mhcode-wp-bootstrap-nav Security & Risk Analysis

wordpress.org/plugins/mhcode-wp-bootstrap-nav

Make bootstrap tags navigation menu in wordpress easyly, here included all tag related navigation menu

10 active installs v1.0 PHP + WP 3.0.1+ Updated Jan 4, 2014
bootstrapinsert-html5-tagresponsive-wp-menu-htmlwordpress-navmenu
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is mhcode-wp-bootstrap-nav Safe to Use in 2026?

Generally Safe

Score 85/100

mhcode-wp-bootstrap-nav has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "mhcode-wp-bootstrap-nav" v1.0 plugin exhibits a strong security posture. The code analysis reveals a commendable absence of dangerous functions, file operations, and external HTTP requests. All SQL queries utilize prepared statements, and all output is properly escaped, indicating good development practices in these areas. The plugin also has a clean vulnerability history with no recorded CVEs, which is a positive indicator of its security reliability.

While the plugin scores well in terms of its current implementation, the complete lack of identified entry points and the absence of any taint analysis flows, combined with zero nonce and capability checks, present a potential area for concern. This could imply a very limited functionality or a lack of interaction points that would necessitate these security measures. However, it also means there's no immediate evidence of exploitable vulnerabilities stemming from these checks in the analyzed code. The absence of a documented attack surface is unusual and, while positive in the absence of vulnerabilities, might also suggest that potential interaction points are not being registered or are extremely limited, which could hide future risks if functionality changes.

In conclusion, the plugin "mhcode-wp-bootstrap-nav" v1.0 demonstrates excellent security practices in its current state, with no detected vulnerabilities or risky coding patterns. The strengths lie in its clean code, secure database interactions, and proper output handling. The primary, albeit speculative, weakness lies in the complete absence of identified attack surface elements and security checks, which, while not indicative of current risk, could be a sign of an incomplete security surface analysis or a very narrowly defined plugin scope. As it stands, the plugin appears secure.

Vulnerabilities
None known

mhcode-wp-bootstrap-nav Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

mhcode-wp-bootstrap-nav Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Attack Surface

mhcode-wp-bootstrap-nav Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

mhcode-wp-bootstrap-nav Maintenance & Trust

Maintenance Signals

WordPress version tested3.7.41
Last updatedJan 4, 2014
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

mhcode-wp-bootstrap-nav Developer Profile

Md Hossain Shohel

2 plugins · 30 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect mhcode-wp-bootstrap-nav

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/mhcode-wp-bootstrap-nav/mhcode-wp-bootstrap-nav.php

HTML / DOM Fingerprints

CSS Classes
dropdown-menudropdowndropdown-togglecaret
Data Attributes
data-dropdown="dropdown"data-toggle="dropdown"data-hover="dropdown"
Shortcode Output
<ul class="nav navbar-nav">
FAQ

Frequently Asked Questions about mhcode-wp-bootstrap-nav