
Sub Page Hierarchy Widget Security & Risk Analysis
wordpress.org/plugins/page-hierarchy-plug-inAn easy widget to let you show a clickable list of pages linked to a particular 'parent' page on your site
Is Sub Page Hierarchy Widget Safe to Use in 2026?
Generally Safe
Score 92/100Sub Page Hierarchy Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "page-hierarchy-plug-in" v2.0.8 reveals a generally good security posture with no identified attack surface through AJAX, REST API, shortcodes, or cron events. Furthermore, the absence of dangerous functions, direct SQL queries (all prepared statements), file operations, and external HTTP requests are all positive indicators. The plugin also reports zero known CVEs, which is a strong testament to its security history. However, a significant concern arises from the low percentage of properly escaped output (30%). This indicates a potential risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not adequately sanitized before being displayed to users. The lack of nonce checks and capability checks, while not directly leading to immediate deductions due to the zero attack surface, are missed opportunities for robust security, especially if the plugin's functionality were to expand in the future.
Key Concerns
- Low output escaping percentage
- Missing nonce checks
- Missing capability checks
Sub Page Hierarchy Widget Security Vulnerabilities
Sub Page Hierarchy Widget Release Timeline
Sub Page Hierarchy Widget Code Analysis
Output Escaping
Sub Page Hierarchy Widget Attack Surface
WordPress Hooks 3
Maintenance & Trust
Sub Page Hierarchy Widget Maintenance & Trust
Maintenance Signals
Community Trust
Sub Page Hierarchy Widget Alternatives
Collapsing Pages
collapsing-pages
This plugin uses Javascript to dynamically expand or collapsable the set of pages for each parent page.
LJ Subpages Widget
lj-subpages-widget
LJ Subpages Widget allows you to display a menu listing subpages from a chosen page.
DMG Related Pages Widget
dmg-related-pages-widget
Widget that displays a list of pages related to the current page in your sidebar. Advanced options allow you to control which pages are shown, add CSS …
DMG Custom Menu Widget
dmg-custom-menu-widget
Display any Menu in your sidebar or widgetized area. With advanced options to add CSS classes, modify the title & add custom HTML/ Text.
Local Navigation Extended
local-navigation-extended
This simple widget uses the wp_list_pages() to output a local navigation menu.
Sub Page Hierarchy Widget Developer Profile
1 plugin · 100 total installs
How We Detect Sub Page Hierarchy Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
subpagehierarchy_list