
Multilevel Navigation Menu Security & Risk Analysis
wordpress.org/plugins/multilevel-navigation-menuMultilevel Navigation Menu plugin ability to add a full-screen navigation menu to our website.
Is Multilevel Navigation Menu Safe to Use in 2026?
Generally Safe
Score 92/100Multilevel Navigation Menu has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "multilevel-navigation-menu" plugin version 2.0.2 presents a generally good security posture based on the static analysis. The absence of AJAX handlers, REST API routes, cron events, and file operations indicates a limited attack surface and a focus on secure development practices in these areas. Furthermore, the complete absence of direct SQL queries, with all queries utilizing prepared statements, is a significant strength, mitigating risks of SQL injection. The plugin also reports zero known vulnerabilities in its history, suggesting a well-maintained and secure codebase over time.
However, a notable concern arises from the output escaping. With only 26% of outputs properly escaped, there is a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. If user-supplied data is not correctly sanitized before being displayed on the frontend, an attacker could inject malicious scripts. The lack of any reported nonce checks or capability checks on its single entry point (a shortcode) is also a weakness, though the impact is somewhat mitigated by the lack of direct user-controllable data inputs into this shortcode that would typically require such checks. The zero taint flows are positive, but this may be a result of the limited attack surface or an incomplete taint analysis, rather than a definitive statement of absolute safety against all possible untrusted input manipulation.
In conclusion, while the plugin demonstrates good practices regarding SQL and its overall attack surface is small, the poor output escaping is a significant and exploitable weakness. The absence of historical vulnerabilities is a positive indicator, but the identified static analysis issues necessitate attention to prevent potential security incidents.
Key Concerns
- Poor output escaping (26% proper)
- Missing nonce checks
- Missing capability checks
Multilevel Navigation Menu Security Vulnerabilities
Multilevel Navigation Menu Code Analysis
Output Escaping
Multilevel Navigation Menu Attack Surface
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
Multilevel Navigation Menu Maintenance & Trust
Maintenance Signals
Community Trust
Multilevel Navigation Menu Alternatives
WP Mobile Bottom Menu
mobile-bottom-menu-for-wp
Smooth Navigation for Mobile. Create an Eye-Catching Sticky Bottom Menu with Limitless Customization Options.
Ollie Menu Designer
ollie-menu-designer
Create custom dropdown & mobile menus using WordPress blocks. Design rich, responsive navigation with any block content in the block editor.
Mobile Menu Builder for WordPress
mobile-menu-builder
WordPress Mobile Menu Builder plugin is specially designed for mobiles. It is easy to use, customizable, and is highly flexible.
The Menu: Custom mobile navigation with icons
the-menu
Create beautiful mobile navigation menus with custom icons, role-based visibility, and extensive style options for your WordPress site.
Amathia: Accessible Dropdown Menus
amathia
Amathia makes dropdown menus accessible. It adds a button to each dropdown menu, which can be easily clicked to open the submenu.
Multilevel Navigation Menu Developer Profile
2 plugins · 500 total installs
How We Detect Multilevel Navigation Menu
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/multilevel-navigation-menu/assets/css/mnmwp-backend.css/wp-content/plugins/multilevel-navigation-menu/assets/js/mnmwp-backend.js/wp-content/plugins/multilevel-navigation-menu/assets/css/mnmwp-front.css/wp-content/plugins/multilevel-navigation-menu/assets/js/mnmwp-front.js/wp-content/plugins/multilevel-navigation-menu/assets/js/mnmwp-backend.js/wp-content/plugins/multilevel-navigation-menu/assets/js/mnmwp-front.jsmultilevel-navigation-menu/assets/css/mnmwp-backend.css?ver=multilevel-navigation-menu/assets/js/mnmwp-backend.js?ver=multilevel-navigation-menu/assets/css/mnmwp-front.css?ver=multilevel-navigation-menu/assets/js/mnmwp-front.js?ver=HTML / DOM Fingerprints
mnmsectionmnmwp-option-pagemnmwp-head-sectionmnmwp-logo-areamnmwp_logomnmwp-title-area<!-- Setting Page Section Title -->mnmwp-switchmnmwp-first-back-color[multilevel_navigation_menu]