
Network Menu Copier Security & Risk Analysis
wordpress.org/plugins/network-copierThis plugin allows you to bulk copy your menus between sites on your network which are using the same theme.
Is Network Menu Copier Safe to Use in 2026?
Generally Safe
Score 100/100Network Menu Copier has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "network-copier" v1.2.2 plugin exhibits a strong security posture in several key areas. The static analysis reveals no identifiable attack surface, meaning there are no direct entry points like AJAX handlers, REST API routes, shortcodes, or cron events that could be directly exploited without authentication. Furthermore, the absence of dangerous functions and file operations is a positive sign. The plugin also demonstrates good practice by exclusively using prepared statements for SQL queries, eliminating the risk of SQL injection through this vector.
However, a significant concern arises from the complete lack of output escaping. With four identified output points and none properly escaped, this presents a substantial risk for cross-site scripting (XSS) vulnerabilities. Any data displayed by the plugin that originates from an untrusted source could be injected with malicious scripts, impacting users of the site. The absence of nonce checks and capability checks on any potential, albeit currently undiscovered, entry points is also a weakness, as it leaves room for CSRF and privilege escalation vulnerabilities should new entry points be introduced or found.
The vulnerability history is clean, with zero recorded CVEs. This, combined with the absence of critical or high-severity taint flows, suggests a generally well-maintained codebase historically. However, the current static analysis findings, particularly the unescaped output, indicate potential for new vulnerabilities to emerge. The plugin's strengths lie in its lack of direct attack vectors and secure SQL handling, but its weakness in output sanitization requires immediate attention.
Key Concerns
- No output escaping
- No nonce checks
- No capability checks
Network Menu Copier Security Vulnerabilities
Network Menu Copier Code Analysis
Bundled Libraries
Output Escaping
Network Menu Copier Attack Surface
Maintenance & Trust
Network Menu Copier Maintenance & Trust
Maintenance Signals
Community Trust
Network Menu Copier Alternatives
Bulk Marketpress Product Category Copier
marketpress-category-copier
This plugin allows you to bulk copy your marketpress product categories between sites on your network which have the marketpress plugin activated.
WP Multisite Content Copier/Updater
wp-multisite-content-copier
Copy/Update posts and pages from one site (blog) to the other sites (blogs) in your WordPress Multisite Network.
Multisite Network Repost
multisite-network-repost
Repost your stories to selected sites in the multisite network, preserving attachments, custom fields, categories, tags etc.
Duplicate Menu
duplicate-menu
Easily duplicate your WordPress menus with one click.
Duplicate Post Page Menu & Custom Post Type
duplicate-post-page-menu-custom-post-type
The best plugin to duplicate post, page, menu and custom post type multiple times in a single click.
Network Menu Copier Developer Profile
8 plugins · 260 total installs
How We Detect Network Menu Copier
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/network-copier/lib/internal/NMC_Fetcher.php/wp-content/plugins/network-copier/lib/internal/NMC_Parser.php/wp-content/plugins/network-copier/lib/NetworkMenuCopier.php/wp-content/plugins/network-copier/lib/NetworkMenuWalker.php