
Page Menus Widget Security & Risk Analysis
wordpress.org/plugins/page-menus-widgetMenu with Page Assignment Widget
Is Page Menus Widget Safe to Use in 2026?
Generally Safe
Score 100/100Page Menus Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'page-menus-widget' plugin version 1.3 exhibits a generally positive security posture based on the static analysis and vulnerability history. The absence of any known CVEs and the lack of identified dangerous functions, SQL injection vulnerabilities, or problematic file operations are strong indicators of good development practices. The plugin also appears to have a minimal attack surface, with no AJAX handlers, REST API routes, shortcodes, or cron events exposed, and crucially, none of these entry points are left unprotected.
However, there are significant concerns regarding output escaping. With 34 total outputs, only 9% are properly escaped, indicating a high likelihood of cross-site scripting (XSS) vulnerabilities. This is a substantial weakness that could be exploited by attackers to inject malicious scripts into pages. Furthermore, the complete lack of nonce checks and capability checks, coupled with zero taint analysis flows, while seemingly good, could also mean that the plugin's functionality is not robustly protected against unauthorized access or manipulation. This combination suggests that while the plugin may not have known critical flaws, the lack of sufficient output sanitization presents a tangible and common security risk.
Key Concerns
- Low percentage of properly escaped output
- No nonce checks implemented
- No capability checks implemented
Page Menus Widget Security Vulnerabilities
Page Menus Widget Code Analysis
Output Escaping
Page Menus Widget Attack Surface
WordPress Hooks 1
Maintenance & Trust
Page Menus Widget Maintenance & Trust
Maintenance Signals
Community Trust
Page Menus Widget Alternatives
Bellows Accordion Menu
bellows-accordion-menu
A flexible and robust accordion menu plugin
WP Widget in Navigation
wp-widget-in-navigation
Put your Widget in Navigation easily!
Menubar Widgets
menubar-widgets
A standard wordpress plugin that helps you add multiple widgets to navigation menu item.
Custom Menu Wizard Widget
custom-menu-wizard
Show branches or levels of your menu in a widget, or in content using a shortcode, with full customisation.
Better Menu Widget
better-menu-widget
Better Menu Widget makes it easy to customize your menu widgets by adding css styles and a heading link.
Page Menus Widget Developer Profile
1 plugin · 30 total installs
How We Detect Page Menus Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/page-menus-widget/css/page-menus-widget.css/wp-content/plugins/page-menus-widget/js/page-menus-widget.js/wp-content/plugins/page-menus-widget/js/page-menus-widget.jspage-menus-widget/css/page-menus-widget.css?ver=page-menus-widget/js/page-menus-widget.js?ver=HTML / DOM Fingerprints
page-menus-widget