded":94,"rating":60,"num_ratings":24,"last_updated":95,"tested_up_to":96,"requires_at_least":97,"requires_php":98,"tags":99,"homepage":18,"download_link":100,"security_score":85,"vuln_count":72,"unpatched_count":72,"last_vuln_date":33,"fetched_at":26},"hide-admin-top-bar","Hide Admin Top Bar","1.0","Deepak Kaushik","https:\u002F\u002Fprofiles.wordpress.org\u002Fdeveloperdeepak\u002F","\u003Cp>This plugin remove admin top bar from all front end pages.\u003C\u002Fp>\n","This plugin remove admin top bar from all front end pages.",1296,"2019-05-12T02:50:00.000Z","5.1.22","3.0","5.1",[66,20,4],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhide-admin-top-bar.zip",{"slug":20,"name":102,"version":103,"author":104,"author_profile":105,"description":106,"short_description":107,"active_installs":108,"downloaded":109,"rating":110,"num_ratings":111,"last_updated":112,"tested_up_to":113,"requires_at_least":114,"requires_php":115,"tags":116,"homepage":120,"download_link":121,"security_score":60,"vuln_count":72,"unpatched_count":72,"last_vuln_date":33,"fetched_at":26},"Hide Admin Bar","1.0.2","David Vongries","https:\u002F\u002Fprofiles.wordpress.org\u002Fdavidvongries\u002F","\u003Cp>Hides the Admin Bar in WordPress 3.1+.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>New! You can now hide the WordPress admin bar for specific user roles!\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Ch3>What’s next?\u003C\u002Fh3>\n\u003Cp>If you like Hide Admin Bar, you will love our other, free WordPress products:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fbetteradminbar.com\u002F?utm_source=hide_admin_bar&utm_medium=repository&utm_campaign=bab\" rel=\"nofollow ugc\">Better Admin Bar\u003C\u002Fa>\u003C\u002Fstrong> – The plugin to make your clients enjoy WordPress. It replaces the default admin bar to provide the best possible user experience when editing & navigating a website.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwp-pagebuilderframework.com\u002F?utm_source=hide_admin_bar&utm_medium=repository&utm_campaign=wpbf\" rel=\"nofollow ugc\">Page Builder Framework\u003C\u002Fa>\u003C\u002Fstrong> – A fast & minimalistic WordPress theme designed for the new WordPress era.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fultimatedashboard.io\u002F?utm_source=hide_admin_bar&utm_medium=repository&utm_campaign=udb\" rel=\"nofollow ugc\">Ultimate Dashboard\u003C\u002Fa>\u003C\u002Fstrong> – The #1 WordPress plugin to customize your WordPress dashboard and admin area.\u003C\u002Fli>\n\u003C\u002Ful>\n","Hide the Admin Bar in WordPress 3.1+.",20000,808109,88,29,"2025-11-04T09:02:00.000Z","6.8.5","3.1","5.6",[117,66,118,119,20],"admin","hidden","hide","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fhide-admin-bar\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhide-admin-bar.1.0.2.zip",{"slug":123,"name":124,"version":125,"author":126,"author_profile":127,"description":128,"short_description":129,"active_installs":108,"downloaded":130,"rating":131,"num_ratings":132,"last_updated":133,"tested_up_to":134,"requires_at_least":135,"requires_php":115,"tags":136,"homepage":140,"download_link":141,"security_score":60,"vuln_count":24,"unpatched_count":72,"last_vuln_date":142,"fetched_at":26},"hide-admin-bar-based-on-user-roles","Hide Admin Bar Based on User Roles","7.1.0","Ankit Panchal","https:\u002F\u002Fprofiles.wordpress.org\u002Fankitmaru\u002F","\u003Cp>\u003Cstrong>Hide Admin Bar Based On User Roles\u003C\u002Fstrong> gives you complete control over who sees the WordPress toolbar.\u003C\u002Fp>\n\u003Cp>Whether you are running a membership site, a WooCommerce store, or simply want a cleaner frontend for your subscribers, this plugin lets you hide the admin bar with precision — by role, capability, device, page, or time. Stop exposing backend links to users who don’t need them.