
Hierarchy Pages Nav Security & Risk Analysis
wordpress.org/plugins/hierarchy-pages-navDocument hierarchy pages like a book and provide easy navigation between pages.
Is Hierarchy Pages Nav Safe to Use in 2026?
Generally Safe
Score 100/100Hierarchy Pages Nav has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "hierarchy-pages-nav" plugin v0.9.7 demonstrates a generally strong security posture, with no known vulnerabilities or CVEs in its history. The static analysis reveals excellent practices in crucial areas like SQL query preparation and output escaping, with 100% of both categories being handled securely. Furthermore, all identified entry points, including AJAX handlers, appear to have proper authentication and capability checks, and there are no file operations or external HTTP requests, which significantly reduces potential attack vectors.
However, a notable concern arises from the taint analysis, which identified 5 flows with unsanitized paths, all categorized as high severity. While these do not directly translate to immediate vulnerabilities given the lack of known CVEs and apparent authentication checks on entry points, they represent potential weak points that could be exploited if the application logic or authentication mechanisms are ever compromised or bypassed. The presence of nonce checks and capability checks on most entry points is positive, but the 5 unsanitized taint flows indicate that data is flowing in a way that could be manipulated if an attacker gains a foothold.
In conclusion, the plugin benefits from a clean vulnerability history and sound coding practices in many areas. The primary weakness lies in the identified taint flows, which, despite the current lack of exploitable vulnerabilities, warrants attention to ensure the sanitization of these paths is robust. This plugin is generally secure, but the taint analysis suggests room for improvement in data handling to further harden its security.
Key Concerns
- High severity unsanitized taint flows found
Hierarchy Pages Nav Security Vulnerabilities
Hierarchy Pages Nav Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Hierarchy Pages Nav Attack Surface
AJAX Handlers 6
WordPress Hooks 14
Maintenance & Trust
Hierarchy Pages Nav Maintenance & Trust
Maintenance Signals
Community Trust
Hierarchy Pages Nav Alternatives
LuckyWP Table of Contents
luckywp-table-of-contents
Creates SEO-friendly table of contents for your posts/pages. Works automatically or manually (via shortcode, Gutenberg block or widget).
Rich Table of Contents
rich-table-of-content
RTOC is a table of contents generation plugin from Japan that allows anyone to easily create a table of contents. Equipped with the functions of the c …
Joli Table Of Contents
joli-table-of-contents
The Best Table of Contents Plugin for WordPress. User-friendly. Gutenberg Block. Fast & Highly customizable. Auto or manual insert.
Heroic Table of Contents
heroic-table-of-contents
Heroic Table of Contents is the easiest way to add a table of contents to your site.
TOP Table Of Contents
top-table-of-contents
Easily creates SEO-friendly table of contents for your blog posts and pages. Offers both Auto and Manual Insert with highly customization options.
Hierarchy Pages Nav Developer Profile
12 plugins · 9K total installs
How We Detect Hierarchy Pages Nav
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.