
MenuPilot – Preview-First Menu Import & Export Security & Risk Analysis
wordpress.org/plugins/menupilotSafely import and export WordPress navigation menus with a preview-first workflow. Review and map menus before importing.
Is MenuPilot – Preview-First Menu Import & Export Safe to Use in 2026?
Generally Safe
Score 100/100MenuPilot – Preview-First Menu Import & Export has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "menupilot" v1.0.20 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any critical or high-severity taint flows, coupled with a very high percentage of prepared statements and properly escaped output, indicates good development practices in handling data and preventing common vulnerabilities like SQL injection and XSS. The presence of numerous nonce and capability checks on AJAX handlers further strengthens its defense against unauthorized actions. The plugin also has a clean vulnerability history, with no known CVEs, suggesting a mature and well-maintained codebase.
However, while the overall picture is positive, a small concern arises from the 10 AJAX handlers. Although the analysis states 0 unprotected handlers, the sheer number of entry points, even if secured, represents a potential area for future misconfigurations or subtle logic flaws that could be exploited. The presence of file operations, although not explicitly flagged as risky, warrants careful consideration in any security audit.
In conclusion, "menupilot" v1.0.20 appears to be a secure plugin with strong defensive coding practices. Its clean vulnerability history and robust implementation of security checks are commendable. The minor area of attention would be the number of AJAX handlers, which, while currently secured, still constitute a significant attack surface that requires ongoing vigilance.
Key Concerns
- File operations present
MenuPilot – Preview-First Menu Import & Export Security Vulnerabilities
MenuPilot – Preview-First Menu Import & Export Release Timeline
MenuPilot – Preview-First Menu Import & Export Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
MenuPilot – Preview-First Menu Import & Export Attack Surface
AJAX Handlers 10
WordPress Hooks 19
Maintenance & Trust
MenuPilot – Preview-First Menu Import & Export Maintenance & Trust
Maintenance Signals
Community Trust
MenuPilot – Preview-First Menu Import & Export Alternatives
Responsive Navigation Block
getdave-responsive-navigation-block
Complete control over your navigation menus based on screen size including styles and menu items.
Import Export Menu
import-export-menu
This plugin allows you to export and import menus in WordPress, making it easier to manage and migrate menu structures between sites.
Menu By User Roles
menu-by-user-roles
Menu By User Roles allows you to control the visibility of menu items based on user roles.
Auto Subpage Menu
auto-subpage-menu
By default wordpress menu system, wordpress can only automatically add/remove top-level page to/from menus
Better Menu Widget
better-menu-widget
Better Menu Widget makes it easy to customize your menu widgets by adding css styles and a heading link.
MenuPilot – Preview-First Menu Import & Export Developer Profile
5 plugins · 70 total installs
How We Detect MenuPilot – Preview-First Menu Import & Export
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/menupilot/assets/css/admin.css/wp-content/plugins/menupilot/assets/js/admin.js/wp-content/plugins/menupilot/assets/js/admin-pages.js/wp-content/plugins/menupilot/assets/js/admin.js/wp-content/plugins/menupilot/assets/js/admin-pages.jsmenupilot/assets/css/admin.css?ver=menupilot/assets/js/admin.js?ver=menupilot/assets/js/admin-pages.js?ver=HTML / DOM Fingerprints
menupilot-adminmenupilot-admin-pagesmenupilot-history-wrappermenupilot-settings-wrappermenupilot-tools-wrappermenupilot-export-wrappermenupilot-import-wrappermenupilot-help-wrapperdata-menupilot-settingsdata-menupilot-exportdata-menupilot-importdata-menupilot-toolsdata-menupilot-historydata-menupilot-helpmenupilotData/menupilot/v1