\u003C\u002Fp>\n\u003Cp>The plugin is lightweight, developer-friendly, and works immediately upon activation — no configuration required to get started.\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002F25WBldgArAk?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002F_BAwxGVnKNY?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Simple but great plugin. 🙂\u003Cbr \u002F>\n  – \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Ftopic\u002Fsimple-but-great-plugin-12\u002F\" rel=\"ugc\">wptoolsdev\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Works flawlessly! 🙂\u003Cbr \u002F>\n  – \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Ftopic\u002Fworks-flawlessly-129\u002F\" rel=\"ugc\">thebrazeneye\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch3>🚀 Key Features (Free)\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Hide for All Users:\u003C\u002Fstrong> Completely remove the admin bar from the frontend for everyone.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Hide for Guests:\u003C\u002Fstrong> Ensure non-logged-in visitors never see the toolbar.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Role-Based Hiding:\u003C\u002Fstrong> Select specific roles (e.g., Subscriber, Customer, Editor) to hide the bar for.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Capability-Based Hiding:\u003C\u002Fstrong> Hide the bar based on WordPress capabilities (e.g., hide for anyone who cannot \u003Ccode>manage_options\u003C\u002Fcode>).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lightweight & Fast:\u003C\u002Fstrong> Zero bloat — no external requests, no database overhead on the frontend.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>🏆 Premium Features (Pro)\u003C\u002Fh3>\n\u003Cp>Unlock advanced visibility logic with the \u003Ca href=\"https:\u002F\u002Fpluginstack.dev\u002Fplugins\u002Fhide-admin-bar-pro\" rel=\"nofollow ugc\">Pro version\u003C\u002Fa>:\u003Cbr \u002F>\n* \u003Cstrong>Page-Based Targeting:\u003C\u002Fstrong> Show or hide the admin bar only on specific URLs, post types, or page templates.\u003Cbr \u002F>\n* \u003Cstrong>Device Detection:\u003C\u002Fstrong> Hide the toolbar on Mobile or Tablet to save screen space, while keeping it on Desktop.\u003Cbr \u002F>\n* \u003Cstrong>Per-User Overrides:\u003C\u002Fstrong> Manually force the admin bar to show or hide for individual user accounts.\u003Cbr \u002F>\n* \u003Cstrong>Time-Based Visibility:\u003C\u002Fstrong> Automatically hide the bar during specific hours of the day.\u003Cbr \u002F>\n* \u003Cstrong>Smart Redirects:\u003C\u002Fstrong> Redirect users to the homepage or a custom URL when they try to access the backend.\u003Cbr \u002F>\n* \u003Cstrong>Inactivity Auto-Hide:\u003C\u002Fstrong> Automatically slide the toolbar away after a configurable period of inactivity.\u003Cbr \u002F>\n* \u003Cstrong>Import \u002F Export Settings:\u003C\u002Fstrong> Back up and migrate your configuration across sites in one click.\u003C\u002Fp>\n\u003Ch3>You can check our other plugins:\u003C\u002Fh3>\n\u003Col>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fultimakit-for-wp\u002F\" rel=\"ugc\">All-in-One WordPress Toolkit for SEO, Security, Customization, and Performance\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Flike-dislike-for-wp\u002F\" rel=\"ugc\">Like Dislike For WP\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fdisable-block-editor-fullscreen-mode\u002F\" rel=\"ugc\">Disable Block Editor FullScreen mode\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fnoteflow\u002F\" rel=\"ugc\">NoteFlow – Smart Notes Manager for WordPress Admin\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Fol>\n","Hide the WordPress Admin Bar for specific user roles, capabilities, devices, pages, or time windows. The ultimate toolbar control