
Menu In Post Security & Risk Analysis
wordpress.org/plugins/menu-in-postA simple but flexible plugin to allow the use of menus in posts and pages.
Is Menu In Post Safe to Use in 2026?
Mostly Safe
Score 78/100Menu In Post is generally safe to use. 1 past CVE were resolved. Keep it updated.
The 'menu-in-post' plugin v1.4.1 exhibits a generally strong security posture in its static analysis, with excellent adherence to best practices like prepared SQL statements and proper output escaping. The absence of dangerous functions, file operations, and external HTTP requests is also a positive indicator. Furthermore, the presence of nonce and capability checks on its entry points suggests a good understanding of WordPress security fundamentals.
However, the plugin's vulnerability history is a significant concern. It has a known medium severity CVE which is currently unpatched, indicating a potential for exploitation. The fact that the last reported vulnerability was in the future (2025-12-30) is highly unusual and likely an error in the provided data; regardless, the existence of an unpatched vulnerability is a direct risk.
In conclusion, while the code itself appears to be written with security in mind, the presence of an unpatched vulnerability overshadows these strengths. Users should exercise extreme caution and prioritize patching this vulnerability to mitigate the identified risk.
Key Concerns
- Unpatched CVE (medium severity)
Menu In Post Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Menu In Post <= 1.3 - Authenticated (Contributor+) Stored Cross-Site Scripting
Menu In Post Code Analysis
Output Escaping
Menu In Post Attack Surface
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
Menu In Post Maintenance & Trust
Maintenance Signals
Community Trust
Menu In Post Alternatives
Shortcode in Menus
shortcode-in-menus
Allows you to add shortcodes in WordPress Navigation Menus.
Popular Brand Icons – Simple Icons
simple-icons
An easy to use lightweight SVG icons plugin with over 1500+ brand icons. Use these icons in your menus, widgets, posts, or pages.
Advanced Menu Manager Pro – Built for Content-heavy WordPress Sites to Add, Filter, Lock, and Edit Menus Easily
advance-menu-manager
Create and manage menus of any size of your content-heavy wordpress blogs and websites. Simplified search and new comprehensive layout.
Show Menu Shortcode
show-menu-shortcode
Provides a [show-menu] shortcode for displaying a menu within a post or page.
Shortcode Toggle
shortcode-toggle
Add Useful Toggle Menu to your blog simply by shortcode.
Menu In Post Developer Profile
1 plugin · 2K total installs
How We Detect Menu In Post
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/menu-in-post/js/main-min.js/wp-content/plugins/menu-in-post/js/main.js/wp-content/plugins/menu-in-post/js/main-min.js/wp-content/plugins/menu-in-post/js/main.jsmenu_in_post_frontend_scriptHTML / DOM Fingerprints
mip-drop-navdata-mip-optionsmenu_in_post_options[menu_in_post_menu<select class="mip-drop-nav"<option value="#">