plugin for membershi &hellip;",762894,78,20,"2026-02-24T15:00:00.000Z","6.9.4","5.5",[66,137,20,138,139],"admin-toolbar","toolbar","user-roles","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fhide-admin-bar-based-on-user-roles\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhide-admin-bar-based-on-user-roles.7.1.0.zip","2022-02-21 00:00:00",{"attackSurface":144,"codeSignals":161,"taintFlows":169,"riskAssessment":189,"analyzedAt":201},{"hooks":145,"ajaxHandlers":157,"restRoutes":158,"shortcodes":159,"cronEvents":160,"entryPointCount":72,"unprotectedCount":72},[146,152],{"type":147,"name":148,"callback":149,"file":150,"line":151},"action","admin_menu","hsabffe_options_menu","hide-admin-bar-from-front-end.php",16,{"type":153,"name":154,"callback":155,"file":150,"line":156},"filter","show_admin_bar","__return_false",33,[],[],[],[],{"dangerousFunctions":162,"sqlUsage":163,"outputEscaping":165,"fileOperations":72,"externalRequests":72,"nonceChecks":72,"capabilityChecks":72,"bundledLibraries":168},[],{"prepared":72,"raw":72,"locations":164},[],{"escaped":166,"rawEcho":72,"locations":167},3,[],[],[170],{"entryPoint":171,"graph":172,"unsanitizedCount":24,"severity":188},"\u003Chide_admin_bar_from_front_end> (includes\\hide_admin_bar_from_front_end.php:0)",{"nodes":173,"edges":185},[174,180],{"id":175,"type":176,"label":177,"file":178,"line":179},"n0","source","$_POST","includes\\hide_admin_bar_from_front_end.php",11,{"id":181,"type":182,"label":183,"file":178,"line":151,"wp_function":184},"n1","sink","update_option() [Settings Manipulation]","update_option",[186],{"from":175,"to":181,"sanitized":187},false,"low",{"summary":190,"deductions":191},"The \"hide-admin-bar-from-front-end\" plugin version 1.0.0 exhibits a mixed security posture.  On the positive side, the static analysis reveals an absence of critical code vulnerabilities such as dangerous functions, raw SQL queries, file operations, external HTTP requests, and unsanitized output.  The fact that all identified SQL queries use prepared statements and all output is properly escaped are excellent security practices.  However, a significant concern arises from the vulnerability history. The presence of one unpatched medium severity CVE, specifically a Cross-Site Request Forgery (CSRF), indicates a recurring or persistent security weakness that has not been addressed. This is particularly worrying given the plugin's stated purpose of hiding administrative elements, which could be leveraged in a CSRF attack to manipulate user perception or settings.\n\nThe taint analysis, while limited to one flow, flags a flow with an unsanitized path, which warrants attention. Although classified as not critical or high severity, it's a deviation from the otherwise clean static analysis. The lack of nonce checks and capability checks in the static analysis, while not directly flagged as vulnerabilities in this version, are important considerations for plugins that interact with the WordPress admin or user interfaces.  The absence of these checks can sometimes contribute to the exploitability of other weaknesses, like CSRF. In conclusion, while the code itself appears to be largely free of common static vulnerabilities, the unpatched CVE and the taint flow issue present tangible risks that need to be mitigated.",[192,195,197,199],{"reason":193,"points":194},"Unpatched medium severity CVE",15,{"reason":196,"points":14},"Taint flow with unsanitized path",{"reason":198,"points":14},"Missing nonce checks",{"reason":200,"points":14},"Missing capability checks","2026-03-16T18:40:19.747Z",{"wat":203,"direct":208},{"assetPaths":204,"generatorPatterns":205,"scriptPaths":206,"versionParams":207},[],[],[],[],{"cssClasses":209,"htmlComments":210,"htmlAttributes":211,"restEndpoints":212,"jsGlobals":213,"shortcodeOutput":214},[],[],[],[],[],[]]